ic3sw0rd

40 posts

ic3sw0rd

ic3sw0rd

@ic3sw0rd

focus on ICS security

Katılım Ekim 2019
435 Takip Edilen84 Takipçiler
Sarah Fluchs
Sarah Fluchs@SarahFluchs·
Finally at @S4xNews #S4x23 again this year! I'm already starting to feel Miami vibes 🌴.
Sarah Fluchs tweet media
English
3
0
18
950
ic3sw0rd retweetledi
Black Hat
Black Hat@BlackHatEvents·
Siemens SIMATIC PLC is widely used & accounts for a high proportion of the PLC market share, often used in critical infrastructure control scenarios, such as energy, water, power, oil & gas industries. Join this #BHEU Briefing to learn more -- bit.ly/3LLmDVh
English
0
4
14
0
ic3sw0rd
ic3sw0rd@ic3sw0rd·
Congratulations, my presentation "Fuzzing and Breaking Security Functions of SIMATIC PLCs" has been selected by blackhat EU 2022, I am glad to share my experiences on security issues of SIMATIC PLCs, Stay tuned. #fuzzing-and-breaking-security-functions-of-simatic-plcs-28669" target="_blank" rel="nofollow noopener">blackhat.com/eu-22/briefing… #BHEU @BlackHatEvents @NSFOCUS_Intl
English
0
1
3
0
ic3sw0rd
ic3sw0rd@ic3sw0rd·
[CVE-2022-32137] ABB-PM564 DoS DEMO A crafted request may cause a heap-based buffer overflow in the affected CODESYS products, resulting in a denial-of-service condition or memory overwrite. youtu.be/jY217QJNXEI #ICS #PLC #codesys #vulnerability
YouTube video
YouTube
English
1
0
0
0
ic3sw0rd
ic3sw0rd@ic3sw0rd·
[CVE-2022-31806] Codesys V2 Runtime RCE DEMO Password protection is not enabled by default and there is no information or prompt to enable password protection at login in case no password is set at the controller. youtu.be/q1Um9KZVArU #ICS #PLC #CODESYS #vulnerability
YouTube video
YouTube
English
0
1
0
0
ic3sw0rd
ic3sw0rd@ic3sw0rd·
@langnergroup A lot of people prefer “REM”, however this comes with more risks
English
0
0
0
0
OTbase
OTbase@langnergroup·
Is that too much to ask for
OTbase tweet media
English
4
2
8
0
ic3sw0rd
ic3sw0rd@ic3sw0rd·
@EduardKovacs Siemens high-severity denial-of-service vulnerabilities PoC Demo,The S7-1500 with access protection enabled is still affected by these vulnerabilities and goes into critical failure mode. youtu.be/XNDo0iAaT14
YouTube video
YouTube
English
0
0
0
0
ic3sw0rd
ic3sw0rd@ic3sw0rd·
S7+:Crash,The vulnerabilities that have been addressed so far are CVE-2021-37185、CVE-2021-37204、CVE-2021-37205. The S7-1500 with access protection enabled is still affected by these vulnerabilities and goes into critical failure mode. youtu.be/XNDo0iAaT14
YouTube video
YouTube
English
1
0
2
0
ic3sw0rd
ic3sw0rd@ic3sw0rd·
Since August 2021, we have submitted several SIMATIC product vulnerabilities. Yesterday Siemens published a security advisory addressing three of these vulnerabilities, which we call the series: S7+:Crash.
English
0
1
1
0
ic3sw0rd
ic3sw0rd@ic3sw0rd·
The topic of sharing mentioned in my last tweet is as follows: 1. How to crash a password-protected Siemens SIMATIC product(S7-1500/S7-1200). 2. How to hunt 10 vulnerabilities of ABB AC500 PLC in one day. Are there any topics of interest for you? #ics #cybersecurity
English
0
2
2
0