IM
IronMonkey Threat Research
LIVE
|
Articles 25,419
|
CVEs 337,874
|
APT Groups 800
|
Tools 2,196
|
Updated recently
Today Yesterday All 25,387 articles — Page 166 of 847
Kaspersky ICS CERT (English) ·

Successful exploitation of the vulnerabilities could allow an attacker to execute arbitrary code, crash the device or view protected data

Publications
Kaspersky ICS CERT (English) ·

Sensitive Information Stored in Clear Text in Moxa ThingsPro IIoT Gateway and Device Management Software.

Advisories
Kaspersky ICS CERT (English) ·

This article continues the discussion of research on popular OEM technologies that are implemented in the products of a large number of vendors. Vulnerabilities in such technologies are highly...

Critical Manufacturing Transportation Systems Publications
Kaspersky ICS CERT (English) ·

Hidden Token Access in Moxa ThingsPro IIoT Gateway and Device Management Software.

Advisories
Kaspersky ICS CERT (English) ·

This article continues the discussion of research on popular OEM technologies that are implemented in the products of a large number of vendors. Vulnerabilities in such technologies are highly...

Critical Manufacturing Transportation Systems Publications
Kaspersky ICS CERT (English) ·

An XXE injection vulnerability leads to path traversal inside the Proficy server. An attacker may be able to initiate an OPC UA session and retrieve an arbitrary file from the target system.

Advisories
Kaspersky ICS CERT (English) ·

Victims of the latest attacks include Pensacola and New Orleans city administrations in the US and a hospital in Benešov (Czech Republic)

Publications
Kaspersky ICS CERT (English) ·

LibVNCServer before a 0.9.12 release contains a heap use-after-free vulnerability in the server code of the file transfer extension, which can result in remote code execution.

Advisories
Kaspersky ICS CERT (English) ·

Nine vulnerabilities have been identified in WAGO PFC200 and PFC100 PLCs. They could lead to arbitrary code execution or cause denial of service

Publications
Kaspersky ICS CERT (English) ·

The infection affected the facility’s corporate network and industrial control systems that control cargo transfer. The primary operations of the facility were shut down for over 30 hours

Transportation Systems Publications
Kaspersky ICS CERT (English) ·

The finals of the Kaspersky Industrial CTF, an industrial cybersecurity contest, were just held in Singapore. The winner is the LC/BC team from Russia

Events
Kaspersky ICS CERT (English) ·

An attacker with local access to the project file could cause a Denial-of-Service condition on the affected product while the project file is loaded. Successful exploitation requires access to the...

Advisories
Kaspersky ICS CERT (English) ·

An attacker with network access to affected installations, which are configured without “Encrypted Communication”, can execute arbitrary code. The security vulnerability could be exploited by an...

Advisories
Kaspersky ICS CERT (English) ·

Multiple vulnerabilities could lead to arbitrary code and command execution on a target system and a denial-of-service condition

Publications
Kaspersky ICS CERT (English) ·

Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs.

Advisories
Kaspersky ICS CERT (English) ·

Hasplm cookie does not have a HTTPOnly attribute.

Advisories
Kaspersky ICS CERT (English) ·

If successfully exploited, the vulnerabilities could allow an attacker to execute code remotely and gain full system access

Publications
Kaspersky ICS CERT (English) ·

The vulnerability could be used by an authenticated, remote attacker to execute arbitrary code on devices running vulnerable software

Critical Manufacturing Publications
Kaspersky ICS CERT (English) ·

The vulnerabilities allow attackers to gain unauthorized access to device configuration, decrypt passwords, cause denial of service, or bypass authentication

Critical Manufacturing Publications
Kaspersky ICS CERT (English) ·

A ransomware attack has caused ASCO plants in Belgium, Germany, Canada and the US to suspend their operations. 1000 employees have been placed on a one-week leave

Publications
Kaspersky ICS CERT (English) ·

In this article, we publish the results of our study of the Fibaro Home Center smart home. We identified vulnerabilities in Fibaro Home Center 2 and Fibaro Home Center Lite version 4.540, as well...

Publications
Kaspersky ICS CERT (English) ·

The vulnerability is due to an improper check for unusual or exceptional conditions and could lead to denial of service

Publications
Kaspersky ICS CERT (English) ·

In addition to Schneider Electric, security issues affect products from AVEVA Vijeo Citect and Citect SCADA

Publications
Kaspersky ICS CERT (English) ·

The vulnerability could allow an attacker to force the software to crash or to execute arbitrary code

Publications
Kaspersky ICS CERT (English) ·

Vulnerabilities can lead to a denial-of-service condition and command execution without proper authentication

Publications
Kaspersky ICS CERT (English) ·

The vulnerabilities could allow an attacker to read arbitrary files or cause a denial-of-service condition

Publications
Kaspersky ICS CERT (English) ·

The CODESYS Control runtime system enables embedded or PC-based devices to be a programmable industrial controller. The CODESYS Control runtime system provides several security features. To limit...

Critical Manufacturing Advisories
Kaspersky ICS CERT (English) ·

The purpose of the IoT Security Maturity Model (IoT SMM) is to help choose protection measures against cyberthreats that correspond to the company’s actual business needs.

Publications
Kaspersky ICS CERT (English) ·

Industrial Internet Consortium will take part in the Kaspersky Industrial Cybersecurity Conference 2019 in Sochi as an Association Partner. Don't miss the IIC delegate's presentation!

Critical Manufacturing Publications
Kaspersky ICS CERT (English) ·

Exploitation of the vulnerabilities could lead to remote code execution

Critical Manufacturing Publications