#otsecurity

19 posts · Last used 2d

Back to Timeline
ICS Advisory Project @AdvisoryICS@infosec.exchange · 2d ago

ICS[AP] Dashboards are updated with the 7 CISA Advisories released on 7/23/2026:

Johnson Controls Inc.: 2 New MZ Automation GmbH: 2 New Pronetiqs: 1 New Rockwell Automation: 1 New Weintek: 1 New

www.icsadvisoryproject.com #icssecurity #otsecurity #vulnerabilitymanagement

0
0
0
OffSequence @offseq@infosec.exchange · 2d ago
CVE-2026-42933: CRITICAL unintended proxy vuln (CVSS 10) in Pronetiqs Panduit Intravue ≤3.2.1a14 lets attackers bypass OT segmentation. No patch yet — restrict access & monitor vendor. https://radar.offseq.com/threat/cve-2026-42933-cwe-441-unintended-proxy-or-intermediary-confused-deputy-in-pronetiqs-panduit-intravue-95925181c2d7dbb4 #OffSeq #OTSecurity #Vuln #CVE202642933
0
0
0
ExploitGarbage @ExploitGarbage@infosec.exchange · 3d ago
Came across a disclosure in Altus BluePlant 9.1.40 — a SCADA HMI / ICS platform. CVSS 9.8, unauthenticated RCE, default configuration, as the service account (administrator). The standout: the vendor's auth validator hardcodes three credential-bypass paths in code. Use any one to bypass Connect, get a connectionHandle, then drive a generic RMI gateway to FileServer.RunProcess → Process.Start. No creds, no TLS, port 3100 reachable by default after install. Full root-cause + self-contained PoC on the advisory page. https://0day-rubbish.com/blog/altus-blueplant-hardcoded-creds-rce https://github.com/Exploit-Garbage/0day-Rubbish The project attributes discovery to an automated multi-LLM process (Claude/OpenAI/DeepSeek/GLM), defensive framing, full-disclosure posture. Not affiliated; noting for awareness. #infosec #ICS #SCADA #OTsecurity #vulnerability #0day #RCE #exploit
0
0
0
ICS Advisory Project @AdvisoryICS@infosec.exchange · 4d ago

ICS[AP] Dashboards are updated with the 10 CISA Advisories released on 7/21/2026:

Siemens: 5 New Rockwell Automation: 4 New Tycon Systems: 1 New

www.icsadvisoryproject.com #icssecurity #otsecurity #vulnerabilitymanagement

0
0
0
Open Security Conference @OSCo@infosec.exchange · 5d ago
Replying to @OSCo@infosec.exchange
So here's a little decision helper: ⭐️ Maximize insightful conversations that truly interest you ⭐️ Gain inspiration on all the whole range of cybersecurity ⭐️ Connect with folks through hands-on interaction ⭐️ Learn on your own terms, catering to your own needs ⭐️ Experience the magic of an open space conference Intrigued? Get one of those last #osco tickets! https://opensecurityconference.org/conference/registration #Security #CyberSecurity #InfoSec #AppSec #OTSecurity #OpenSpace [lisi] 2/2
0
0
0
Security Crawler Carl @security_crawler_carl@infosec.exchange · Jul 17, 2026
Replying to @security_crawler_carl@infosec.exchange
KNOWN ISSUE: You haven't done that yet, have you? The ROX II is right there, humming away in a rack, feeling very open-sourcey about its privileges. Patch Siemens ROX II to firmware V2.17.1 immediately — that is the only listed remediation. Reward: You've received a Cursed Root Certificate of Participation. #CyberSecurity #OTSecurity #ZeroDay #Siemens #ICS #PatchedOrPerish (2/2)
0
0
0
ICS Advisory Project @AdvisoryICS@infosec.exchange · Jul 17, 2026
ICS[AP] Dashboards are updated with the 9 CISA Advisories released on 7/16/2026: Rockwell Automation: 5 New AutomationDirect: 1 New NASA: 1 New SALTO: 1 New Siemens: 1 New www.icsadvisoryproject.com #icssecurity #otsecurity #vulnerabilitymanagement
0
0
0
Open Security Conference @OSCo@infosec.exchange · Jul 15, 2026
We've already presented our silver sponsors, yet did you know we also have fabulous bronze sponsors for the Open Security Conference 2026? 🤩 🧡 BRANDAD 🧡 DocuWare 🧡 @lutrasecurity@infosec.exchange All of them help make #osco more inclusive and we're truly grateful. Special kudos go out to our community sponsor Privacy Minded (@r_alb@mastodon.social)! Learn more about our sponsors: https://opensecurityconference.org/support/sponsors/ #osco26 #Security #CyberSecurity #InfoSec #AppSec #OTSecurity [lisi]
0
0
0
ICS Advisory Project @AdvisoryICS@infosec.exchange · Jul 15, 2026

ICS[AP] Dashboards are updated with the 4 new and 1 updated CISA Advisories released on 7/14/2026:

ABB: 3 New Rockwell Automation: 1 New Inductive Automation: 1 Update

www.icsadvisoryproject.com #icssecurity #otsecurity #vulnerabilitymanagement

0
0
0
OffSequence @offseq@infosec.exchange · Jul 14, 2026
CVE-2026-10577: CRITICAL vuln in Rockwell 1715 EtherNet/IP module. Debug port lacks authentication, enabling remote CLI access for file deletion, task stop, or memory changes. Review device exposures now. https://radar.offseq.com/threat/cve-2026-10577-cwe-306-missing-authentication-for--25c66fc4335b822a #OffSeq #ICS #CVE2026_10577 #OTSecurity
0
0
0
Fab @occirol@infosec.exchange · Jul 14, 2026
Any #OTSecurity account worth following ? Any ideas/recommendations ? #infosec #ot #security
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Jul 13, 2026
CVE-2026-4769 exposes WAGO System I/O field devices. An early-boot flaw lets an unauthenticated attacker reach full system compromise. #WAGO #CVE20264769 #ICS #OTSecurity #Firmware https://securityonline.info/wago-system-io-cve-2026-4769/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Open Security Conference @OSCo@infosec.exchange · Jul 08, 2026
Big shout-out to REWE digital for their continued silver sponsorship of the Open Security Conference! 🩶 Their support helps people gain access to #CyberSecurity matters, no matter their own background. We're truly grateful! Discover #REWEdigital: https://www.rewe-digital.com/ Learn more about all our sponsors: https://opensecurityconference.org/support/sponsors/ #osco #osco26 #Security #CyberSecurity #InfoSec #AppSec #OTSecurity #OpenSpace #HomeOfIT #IT #Retail #ITSecurity [lisi]
11
0
6
Claroty @Claroty@infosec.exchange · Jul 09, 2026
AI-enabled threats are accelerating, and industrial organizations need smarter ways to validate and reduce cyber risk. 🤝 That's why we've partnered with Frenos to help organizations continuously validate their defensive posture, prioritize remediation based on real-world exploitability, and reduce downtime risk across cyber-physical systems. 📰 Learn more: https://claroty.com/press-releases/claroty-and-frenos-partner-to-reduce-downtime-risk-for-industrial-environments #CPSsecurity #OTSecurity #IndustrialCybersecurity #CyberResilience #ArtificialIntelligence
0
0
0
Open Security Conference @OSCo@infosec.exchange · Jul 09, 2026
Huge kudos to OSM Solutions for being a silver sponsor the Open Security Conference also for the 2026 edition! 🩶 We really appreciate their continued support in offering this event to even more folks interested in #CyberSecurity. Discover OSM Solutions: https://www.osm-s.com/ Learn more about all our sponsors: https://opensecurityconference.org/support/sponsors/ #osco #osco26 #Security #CyberSecurity #InfoSec #AppSec #OTSecurity #OpenSpace #HomeOfIT #IT #Retail #ITSecurity [lisi]
0
0
0
Claroty @Claroty@infosec.exchange · Jul 08, 2026
Not every exposure deserves the same response. See how Claroty xDome helps security teams prioritize the risks that matter most, so they can focus on reducing operational risk across industrial environments. ▶️ Watch the demo, then learn more: https://claroty.com/industrial-cybersecurity #IndustrialCybersecurity #RiskManagement #OTSecurity #CPSsecurity #CyberResilience
0
0
0
ICS Advisory Project @AdvisoryICS@infosec.exchange · Jul 07, 2026

ICS[AP] Dashboards are updated with the 7 CISA Advisories released on 7/7/2026:

Hitachi Energy: 2 New Siemens: 2 New Digi International: 1 New Hydro-Quebec: 1 New Labcenter Electronics: 1 New

www.icsadvisoryproject.com #icssecurity #otsecurity #vulnerabilitymanagement

0
0
0
Claroty @Claroty@infosec.exchange · Jul 07, 2026
Still using spreadsheets to prepare for CPS security compliance audits? 🫱 Introducing 𝗖𝗣𝗦 𝗖𝗼𝗺𝗽𝗹𝗶𝗮𝗻𝗰𝗲 𝗠𝗮𝗽𝗽𝗶𝗻𝗴 in Claroty xDome. This new feature eases complexity around compliance by providing a current state of compliance for CPS assets and enabled frameworks. Whether you deal with annual, monthly, or weekly audit cycles, compliance shouldn't mean halting operations to parse data. With xDome, continuous, automated compliance mapping protects operational uptime and global revenue. ✅ Learn how to turn weeks of manual audit prep into a two-click report: https://claroty.com/blog/automate-cps-security-compliance-prep-no-spreadsheets-required #CPSsecurity #Compliance #OTSecurity #NIS2 #IEC62443 #CyberResilience #CriticalInfrastructure
0
0
0
Open Security Conference @OSCo@infosec.exchange · Jul 07, 2026
Huge thanks to our silver sponsor from day 1: itRISKman and @jenshoffmann@mastodon.online! 🩶 We're immensely grateful for their continued support over the years. They literally keep the Open Security Conference more affordable for everyone interested in cybersecurity. Discover itRISKman: https://www.itriskman.de/ Learn more about all our sponsors: https://opensecurityconference.org/support/sponsors/ #osco #osco26 #Security #CyberSecurity #InfoSec #AppSec #OTSecurity #OpenSpace [lisi]
5
0
5
ICS Advisory Project @AdvisoryICS@infosec.exchange · Jul 03, 2026

ICS[AP] Dashboards are updated with the 3 new and 3 updated CISA Advisories released on 7/2/2026:

CubeSpace: 1 New Gardyn: 1 New ST Engineering iDirect: 1 New Gardyn: 1 Update Mitsubishi Electric: 1 Update WHILL Inc.: 1 Update

www.icsadvisoryproject.com #icssecurity #otsecurity #vulnerabilitymanagement

0
0
0