HackDig : Dig high-quality web security articles for hacker

Digital Transformation in Pharma Introduces New OT Security Threats

The increased use of automated control systems to manage drug formulations and product quality (particularly for combination drugs) is creating new security risks for the pharmaceutical industry. Examples of this new vulnerability surfaced in June 2017 when the pharmaceutical sector, along with healthcare and many other industries, were targeted by the
Publish At:2019-10-29 12:00 | Read:481 | Comments:0 | Tags:INDUSTRY INSIGHTS SCADA / ICS

Some ICS Security Incidents Resulted in Injury, Loss of Life: Survey

ATLANTA — SECURITYWEEK 2019 ICS CYBER SECURITY CONFERENCE — Some of the recent cybersecurity incidents involving industrial control systems (ICS) have resulted in injury and even loss of life, according to a survey conducted by Control Systems Cyber Security Association International (CS2AI).CS2AI is a non-profit organization focused on the growth and expans
Publish At:2019-10-24 10:15 | Read:143 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS Risk Management Management &

Tech, Security Firms Launch Operational Technology Cyber Security Alliance

Several major tech and cybersecurity companies have joined forces for a new initiative called the Operational Technology Cyber Security Alliance (OTCSA), which aims to help industrial and critical infrastructure organizations address challenges related to OT security by providing guidance and resources.Founding members of OTCSA include equipment manufacturer
Publish At:2019-10-23 10:15 | Read:273 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS Risk Management Security Arc

Outdated OSs Still Present in Many Industrial Organizations: Report

ATLANTA — SECURITYWEEK 2019 ICS CYBER SECURITY CONFERENCE — Outdated and unsupported operating systems are still present and they still pose a serious risk in many industrial organizations, according to a new report from industrial cybersecurity firm CyberX.The company’s 2020 Global IoT/ICS Risk Report is based on data passively collected by CyberX from over
Publish At:2019-10-22 10:15 | Read:228 | Comments:0 | Tags:Network Security NEWS & INDUSTRY SCADA / ICS Risk Manage

Cisco Finds 11 Vulnerabilities in Schneider Electric Modicon Controllers

Researchers at Cisco Talos have discovered nearly a dozen vulnerabilities in some of Schneider Electric’s Modicon programmable logic controllers (PLCs).There are a total of 11 security holes affecting Modicon M580, M340, BMENOC 0311, BMENOC 0321, Quantum (no longer supported), Premium, and Modicon BMxCRA and 140CRA modules. The M580 PLC, which is the newest
Publish At:2019-10-10 12:00 | Read:308 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS Vulnerabilities

Vulnerabilities Expose TwinCAT Industrial Systems to DoS Attacks

A couple of vulnerabilities affecting the TwinCAT PLC runtime from Beckhoff can be exploited for denial-of-service (DoS) attacks, which may be triggered by malicious actors or by accident.Beckhoff is a Germany-based company that provides automation solutions, including industrial PCs, I/O and fieldbus components, drive technology, and automation software. Th
Publish At:2019-10-09 00:00 | Read:159 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS Vulnerabilities

Preview: SecurityWeek's 2019 ICS Cyber Security Conference (Oct. 21-24 | Atlanta)

SecurityWeek’s 2019 ICS Cyber Security Conference, the largest and longest-running event dedicated to industrial and critical infrastructure cybersecurity, is set to take place in Atlanta, Ga. on October 21-24.The conference will feature training sessions, case studies and various talks, including technical and strategy-focused presentations. The goal is to
Publish At:2019-10-08 12:00 | Read:300 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS

U.S. to Help Secure Baltic Energy Grid Against Cyber Attacks

The United States and Baltic states on Sunday agreed to beef up cooperation to protect the Baltic energy grid from cyber attacks as they disconnect from the Russian electricity grid.US Energy Secretary Rick Perry and his Lithuanian, Latvian and Estonian counterparts termed the agreement "a critical moment for the Baltic States in strengthening cybersecurity"
Publish At:2019-10-07 00:00 | Read:332 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS

Researcher Shows How Adversaries Can Gather Intel on U.S. Critical Infrastructure

A researcher has used a free tool that he created and open source intelligence (OSINT) to demonstrate how easy it is for adversaries to gather intelligence on critical infrastructure in the United States.The researcher, known online as Wojciech, used his Kamerka tool to find industrial control systems (ICS) in the United States, map them to geographical loca
Publish At:2019-10-04 00:00 | Read:317 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS Identity & Access Risk M

Adwind Malware Used in Attacks Against U.S. Petroleum Firms

Attackers using the Adwind remote access Trojan (RAT) are targeting petroleum firms in the United States in a recent campaign, researchers from Netskope report.Samples observed in the attacks are relatively new, but the functionality of the RAT has remained consistent with previously detailed campaigns. The malware does attempt to evade detection by means of
Publish At:2019-10-03 12:00 | Read:375 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS Malware

Singapore Lays Out Plans for Operational Technology Cybersecurity

Singapore’s Cyber Security Agency (CSA) on Tuesday unveiled the country’s Operational Technology (OT) Cybersecurity Masterplan, whose goal is to help enhance the security and resilience of organizations that house OT systems.The Masterplan focuses on industrial control systems (ICS), which account for a majority of OT systems. While it’s mainly addressed to
Publish At:2019-10-02 12:00 | Read:249 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS Security Architecture Traini

Advanced ICS/SCADA Hacking Training Offered at SecurityWeek's 2019 ICS Cyber Security Conference

SecurityWeek has announced that it will offer an Advanced ICS/SCADA Hacking Training program at its 2019 Industrial Control Systems (ICS) Cyber Security Conference, which takes place October 21-24 in Atlanta.Conducted in partnership with critical infrastructure cyber security firm Applied Risk, the Advanced ICS/SCADA Hacking training will enable pa
Publish At:2019-10-02 12:00 | Read:209 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS

Urgent/11 Flaws Impact More RTOS Used by Medical, Industrial Devices

IoT security firm Armis has confirmed that the recently disclosed vulnerabilities tracked as Urgent/11 affect several real time operating systems (RTOS) other than VxWorks.Armis revealed in late July that Wind River’s VxWorks operating system, which is used by millions of devices, is affected by 11 vulnerabilities, including critical flaws that can be exploi
Publish At:2019-10-02 12:00 | Read:281 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS Vulnerabilities IoT Security

The Impact of Recycling on Industrial Cyber Security

In the decade since the Stuxnet worm was discovered, multiple attacks that have been launched against operational technology (OT) networks including Shamoon, Havex, Wannycry, and Lockergoga. Looking back, a disturbing trend has emerged. Industrial attacks are being recycled.Consider LockerGoga, which crippled Norsk Hydro, one of the largest aluminum manufact
Publish At:2019-10-01 12:00 | Read:400 | Comments:0 | Tags:INDUSTRY INSIGHTS SCADA / ICS

Tridium Niagara Affected by BlackBerry QNX Vulnerabilities

The U.S. Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) informed organizations last week that Tridium’s Niagara product is affected by two vulnerabilities in BlackBerry’s QNX operating system for embedded devices.Niagara is a popular framework designed for connecting and controlling a wide range of Internet of Thing
Publish At:2019-09-30 12:00 | Read:184 | Comments:0 | Tags:NEWS & INDUSTRY SCADA / ICS Vulnerabilities IoT Security

Announce

Share high-quality web security related articles with you:)

Tools

Tag Cloud