The latest updates on cyber-physical attacks, threat actors and other industry news
Latest News
PLC “Password Recovery” tools planting Malware
6 Jun 2022
PLC password recovery tools have been discovered that leaves a little...
Axeda agent vulnerability exposes Healthcare IoT
15 Mar 2022
7 vulnerabilities in Axeda agent exposes IoT devices . Patches are...
Queue up the compromise
16 Feb 2022
5 10/10 CVSS vulnerabilities are threatening Critical Infrastructure where Moxa MXView is deployed.
Moxa recommends firewalling these systems.
Splice shields...
Mandatory Security Monitoring for Electric Grid
26 Jan 2022
The US Federal Energy Regulatory Commission (FERC) is proposing a rule to...
OMG DDS vulnerabilities
17 Nov 2021
Object Management Group (OMG) Data-Distribution Service (DDS) implementation...
Siemens Nucleus Vulnerabilities
17 Nov 2021
Siemens Nucleus RTOS TCP/IP Stack exposes Nucleus Net, Nucleus ReadyStart,...
Phillips MRI Vulnerabilities
17 Nov 2021
Improper Access Control, Incorrect Ownership Assignment, and Exposure of...
CVSS 10 Jackpot for Honeywell Controllers
13 Oct 2021
File upload, path traversal and output validation issues allow for remotely executable, low complexity attacks against Honeywell Experion Process Knowledge...
Cyber exposures in Insulin remotes
13 Oct 2021
Medtronic MiniMed Remote Controllers (model MMT-500 and MMT-503) used with a...
Critical bugs in IoT TCP/IP Stacks
11 Aug 2021
Critical and high severity vulnerabilities affect a proprietary TCP/IP stack...
Mitsubishi advises isolation as mitigation
11 Aug 2021
Countermeasures per some of the latest Misubishi vulnerability bulletins include ensuring isolation / firewalling whilst fixes are being developed.
Exposed Healthcare Transport Tubing
3 Aug 2021
Transport Tubing used in more than 3000 hospitals to deliver medicines and...
CISA ICS Ransomware Factsheet
14 Jun 2021
US CISA issues ICS ransomware factsheet. Recommendations include:...
Rockwell ISaGRAF5 Runtime Funtime
14 Jun 2021
A string of vulnerabilities in this runtime allows remote execution with low...