K. Reid Wightman
🌻

Tinker, Sailor, Biker, Hi
I do industrial security research for a living, mostly looking for #vulnerabilities in all of the wrong places. I like reverse engineering how PLC logic systems function under the hood, learning how safety instrument protocols work, and figuring out what malicious threat groups are doing and can do with access to such systems. A long time ago, I invented the term 'foreverday' to describe unfixable vulnerabilities.
Occasionally I analyze #industrial #malware, too, and on very rare occasions encounter threat groups that actually write malicious logic to do the vile things that I like to learn about.
I work for a little startup in the space called Dragos. In my spare time I enjoy long distance #bicycling, #sailing, and doting on our #pets.
I used to have an account on
, however I haven't used it in a while and you should no longer assume that it's under my control.
Trying not to be one of the 80% that can be moved in either direction.
If your PLC had its password set by a hacktivist, you might be tempted to get your hands on some sketchy password reset/password retrieval software for it.
We looked at one of those a bit ago and while it did what it said (retrieved the password using an undisclosed bug in the plc comms protocol) it also came with some C2 software. You wanted malware with your PLC password retrieval, right?
I mention this as a piece of software that I've been hunting for, which claims to retrieve passwords from PLCs recently impacted in these water treatment breaches, just showed up on VT for the first time this morning.
It is protected with vmprotect and looks fairly sketchy. Still trying to analyze it but stay frosty. You don't want to be a double victim in all this...
Dang. RIP Vlad Chaloupka (aka Vlad the Astrophysicist). I never knew the guy, but that Peter Mulvey tune tells me we would have gotten along just fine. https://obituaries.seattletimes.com/obituary/vladimir-chaloupka-1093895849
