Enhanced Product Security Incident Response Reduces Customer Risk

Nozomi Networks is quickly expanding to serve more and more industrial, critical infrastructure and operational technology sectors in countries around the globe.
The post Enhanced Product Security Incident Response Reduces Customer Risk appeared first… Continue reading Enhanced Product Security Incident Response Reduces Customer Risk

Ripple20 – New Zero-Day Vulnerabilities Send Shockwaves Across IoT

Two things make Ripple20 IT/OT/IoT vulnerabilities especially concerning: the potential impact that can be achieved by their exploitation, and the difficulty of finding and tracking all instances of the vulnerable library.
The post Ripple20 – Ne… Continue reading Ripple20 – New Zero-Day Vulnerabilities Send Shockwaves Across IoT

IEC 61850 Meets IEC 62351: Securing GOOSE Power Grid Weaknesses

Nozomi Networks CTO Moreno Carullo explains how IEC 62351-6 can be used to secure IEC 61850 GOOSE protocol defects & increase ICS security for substations.
The post IEC 61850 Meets IEC 62351: Securing GOOSE Power Grid Weaknesses appeared first on … Continue reading IEC 61850 Meets IEC 62351: Securing GOOSE Power Grid Weaknesses

COVID-19 Chinoxy Backdoor: A Network Perspective

A prolific threat actor, active in Asia, sends documents to people in Kyrgyzstan about how the United Nations is helping to fight COVID-19.
Nozomi Networks Labs examines how network traffic analysis can detect this specific threat.
The post COVID-19 C… Continue reading COVID-19 Chinoxy Backdoor: A Network Perspective

OT/IoT Security Superheroes: Tackling the Remote Employee Challenge

While the world is grappling with the COVID-19 pandemic, nation-state and other threat actors are capitalizing on the climate of fear, uncertainty and doubt to find OT and IoT security gaps and orchestrate new cyberattacks.
The post OT/IoT Security Sup… Continue reading OT/IoT Security Superheroes: Tackling the Remote Employee Challenge

COVID-19 (coronavirus) Malware: New OT and IoT Security Tools

While the world is grappling with the COVID-19 pandemic, nation-state and other threat actors are capitalizing on the climate of fear, uncertainty and doubt to find OT and IoT security gaps and orchestrate new cyberattacks.
The post COVID-19 (coronavir… Continue reading COVID-19 (coronavirus) Malware: New OT and IoT Security Tools

Recent Ransomware Threatens OT Security, Reputation and GDPR Fines

Last week we reported that a new wave of ransomware is threatening OT security. The Snake file encrypting ransomware, for example, includes code that has the explicit goal of causing process disruption.
The post Recent Ransomware Threatens OT Security,… Continue reading Recent Ransomware Threatens OT Security, Reputation and GDPR Fines

URGENT/11 – New ICS Threat Signatures by Nozomi Networks Labs

A well-known RTOS (Real-Time Operating System), widely used in industrial sectors, is at risk from a series of 11 vulnerabilities dubbed URGENT/11.
Nozomi Networks Labs conducted research on the vulnerable devices and has released threat signatures for… Continue reading URGENT/11 – New ICS Threat Signatures by Nozomi Networks Labs

Black Hat: The Future of Securing Power Grid Intelligent Devices

Today at Black Hat USA we’re presenting an innovative power grid cyber security solution that greatly improves monitoring of intelligent electronic devices (IEDs).
Using the IEC 62351 standard for monitoring industrial networks, we demonstrate h… Continue reading Black Hat: The Future of Securing Power Grid Intelligent Devices