Skip to main content
← All Articles

Tag

#ICS

54 articles

Advertisement

INFO
Threat Intel

AI-Assisted PLC Exploit Porting: WAGO RCE via Claude

Forescout researchers used Anthropic's Claude to port a WAGO PLC RCE exploit, demonstrating AI's potential in offensive security but highlighting current challenges.

Runtime Rebel Intel
4 min read · Sep 1, 2026
Multistate Water System Attacks Target Exposed PLCs
HIGH
Threat Intel

Multistate Water System Attacks Target Exposed PLCs

Attacks targeting poorly secured, internet-exposed PLCs in water systems are widening across multiple U.S. states, with Iran suspected.

Runtime Rebel Intel
3 min read · Aug 11, 2026
HIGH
Threat Intel

Coordinated OT Attack Targets 30+ Minnesota Water Utilities

Over 30 Minnesota water utilities were targeted in a coordinated cyberattack on operational technology, prompting a statewide incident response and investigation.

Runtime Rebel Intel
4 min read · Jul 29, 2026
HIGH
Vulnerabilities

CVE-2024-2821: Critical RCE in Daktronics Controllers — Patch Now

Critical vulnerabilities (CVE-2024-2821, CVE-2024-2822, CVE-2024-2823) in Daktronics Venus 1500 and Vanguard controllers allow remote hacking of highway signs and…

Runtime Rebel Intel
4 min read · Jun 30, 2026
HIGH
Vulnerabilities

Rockwell RSLinx <4.50.00 RCE via CVE-2020-13573 — Patch Now

Urgent advisory for Rockwell RSLinx Classic users. CVE-2020-13573, a stack-based buffer overflow, enables remote code execution and DoS. Patch <=4.50.00.

Runtime Rebel Intel
4 min read · Jun 18, 2026
HIGH
Vulnerabilities

CVE-2026-11317: Rockwell Logix DoS via CIP — Patch Critical ICS

Critical Manufacturing faces high-severity DoS risk in Rockwell Automation Logix 5370 & 5570 controllers from CVE-2026-11317. Patch now.

Runtime Rebel Intel
4 min read · Jun 18, 2026

Advertisement

INFO
Threat Intel

ICS Exposure Persists as OT Attack Surface Expands

Analysis of Industrial Control System (ICS) exposure, its persistence amidst expanding attack surfaces, and vital steps for operational technology security.

Runtime Rebel Intel
5 min read · Jun 13, 2026
HIGH
Vulnerabilities

Siemens KACO Blueplanet Inverter Vulnerabilities: CVE-2025-40946 & CVE-2026-41125

Critical Siemens KACO Blueplanet Inverters are vulnerable to credential derivation (CVE-2025-40946) and SQL injection (CVE-2026-41125).

Runtime Rebel Intel
5 min read · Jun 9, 2026
MEDIUM
Vulnerabilities

Hitachi Energy MACH HiDraw RCE via CVE-2026-7310 — Patch Guide

Hitachi Energy addresses a heap-based buffer overflow in MACH HiDraw version 9.22. Learn how to mitigate CVE-2026-7310 and protect critical ICS assets.

Runtime Rebel Intel
3 min read · Jun 4, 2026
MEDIUM
Vulnerabilities

CVE-2026-6332: Schneider Electric EcoStruxure HVAC Source Code Disclosure

A cleartext storage vulnerability in Schneider Electric EcoStruxure Machine Expert HVAC (CVE-2026-6332) exposes sensitive source code. Update to v1.10.0.

Runtime Rebel Intel
5 min read · May 28, 2026
HIGH
Vulnerabilities

CVE-2021-22291: ABB EIBPORT V3 <3.9.2 Session Hijacking Vulnerability

ABB EIBPORT V3 devices are vulnerable to CVE-2021-22291 (XSS/session hijacking), allowing unauthenticated access and configuration changes. Patch immediately.

Runtime Rebel Intel
4 min read · May 28, 2026
HIGH
Vulnerabilities

CVE-2026-7251: Hard-coded Password in Eppendorf BioFlo 320

Critical hard-coded password vulnerability (CVE-2026-7251) in Eppendorf BioFlo 320 bioreactors allows full remote control. Patch immediately.

Runtime Rebel Intel
5 min read · May 26, 2026
CRITICAL
Vulnerabilities

ABB B&R Automation Studio <6.5: Multiple Critical SQLite Vulnerabilities

Critical SQLite vulnerabilities in ABB B&R Automation Studio <6.5 expose ICS to RCE, data exposure, and unauthorized access. Update to version 6.5 immediately.

Runtime Rebel Intel
4 min read · May 23, 2026
MEDIUM
Vulnerabilities

CVE-2022-4304: Hitachi Energy GMS600 Timing Side Channel Vulnerability

Hitachi Energy GMS600 versions 1.3.0-1.3.1 affected by CVE-2022-4304, an OpenSSL timing side channel leading to TLS decryption. Patch to 1.3.2 now.

Runtime Rebel Intel
4 min read · May 21, 2026
OT Robot OS Command Injection: Unauthenticated RCE — Patch Now
HIGH
Vulnerabilities

OT Robot OS Command Injection: Unauthenticated RCE — Patch Now

Critical command injection vulnerability in OT Robot OS allows unauthenticated attackers to gain remote control, posing significant disruption risks to industrial…

Runtime Rebel Intel
4 min read · May 20, 2026
MEDIUM
Vulnerabilities

CVE-2026-4293: Kieback & Peter DDC XSS — Mitigate Building Controller Risks

CISA warns of CVE-2026-4293, a Cross-site Scripting vulnerability in Kieback & Peter DDC Building Controllers.

Runtime Rebel Intel
4 min read · May 19, 2026
HIGH
Vulnerabilities

CVE-2026-40175: Siemens gWAP RCE via Axios Prototype Pollution

Siemens gWAP is vulnerable to RCE via CVE-2026-40175, a prototype pollution flaw in the Axios HTTP client library. Update to v3.1.1 or later.

Runtime Rebel Intel
4 min read · May 14, 2026
HIGH
Vulnerabilities

CVE-2026-6411: MAXHUB Pivot Client Hardcoded AES Key — Patch Guide

Exploit analysis of CVE-2026-6411 in MAXHUB Pivot client. Learn how hardcoded AES keys and MQTT enrollment flaws lead to data disclosure and DoS.

Runtime Rebel Intel
4 min read · May 8, 2026
MEDIUM
Vulnerabilities

ABB B&R Automation Runtime DoS via CVE-2025-11044 — Patch Now

An unauthenticated network DoS vulnerability (CVE-2025-11044) affects ABB B&R Automation Runtime, allowing permanent system halts. Immediate patching is critical.

Runtime Rebel Intel
4 min read · May 6, 2026
HIGH
Vulnerabilities

CVE-2025-11043: ABB Automation Studio <6.5 Improper Certificate Validation

Critical manufacturing systems running ABB B&R Automation Studio <6.5 are vulnerable to CVE-2025-11043, allowing data interception and spoofing via improper certificate…

Runtime Rebel Intel
5 min read · May 6, 2026
HIGH
Vulnerabilities

CVE-2025-14510: ABB Ability OPTIMAX Azure AD SSO Auth Bypass

CISA warns of CVE-2025-14510 impacting ABB Ability OPTIMAX, allowing authentication bypass on Azure AD SSO integrations. Patch immediately.

Runtime Rebel Intel
4 min read · May 1, 2026
HIGH
Vulnerabilities

ABB AWIN Gateways Authentication Bypass and DoS Vulnerabilities

Critical vulnerabilities in ABB AWIN GW100 and GW120 gateways could allow unauthenticated attackers to reboot devices or extract sensitive configuration data.

Runtime Rebel Intel
3 min read · Apr 30, 2026
HIGH
Vulnerabilities

ABB Symphony Plus Engineering: Fix PostgreSQL RCE Vulnerabilities

ABB Ability Symphony Plus Engineering is vulnerable to RCE via legacy PostgreSQL components. Learn how to mitigate CVE-2024-7348 and secure ICS networks.

Runtime Rebel Intel
3 min read · Apr 30, 2026
MEDIUM
Vulnerabilities

NSA GRASSMARLIN XXE Vulnerability CVE-2026-6807 — Mitigation Guide

CISA warns of a Medium-severity XXE vulnerability in NSA GRASSMARLIN. With the tool reaching end-of-life, defenders must address CVE-2026-6807 via decommissioning.

Runtime Rebel Intel
3 min read · Apr 29, 2026