Westermo Switch Vulnerabilities Can Facilitate Attacks on Industrial Organizations

CISA informs organizations that Westermo Lynx switches are affected by eight vulnerabilities and some devices are reportedly exposed to the internet.
The post Westermo Switch Vulnerabilities Can Facilitate Attacks on Industrial Organizations appeared f… Continue reading Westermo Switch Vulnerabilities Can Facilitate Attacks on Industrial Organizations

US Gov Publishes Cybersecurity Guidance for Water and Wastewater Utilities

CISA, FBI and EPA document aims to help water and wastewater organizations improve their cyber resilience and incident response.
The post US Gov Publishes Cybersecurity Guidance for Water and Wastewater Utilities appeared first on SecurityWeek.
Continue reading US Gov Publishes Cybersecurity Guidance for Water and Wastewater Utilities

Unpatched Rapid SCADA Vulnerabilities Expose Industrial Organizations to Attacks

Seven vulnerabilities found in Rapid SCADA could be exploited to gain access to sensitive industrial systems, but they remain unpatched.
The post Unpatched Rapid SCADA Vulnerabilities Expose Industrial Organizations to Attacks appeared first on Securit… Continue reading Unpatched Rapid SCADA Vulnerabilities Expose Industrial Organizations to Attacks

Siemens, Schneider Electric Release First ICS Patch Tuesday Advisories of 2024

Industrial giants Siemens and Schneider Electric publish a total of 7 new security advisories addressing 22 vulnerabilities. 
The post Siemens, Schneider Electric Release First ICS Patch Tuesday Advisories of 2024 appeared first on SecurityWeek.
Continue reading Siemens, Schneider Electric Release First ICS Patch Tuesday Advisories of 2024

Bosch Nutrunner Vulnerabilities Could Aid Hacker Attacks Against Automotive Production Lines

Hackers can take complete control of Bosch Rexroth nutrunners, installing ransomware or altering settings to cause financial impact and brand damage.
The post Bosch Nutrunner Vulnerabilities Could Aid Hacker Attacks Against Automotive Production Lines … Continue reading Bosch Nutrunner Vulnerabilities Could Aid Hacker Attacks Against Automotive Production Lines

States and Congress Wrestle With Cybersecurity After Iran Attacks Small Town Water Utilities

The hacking of a municipal water plant is prompting new warnings from U.S. security officials at a time when governments are wrestling with how to harden water utilities against cyberattacks.
The post States and Congress Wrestle With Cybersecurity Afte… Continue reading States and Congress Wrestle With Cybersecurity After Iran Attacks Small Town Water Utilities

CISA Urges Manufacturers to Eliminate Default Passwords After Recent ICS Attacks

CISA is advising device makers to stop relying on customers to change default passwords following attacks targeting water sector ICS.
The post CISA Urges Manufacturers to Eliminate Default Passwords After Recent ICS Attacks appeared first on SecurityWe… Continue reading CISA Urges Manufacturers to Eliminate Default Passwords After Recent ICS Attacks

MITRE Unveils EMB3D Threat Model for Embedded Devices Used in Critical Infrastructure

MITRE and partners unveil EMB3D, a new threat model designed for critical infrastructure embedded devices.
The post MITRE Unveils EMB3D Threat Model for Embedded Devices Used in Critical Infrastructure appeared first on SecurityWeek.
Continue reading MITRE Unveils EMB3D Threat Model for Embedded Devices Used in Critical Infrastructure

ICS Patch Tuesday: Electromagnetic Fault Injection, Critical Redis Vulnerability

ICS Patch Tuesday: Siemens and Schneider Electric address dozens of vulnerabilities affecting their industrial products.
The post ICS Patch Tuesday: Electromagnetic Fault Injection, Critical Redis Vulnerability appeared first on SecurityWeek.
Continue reading ICS Patch Tuesday: Electromagnetic Fault Injection, Critical Redis Vulnerability