#ics

21 posts · Last used 11d

Back to Timeline
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Aug 03, 2026
CVE-2026-11841 lets an unauthenticated attacker reach internal files on SICK InspectorP6xx devices, risking device compromise. CVSS 9.4. Update to 5.4.0. #SICK #InspectorP6xx #CVE202611841 #OTSecurity #ICS #CyberSecurity http://securityonline.info/sick-inspectorp6xx-cve-2026-11841/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
GAI NetConsult @gainetconsult@infosec.exchange · Aug 03, 2026
📰 𝗡𝗲𝘂𝗲𝘀 𝗦𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗝𝗼𝘂𝗿𝗻𝗮𝗹 – 𝗱𝗶𝗲 𝗝𝘂𝗹𝗶-𝗔𝘂𝘀𝗴𝗮𝗯𝗲 𝗶𝘀𝘁 𝗱𝗮! Unser Security Journal erscheint alle zwei Monate und liefert tiefgehende Einblicke in aktuelle Entwicklungen der Cybersicherheit. 🌐 In dieser Ausgabe erwarten Sie wieder spannende Inhalte: 𝗦𝗲𝗰𝘂𝗿𝗶𝘁𝘆-𝗙𝗮𝗰𝗵𝗮𝗿𝘁𝗶𝗸𝗲𝗹: Der Tag, an dem Washington eine KI abschaltete – Die Sperrung von Claude Fable 5 und Mythos 5 🗞️ 𝗡𝗲𝘄𝘀-𝗕𝗹𝗼𝗰𝗸: wichtigste Entwicklungen in der Informationssicherheit 🔟 𝗧𝗼𝗽 𝟭𝟬: Sicherheitsrisiken der letzten Monate ⚙️ 𝗜𝗖𝗦/𝗢𝗧: relevanteste Schwachstellen im Überblick Verpassen Sie keine Ausgabe und bleiben Sie auf dem neuesten Stand, um die digitale Sicherheit zu stärken! 👉 Jetzt anmelden: https://www.gai-netconsult.de/security-journal/ #SecurityJournal #CyberSecurity #Informationssicherheit #Sicherheitsmanagement #ICS #OTSecurity #RiskManagement #StaySecure
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Jul 31, 2026
MicroLogix 1400 attacks hit internet-exposed PLCs at water utilities, locking out operators. Rockwell shares recovery and hardening steps. #MicroLogix1400 #RockwellAutomation #ICS #OTSecurity #WaterUtilities https://securityonline.info/micrologix-1400-attacks/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
OffSequence @offseq@infosec.exchange · Jul 30, 2026
Phoenix Contact CHARX SEC-3150 v1.0.0 hit by CRITICAL (CVSS 9.3) command injection (CVE-2026-7849): unauthenticated remote attackers can execute root commands. No mitigation yet — restrict access! https://radar.offseq.com/threat/cve-2026-7849-cwe-77-improper-neutralization-of-special-elements-used-in-a-command-command-injection-8b9703c63834cb6a #OffSeq #ICS #Vuln #CVE2026_7849
0
0
0
thecybersecguru @thecybersecguru@infosec.exchange · Jul 30, 2026
🚨 BREAKING: A coordinated cyberattack targeted 30+ community water systems across Minnesota, disrupting operational technology (OT) and temporarily taking one treatment plant offline. State and federal agencies, including CISA, FBI, and EPA, are investigating. Officials say there is no evidence that drinking water quality was compromised, and the attack has not yet been attributed to any threat actor. Full analysis, technical breakdown, and what this means for critical infrastructure security: 🔗 https://thecybersecguru.com/news/minnesota-water-systems-cyberattack-ot/ #CyberSecurity #OTSecurity #ICS #SCADA #CriticalInfrastructure #WaterSecurity #CyberAttack #ThreatIntel #CISA #InfoSec
2
0
1
CyberCraft @silent@infosec.exchange · Jul 27, 2026
Hack like Mr Robot // WiFi, Bluetooth and Scada hacking OccupytheWeb explains how hacks shown in the Mr Robot TV Series actually work. He compares real world WiFi, Bluetooth and Scada hacking vs what is shown in the TV series. https://www.youtube.com/watch?v=3yiT_WMlosg #youtube #wifi #bluetooth #scada #ics #infosec #cybersecurity #hacking
0
1
0
ExploitGarbage @ExploitGarbage@infosec.exchange · Jul 23, 2026
Came across a disclosure in Altus BluePlant 9.1.40 — a SCADA HMI / ICS platform. CVSS 9.8, unauthenticated RCE, default configuration, as the service account (administrator). The standout: the vendor's auth validator hardcodes three credential-bypass paths in code. Use any one to bypass Connect, get a connectionHandle, then drive a generic RMI gateway to FileServer.RunProcess → Process.Start. No creds, no TLS, port 3100 reachable by default after install. Full root-cause + self-contained PoC on the advisory page. https://0day-rubbish.com/blog/altus-blueplant-hardcoded-creds-rce https://github.com/Exploit-Garbage/0day-Rubbish The project attributes discovery to an automated multi-LLM process (Claude/OpenAI/DeepSeek/GLM), defensive framing, full-disclosure posture. Not affiliated; noting for awareness. #infosec #ICS #SCADA #OTsecurity #vulnerability #0day #RCE #exploit
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Jul 20, 2026
Siemens Opcenter X authentication bypass (CVE-2026-56451, CVSS 10) lets attackers forge JWTs for full unauthorized access. Update to V2604 now. #Siemens #OpcenterX #CVE202656451 #ICS #AuthenticationBypass https://securityonline.info/siemens-opcenter-x-auth-bypass/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · Jul 17, 2026
Replying to @security_crawler_carl@infosec.exchange
KNOWN ISSUE: You haven't done that yet, have you? The ROX II is right there, humming away in a rack, feeling very open-sourcey about its privileges. Patch Siemens ROX II to firmware V2.17.1 immediately — that is the only listed remediation. Reward: You've received a Cursed Root Certificate of Participation. #CyberSecurity #OTSecurity #ZeroDay #Siemens #ICS #PatchedOrPerish (2/2)
0
0
0
Michael I Ransier @thecybermind@infosec.exchange · Jul 16, 2026
🚨 ALERT: CVE-2023-4346 allows attackers to purge and lock KNX industrial control devices. If you manage building automation, your perimeter is at risk. Get the forensic indicators and hardening playbooks you need to secure your assets. https://thecybermind.co/m6eo #CyberSecurity #ICS #KNX #TCM #IndustrialSecurity
0
0
0
OffSequence @offseq@infosec.exchange · Jul 15, 2026
CRITICAL severity: All critical infrastructure sectors must plan for eventual cyber defense failure. CPRE (Cyber Physical Resilience Engineering) recommends resilient designs, independent safety controls, and digital twins. More: https://radar.offseq.com/threat/should-critical-infrastructure-be-designed-assumin-9832f0b6ad8c16a7 #OffSeq #ICS #Resilience
0
0
0
OffSequence @offseq@infosec.exchange · Jul 14, 2026
CVE-2026-10577: CRITICAL vuln in Rockwell 1715 EtherNet/IP module. Debug port lacks authentication, enabling remote CLI access for file deletion, task stop, or memory changes. Review device exposures now. https://radar.offseq.com/threat/cve-2026-10577-cwe-306-missing-authentication-for--25c66fc4335b822a #OffSeq #ICS #CVE2026_10577 #OTSecurity
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Jul 13, 2026
CVE-2026-4769 exposes WAGO System I/O field devices. An early-boot flaw lets an unauthenticated attacker reach full system compromise. #WAGO #CVE20264769 #ICS #OTSecurity #Firmware https://securityonline.info/wago-system-io-cve-2026-4769/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
SpaceCoastSec @spacecoastsec@mastodon.social · Jul 12, 2026
Bypassing Zero Trust using... laws of physics? 🤯⚡ Join SpaceCoastSec Aug 12 @ 6:30 PM as Paul Coggin breaks down Purdue Level 0 cyber-physics transduction attacks. No packets, just weaponized energy! ⚛️💥 RSVP: https://www.meetup.com/spacecoastsec/events/313526424 #SpaceCoast #ICS #Cybersecurity #Brevard #BuildingCommunity
0
1
0
OffSequence @offseq@infosec.exchange · Jun 30, 2026
CVE-2026-12819 (CRITICAL, CVSS 9.3) in deltaww DVP-12SE PLC: Modbus TCP service lacks authentication, allowing unauthenticated access to critical PLC functions. Segment networks & restrict access. https://radar.offseq.com/threat/cve-2026-12819-cwe-306-missing-authentication-for--8fd3769bc2b1bbcf #OffSeq #ICS #Vulnerability #PLCsecurity
0
0
0
Erik van Straten @ErikvanStraten@todon.nl · Mar 26, 2026
Replying to @ErikvanStraten@todon.nl
Hieronder screenshots van hetgeen ik noemde in de toot hierboven: • De nieuwe ICS phishingsite (achter Cloudflare, geen phishing-waarschuwing); • De Coudflare phishing-waarschuwing; • Met "/whatever" achter de link geplakt waarschuwt Cloudflare NIET voor phishing (dus hadden de phishers dat eenvoudig kunnen omzeilen). Na enige tijd meldt Cloudflare dat de site onbereikbaar is. #ICS #ICSphishing #Phishing #CloudflareIsEvil
0
0
1
Erik van Straten @ErikvanStraten@todon.nl · Apr 03, 2026
Replying to @ErikvanStraten@todon.nl
CLOUDFLARE IS EVIL De volgende ICS phishing website (zich verstoppend achter Cloudflare) is nog steeds live (zie screenshot): https:⧸⧸lcs.1419.info Welke websites op dit moment naar die phishingsite doorsturen heb ik nog niet kunnen vinden. Eerder waren dat de volgende "doorstuursites" bij Herzner (te zien in het RELATIONS tabblad van https://www.virustotal.com/gui/ip-address/46.225.225.20) maar deze lijken nu allemaal "uit de lucht" te zijn gehaald: https:⧸⧸[www.]dynamic-1001.com https:⧸⧸[www.]ephemeralgarbage.com https:⧸⧸[www.]timsauctionservice.com https:⧸⧸[www.]paramountwebsales.com https:⧸⧸[www.]iserve.co.uk https:⧸⧸[www.]eldiabaptismoglobal.net https:⧸⧸[www.]insuranceopedia.ca https:⧸⧸[www.]spartancu.com https:⧸⧸[www.]wallstreetedge.com Nb. ik heb "https:⧸⧸" i.p.v. "https://" gebruikt om onbedoeld openen door u te voorkómen. Met "[www.] voorafgaand aan de domeinnaam bedoel ik dat ook die variant eerder ook doorstuurde naar de phishingsite. Scammers gebruiken meerdere en steeds nieuwe doorstuursites om te voorkómen dat spamfilters hun phishing-e-mails blokkeren. #CloudflareIsEvil #Phishing #CyberCrime #ICS #ICSphising #Odido #OdidoDataLek
1
28
0
Fell 🚄 SIGGRAPH @fell@ma.fellr.net · May 05, 2026
It's so sad. With CalDAV we have a really nice open protocol for syncing events, todos and notes. The protocol, which is technically more of a file format (iCalendar) even supports quite complex reccurence rules and even things like recurring tasks. Unfortunately, client (and server) applications usually only implement a subset of what's possible. Know some good ones? Let me know! #CalDAV #iCalendar #ics #Calendar #PIM #LinuxApps
4
8
4