Suspicious Minds: Non-Technical Signs Your Business Might Have Been Hacked

November 15, 2021
Three wooden blocks with cyber security symbols on a laptop keyboard with green code in the background.

Credit: iStock/Omar Osman

I grew up in the outer suburbs of New York City. My dad commuted to the city for work, as did most of our neighbors, but as kids we rarely went into the city. An occasional field trip to a museum, seeing the tree in Rockefeller Center, or a family outing to a ballgame had been the extent of my urban experience. One year for Christmas, my sister, my cousin and I received tickets to see the Broadway show “Grease.” For the first time, we would be allowed to travel on the train and see the show without our parents.


A whole day in New York without supervision! For young teenagers, it was a thrilling prospect, but we received strict orders to “keep our eyes open and trust no one.” We had a wonderful time, besides a minor mishap figuring out where to catch the train to come home (my cousin insisted the same train would be waiting for us on the same track – he was wrong), it was the first of many adventures in NYC.


The most memorable thing for me was learning that observing your environment is an important part of staying safe.


That lesson learned years ago is also important in cybersecurity. Even if your employees have no technical understanding of information technology, they can help identify signs that your business may have been hacked.

Know the Signs


Contracts your company used to receive on a regular basis are now going to a competitor. A new competitor suddenly bursts onto the scene making a very difficult-to-manufacture part that resembles your product. Company monthly energy usage is increasing but you haven’t increased production hours. You haven’t received payment from a customer who always pays invoices within 60 days.

Each of these scenarios is a possible sign that your manufacturing business might have been hacked. Often the first detection of a cyber hack is an employee noticing that something isn’t quite right. This could be their system running unusually slow or a change in their password or other credentials that they did not make.

Small and medium-sized manufacturers (SMMs) are prime targets for cyber-attacks, according to the U.S. Department of Homeland Security, because many do not have adequate preventive measures in place. Manufacturing is the second most targeted industry. According to Accenture, only 14 percent of small businesses are prepared to defend themselves against cyber threats.

Traditional Cyber Threats and Tactics


Cyber criminals often use ransomware tactics to shut down manufacturing operations or to alter production processes so that faulty products are manufactured. Honda recently was forced to temporarily shut down global operations due to a ransomware attack at its headquarters. GPS giant Garmin recently had its operations suspended for almost a week, and multiple sources reported it faced a $10 million ransomware attack.

That said, many successful cyber-attacks against small manufacturers are not this visible or dramatic. These attacks play out in a long, slow process, managing to avoid detection. For example, evidence of a cyber-attack that infiltrated your sensitive contract information or intellectual property (IP) may not emerge for months or even years. Likewise, you may not notice when someone steals information from your customer database.

If You Can’t Explain a Change in Dynamics, It Might Be Cyber Related


You don’t need an IT background to keep checks on cybersecurity threats. A good rule of thumb is for employees to report any noticeable changes or anomalies in operations. For example, a decrease in production quality could arise from compromised industrial control systems.


If you suddenly have a harder time winning or retaining contracts, someone might have hacked into your financial system and figured out how to underbid you. IP theft could result in a new competitor making an identical product, or thieves might be going after an operational plan for a part or component.


Energy and data usage fluctuations also have been linked to cybercrimes. A large increase in your energy cost could indicate malicious activity. Fluctuation in data usage may indicate that someone is taking over your computer network during overnight hours for crypto mining, which requires excessive processing power. You can “lend” your computer’s processing power to a crypto mining service for revenue, or an outlaw cyber organization might just take it.


A hacker could change the routing numbers on the account where your customers send payments. A customer unknowingly pays the cyber criminals the money owed to you. If you are not monitoring your accounts closely it may be months before you notice the theft occurring.

The Connected Shop Floor Provides More Portals for Attacks


Manufacturers’ growing dependence on technology and data as drivers of productivity and efficiency puts greater demands on their cybersecurity infrastructure. The more connected your shop floor is with automation, sensors, monitors and control systems, the more vulnerable you are to cyber threats.


The manufacturing technology mix includes IT (including networks and business-side software such as email, finance and ERPs) and OT (operational technology, such as machines and control systems). SMMs traditionally have been challenged by how to manage cybersecurity concerns for a variety of reasons:


  • Cybersecurity competes with many other areas in terms of funding.
  • It’s difficult to dedicate specialty resources for in-house cybersecurity staffing.
  • Cybersecurity has not been a priority in the acquisition and implementation of OT systems, which means as IT and OT converge, legacy systems become potential liabilities.



Teaching your employees to “keep your eyes open and trust no one” can be an important part of your company’s cybersecurity posture. Understanding that cyber-attacks are often identified by non-technical signs can help your employees be more observant of their environment. Having a suspicious mindset may enable your employees to identify cyber-attacks before significant damage is done.


Last fall my sister and I traveled to New York by train again to see a Broadway show, this time much older and wiser. We met our cousin for dinner, and we recalled our parent’s warnings about staying safe and observing our surroundings. Their trust in us to make that first independent trip into NYC gave us confidence to recognize risks and respond to them appropriately. Your employees can help to identify non-technical signs of cyber hacks if they are aware of their IT and OT environments and understand potential cyber risks.

Contact Your Local MEP Center For Expert Cybersecurity Advice


Cybersecurity experts working in the manufacturing sector see education as a key to SMM adoption, and more SMMs are looking at cyber consultations in the same way they look at seeking expertise in finance or insurance. If you are not sure where to start with cybersecurity for your manufacturing firm, check out this assessment tool based on the National Institute of Standards and Technology’s Cybersecurity Framework. It outlines five steps to reduce cyber risks:

  • Identify – Understanding potential cybersecurity risks to an organization, including its systems, people, assets, data, capabilities and networks
  • Protect – Developing and implementing safeguards for operations or services
  • Detect – Establishing a proper monitoring system to identify either a recent cybersecurity event or one that’s ongoing
  • Respond – Having controls available to respond to an attack, including the functionality to block them, as well as regain access to a system
  • Recover – Being able to restore impaired or damaged services and content

You also can check out the NIST MEP collection of cybersecurity resources for manufacturers. And an expert at CONNSTEP can provide further, specific guidance on how to address your particular cybersecurity needs.

 

This article originally appeared on NIST’s Manufacturing Innovation blog and is reprinted with permission=

Recent Posts

April 29, 2026
Phoenix Manufacturing, Inc., founded in 1989, is a privately held family-operated small business in Enfield, Connecticut, specializing in precision machining for the aerospace industry. What began as a two-person operation in a 2,000-square-foot building has grown into a company with over 100 employees operating out of a 114,000-square-foot, state-of-the-art manufacturing facility. As a contract manufacturer, Phoenix specializes in complex, tight-tolerance components, supported by more than 40 CNC machines and a multi-axis mill/turn line. The company provides end-to-end manufacturing solutions—from engineering consultation through full-scale production—serving commercial aviation, spaceflight, and defense markets for both domestic and global customers, including leading aerospace and defense OEMs. A defining element of Phoenix’s growth has been its strategic investment in advanced manufacturing technology, particularly palletized machining centers. Since 2017, the company has added 11 machining centers integrated with palletized systems, enabling unattended, automated production and significantly expanding machining capacity. This automation journey has positioned Phoenix to better meet increasing customer demand while maximizing machine utilization. Phoenix’s commitment to quality is central to its operations and customer relationships. Managing more than 600 active part numbers, the company strives for 0 parts per million (PPM) defects and 99% on-time delivery (OTD) for major OEM customers. Its quality management system is certified to ISO 9001 and AS9100 Rev D standards, and Phoenix also holds NADCAP certifications in Nonconventional Machining and Nondestructive Testing, reflecting a rigorous, inspection-driven approach to delivering consistent, high-quality results.  Guided by a mission to deliver high-quality, cost-effective products through advanced technology and an uncompromising commitment to quality, Phoenix continues to invest in innovation, automation, and the next generation of manufacturing leadership.
April 28, 2026
Founded in 1959, Projects Inc. is a Glastonbury, Connecticut-based manufacturer specializing in precision-machined components for aerospace, industrial, and commercial applications. With 102 employees, the company operates out of 66,000 square feet of manufacturing and office space and supports customers across a range of industries, including aerospace and power generation. Projects Inc. has deep roots in the aerospace industry, where it has provided high-quality machining services for decades. Since 1996, the company has supplied FAA Parts Manufacturer Approval (PMA) components to the aviation sector. Projects Inc. received FAA Repair Station Certification in 1984. As a maintenance, repair, and overhaul (MRO) provider, Projects supports customers with repair solutions that help keep critical aerospace equipment operating safely and efficiently. Its customer base includes major aerospace companies such as Sikorsky, Pratt & Whitney, and GE Aerospace, along with airlines including United, Delta, American, and Lufthansa. Projects Inc. is Federal Aviation Administration (FAA), European Union Aviation Safety Agency (EASA), and UK Civil Aviation Authority (CAA) – approved. The company is also AS9100D and ISO 9001: 2015-certified, reflecting its commitment to quality, consistency, and industry standards. With capabilities that include prototyping, CNC machining, EDM, laser cutting, and grinding, Projects Inc. offers a broad range of precision manufacturing services supported by advanced in-house equipment and technical expertise. Today, Projects Inc. is recognized as an experienced supplier of high-quality components, with a long-standing focus on quality, reliability, and customer service.
Penn Globe logo over a room with people, possibly a conference.
February 11, 2026
Learn how Penn Globe partnered with CONNSTEP to invest in employee training, strengthen skills, and support business growth and competitiveness.
Logo of Specialty Cable Corporation (SCC) in a warehouse setting.
February 10, 2026
See how Specialty Cable Manufacturers partnered with CONNSTEP to strengthen quality systems and successfully achieve AS9100 recertification.
People in a factory setting, with the Forum Contract Manufacturing logo in the foreground.
February 9, 2026
Learn how Forum Plastics partnered with CONNSTEP to invest in supervisory training, strengthen leadership skills, and support long-term growth.
Logo of the letter
February 8, 2026
See how a Connecticut printing company partnered with CONNSTEP to improve efficiency, reduce waste, and advance environmental sustainability.
Beekley Medical logo with text
February 7, 2026
Learn how a medical products manufacturer partnered with CONNSTEP to strengthen quality systems and achieve successful recertification.
Pursuit Aerospace logo over a blurred medical equipment background. The logo is white text on a black rectangular box.
February 6, 2026
See how an aerospace manufacturer partnered with CONNSTEP to conduct an internal quality audit and get back on track to compliance.
Woman in lab setting, logo overlay of Syn-Mar Products Inc., blue and white color scheme.
February 5, 2026
Learn how a home bathroom remodeling manufacturer partnered with CONNSTEP to use lean training to streamline operations and improve efficiency.
Logo for Wild CNC Machining Services on a blue background.
February 4, 2026
See how a manufacturer partnered with CONNSTEP to update HR policies, strengthen people practices, and support future business growth.
Show More