Skip to content
Research Article Open access CC BY 4.0

Agentic Ransomware Targeting Autonomous Al Systems in OT/ICS Environments: Implications for Process Safety, System Reliability, and Operational Resilience

Akinde Michael Ogunmolu, Asmau Abubakar Abdulmalik, Abiola Omolola Bamsa, Damilola Abidemi Akinwunmi, Emonena Patrick Obrik-Uloho

Journal of Engineering Research and Reports · pp. 213–234 · Published 3 Apr 2026

10.9734/jerr/2026/v28i41859

Abstract

This study examines the emerging threat of agentic ransomware, a novel class of cyberattack that targets autonomous artificial intelligence (AI) systems embedded within operational technology (OT) and industrial control system (ICS) environments. As industrial infrastructures increasingly integrate AI-driven automation, existing cybersecurity models remain insufficient to address threats capable of manipulating both digital processes and physical operations. To address this gap, this study adopts a quantitative analytical approach using three open-access datasets: Cybersecurity and Infrastructure Security Agency (CISA) ICS vulnerability advisories, the MITRE ATT&CK for ICS framework, and the U.S. Department of Energy OE-417 disturbance reports. The analysis integrates vulnerability exposure assessment, attack technique network modeling, and system reliability evaluation using frequency analysis, co-occurrence centrality metrics, and reliability indices. Findings reveal that industrial control devices account for 43.8% of identified vulnerabilities, while AI-driven analytics systems exhibit the highest severity (CVSS = 8.32) and significant remote exploitability (0.73). Furthermore, cyber-related disturbances demonstrate substantially lower reliability (0.28) compared to operational failures (0.83), indicating increased system instability under cyberattack conditions. Building on these findings, the study proposes and operationalizes an Agentic Ransomware Resilience Framework, introducing a composite resilience index that integrates vulnerability exposure, attack pathway centrality, and system recovery performance. The results highlight the critical role of AI-enabled components as emerging attack surfaces and emphasize the need for resilience-oriented cybersecurity strategies. The study concludes by recommending adaptive security architectures, network segmentation, AI-aware anomaly detection systems, and enhanced recovery mechanisms to safeguard intelligent industrial infrastructures against next-generation ransomware threats.

Agentic ransomware operational technology security industrial control system vulnerabilities AI-enabled cyber-physical systems industrial infrastructure resilience

Cited by 1

1 citation reported by external sources — individual citing-article records aren't available to list yet.

Article metrics

Real usage data collected on this platform.

0

Page views

0

PDF downloads

0

Outbound clicks

1

Citations

Views by country

Approximate, from request IP at view time — not citizenship or institution. Countries with fewer than 5 views are grouped as "Other".

No views recorded yet.

Traffic sources

Referring site, by host.

No traffic recorded yet.

Views and downloads exclude known bots/crawlers. Citations combines this platform's own DOI-resolved index with each external source's own reported total — see Cited by above for individually listed citing works. Last refreshed 0 seconds ago.