Why Legacy CNC Machines Are Still a Cybersecurity Risk in 2025
Back to Blog
Cybersecurity15 March 2025DNS-CCN Engineering Team

Why Legacy CNC Machines Are Still a Cybersecurity Risk in 2025

Millions of industrial machines are still running Windows XP and SMB1 protocols on factory floors across the UK. Here's why that matters — and what DNS-CCN is doing about it.

The Hidden Risk on the Factory Floor

Across the UK, thousands of CNC machines continue to operate on legacy operating systems — Windows XP, Windows NT, even DOS. These machines were built to last decades, and they do. But the software environments they rely on were never designed for a world of ransomware, zero-day exploits, and nation-state attackers.

SMB1: The Protocol That Won't Die

SMB1 (Server Message Block v1) was introduced in 1983. It is notoriously insecure — it was the attack vector for WannaCry, which crippled the NHS in 2017. Yet many legacy CNC machines require it to function.

How DNS-CCN Solves It

Our Secure Edge Gateway (SEG) hardware acts as a protocol bridge — isolating legacy machines from the wider network while enabling secure, monitored data transfer. No rip-and-replace required.

  • VLAN isolation per machine
  • Protocol translation (SMB1 → SMB3, FTP → SFTP)
  • Real-time transfer monitoring
  • WireGuard VPN tunnelling

Contact DNS-CCN to learn how we can protect your factory floor.