home.social

#forescout — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #forescout, aggregated by home.social.

fetched live
  1. RE: infosec.exchange/@patrickcmill

    The researchers at #Forescout are super smart on the OT world. You should listen to what they think. IT's scary how bad the ICS world is

  2. New blog posted discussing various forms of “micro-segmentation”, and use of tags instead of IP addresses in ACL’s. With callout to a great post about flows by Daniel Dib with some great comments. linkedin.com/pulse/microsegmen
    Tags: #PeterWelcher #CCIE1773 #Security #MicroSegmentation #NAC #SecurityGroupTag #Cisco #Elisity #ForeScout #Flows

  3. Yet another example of a “security product” causing more harm than good 🤦

    CVE-2025-4660: #Forescout SecureConnector #RCE

    netspi.com/blog/technical-blog

  4. #Solarkomponenten angreifbar: 35.000 #Admin-Panels frei zugänglich im #Netz

    Ein Großteil der ungeschützten Admin-Panels entfällt auf Deutschland. Betroffen sind #Wechselrichter, #Datenlogger und andere #Solarkomponenten.

    #Sicherheitsforscher von #Forescout haben unter Einsatz der #Suchmaschine #Shodan öffentlich zugängliche #Admin-Panels von weltweit mehr als 35.000 #Solarkomponenten entdeckt.

    golem.de/news/solarkomponenten

  5. Zwecks Auffindbarkeit ein paar Hastags dazu:
    Untersuchte Hersteller: #Huawei #Sungrow #GinlongSolis #Goodwatt #GoodWe #SMA
    Allgemein: #PV #WR #Wechselrichter #Solar #Inverter #SunDown #Forescout #China #Hacker #SmartHome #IoT
    forescout.com/research-labs/su
    @bsi

    Recommendations
    Manufacturers
    Development • Devices: holistic security architecture including secure boot, binary hardening, anti-exploitation features, permission separation etc
    • Applications: proper authorization checks on web applications, mobile applications and cloud backends
    Testing • Regular penetration testing on applications and devices • Consider bug bounty programs
    Monitoring Web Application Firewalls Remember that a WAF does not protect against logical flaws

    Users
    Residential and commercial users • Change default passwords and credentials • Use role-based access control • Configure the recording of events in a log • Update software regularly • Backup system information • Disable unused features • Protect communication connections
    Commercial and utility installations (in addition) •
    Include security requirements into procurement considerations
    • Conduct a risk assessment when setting up devices • Ensure network visibility into solar power systems • Segment these devices into their own sub-networks • Monitor those network segments

  6. "🔍 Blind Spots in IP Networking: A Forescout Study 🌐"

    Forescout researchers shed light on overlooked vulnerabilities in the Border Gateway Protocol. A must-read for all network security enthusiasts!

    Source: [Dark Reading](darkreading.com/)

    Tags: #IPNetworking #Cybersecurity #Forescout #BGP #Vulnerabilities 🌐🔍

  7. Das Forscherteam um "Amnesia:33", "Number:Jack" und Co. hat weitere Schwachstellen gefunden – diesmal im "NicheStack" für den Bereich Operational Technology.
    INFRA:HALT: Neue Schwachstellen im TCP/IP-Stack von Industriegeräten entdeckt