Researchers uncover major security vulnerabilities in ICS mobile applications

IOActive and Embedi researchers found 147 cybersecurity vulnerabilities in 34 mobile applications used in tandem with SCADA systems. Proof-of-concept Attack on Victim HMI Panel View According to the researchers, if the mobile application vulnerabilitie… Continue reading Researchers uncover major security vulnerabilities in ICS mobile applications

Sophisticated industrial network monitoring without connectivity risks

SecurityMatters and Waterfall Security Solutions announced a global partnership to protect industrial control systems from the most advanced cyber threats. The joint solution integrates SecurityMatters’ SilentDefense network monitoring platform with Wa… Continue reading Sophisticated industrial network monitoring without connectivity risks

New infosec products of the week​: June 16, 2017

Uplevel Systems unveils managed VPN service infrastructure Uplevel Systems has added VPN capabilities to its hybrid managed service platform to help providers differentiate and increase profitability. Uplevel delivers the core IT elements small businesses need most – wired and Wi-Fi networking, storage and backup, and security – through one device installed at the customer site and managed by providers via the cloud. Waterfall Security adds Microsoft Azure support to its Unidirectional CloudConnect offering Waterfall Security … More Continue reading New infosec products of the week​: June 16, 2017

New infosec products of the week​: May 12, 2017

Versive Security Engine detects cyber campaigns automatically with AI The Versive Security Engine is an automated threat-hunting system built on Versive’s enterprise-scale artificial intelligence platform. Versive exposes ongoing adversary campaigns automatically by connecting suspicious or malicious activity, from across the network and over time, into coherent, contextualized, and actionable threat cases. This level of automation multiplies the value of existing staff and transforms cyber defenses. FinalCode Express Edition released FinalCode Express Edition lowers the hurdle … More Continue reading New infosec products of the week​: May 12, 2017

New infosec products of the week​: March 31, 2017

Waterfall Security, CNA Hardy and THB partner to create global industrial cyber proposition THB, CNA Hardy and leading cybersecurity specialist Waterfall Security Solutions have entered into a partnership to provide a new cyber security protection package for industrial businesses globally. “This new cyber insurance partnership is a global precedent on many levels. First, it documents enough concern around increasing cyberattacks on industrial facilities, a clear sign for potential high profits from financial institutions. Secondly, it … More Continue reading New infosec products of the week​: March 31, 2017

New infosec products of the week​: March 10, 2017

Waterproof, scalable and customizable data protection ioSafe released ioSafe Server 5, a fire- and waterproof server designed to eliminate data loss and minimize downtime by protecting data in real-time. and delivering instant disaster recovery with true zero recovery point and the best recovery time objectives for terabytes of data. Digital forensics tool Hibernation Recon gets an update Arsenal Recon launched a new version of Hibernation Recon. The tool extracts information from Microsoft Windows XP, Vista, … More Continue reading New infosec products of the week​: March 10, 2017

Detecting PLC malware in industrial control systems

How can attackers load programmable logic controllers (PLC) with destructive malware, and how can the operators of industrial control systems (ICS) detect it? According to a group of researchers from the International Institute of Information Technology, Hyderabad, and Singapore University of Technology and Design, the trick is not to attempt to change the PLC’s firmware, but to deploy ladder logic bombs (i.e. malware written in ladder logic). The PLC malware “ICS and Supervisory Control and … More Continue reading Detecting PLC malware in industrial control systems

Enterprise Security Weekly #32 – Lior Frenkel, Waterfall Security

Lior Frenkel is the CEO and Co-Founder of Waterfall Security, a leading provider of unidirectional security gateways and stronger-than-firewall perimeter security solutions for industrial control networks and critical infrastructures. With more than 20… Continue reading Enterprise Security Weekly #32 – Lior Frenkel, Waterfall Security

Unidirectional communications in a bidirectional world

Unidirectional Security Gateways can replace firewalls in industrial network environments, providing absolute protection to control systems and operations networks from attacks originating on external networks. Modern enterprises transmit control system information to business networks continuously, and need to send information from business networks into operations networks occasionally – for example when sending control recipes into batch manufacturing systems or when sending anti-virus signatures and other security updates. In this podcast recorded at IoT Solutions World … More Continue reading Unidirectional communications in a bidirectional world