home.social

#ot — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #ot, aggregated by home.social.

fetched live
  1. #OT #Advisory VDE-2025-056
    Phoenix Contact: Improper Input Validation Vulnerabilities in PLCnext Firmware

    This advisory addresses multiple security vulnerabilities in PLCnext firmware versions prior to 2026.0.3. The vulnerabilities may allow unauthenticated attackers to cause denial of service, trigger unexpected system behavior, or execute unauthorized SQL queries. Successful exploitation could impact the availability, integrity, and confidentiality of affected PLCnext Control devices. All issues are resolved in PLCnext firmware version 2026.0.3.
    #CVE CVE-2025-41769, CVE-2025-41770, CVE-2025-41771

    certvde.com/en/advisories/vde-

    #CSAF phoenixcontact.csaf-tp.certvde

  2. #OT #Advisory VDE-2025-056
    Phoenix Contact: Improper Input Validation Vulnerabilities in PLCnext Firmware

    This advisory addresses multiple security vulnerabilities in PLCnext firmware versions prior to 2026.0.3. The vulnerabilities may allow unauthenticated attackers to cause denial of service, trigger unexpected system behavior, or execute unauthorized SQL queries. Successful exploitation could impact the availability, integrity, and confidentiality of affected PLCnext Control devices. All issues are resolved in PLCnext firmware version 2026.0.3.
    #CVE CVE-2025-41769, CVE-2025-41770, CVE-2025-41771

    certvde.com/en/advisories/vde-

    #CSAF phoenixcontact.csaf-tp.certvde

  3. #OT #Advisory VDE-2025-056
    Phoenix Contact: Improper Input Validation Vulnerabilities in PLCnext Firmware

    This advisory addresses multiple security vulnerabilities in PLCnext firmware versions prior to 2026.0.3. The vulnerabilities may allow unauthenticated attackers to cause denial of service, trigger unexpected system behavior, or execute unauthorized SQL queries. Successful exploitation could impact the availability, integrity, and confidentiality of affected PLCnext Control devices. All issues are resolved in PLCnext firmware version 2026.0.3.
    #CVE CVE-2025-41769, CVE-2025-41770, CVE-2025-41771

    certvde.com/en/advisories/vde-

    #CSAF phoenixcontact.csaf-tp.certvde

  4. 📰 Polish Power Plant Breached via Private Cellular APN Network

    A novel attack on a Polish power plant used a private cellular APN to pivot into the OT network. Attackers, linked to Russia's FSB, used default PLC credentials to shut down a steam turbine. #ICS #OT #CyberAttack #CriticalInfrastructure #Poland

    🔗 cyber.netsecops.io/articles/no

  5. hey #infosec and #netadmin folks: how often do you see #snmp configured in the wild? (specifically on #ot #networks)

  6. hey #infosec and #netadmin folks: how often do you see #snmp configured in the wild? (specifically on #ot #networks)

  7. hey #infosec and #netadmin folks: how often do you see #snmp configured in the wild? (specifically on #ot #networks)

  8. DEF CON Franklin and the NRWA have launched the Water Watch Center following a suspected widespread nation-state cyberattack on water utilities. iottechnews.com/news/cyber-def #cybersecurity #digitaltwins #iiot #defcon #iot #ot #infosec #tech

  9. DEF CON Franklin and the NRWA have launched the Water Watch Center following a suspected widespread nation-state cyberattack on water utilities. iottechnews.com/news/cyber-def

  10. 📰 NIST Publishes Final Cybersecurity Framework Profile for Transit Sector

    NIST has released the final version of its Transit Cybersecurity Framework Profile (NIST IR 8576). The guide helps U.S. transit agencies manage cybersecurity risks across their IT and operational technology (OT) systems. #NIST #Cybersecurity #OT #ICS

    🔗 cyber.netsecops.io/articles/ni

  11. 📰 NIST Publishes Final Cybersecurity Framework Profile for Transit Sector

    NIST has released the final version of its Transit Cybersecurity Framework Profile (NIST IR 8576). The guide helps U.S. transit agencies manage cybersecurity risks across their IT and operational technology (OT) systems. #NIST #Cybersecurity #OT #ICS

    🔗 cyber.netsecops.io/articles/ni

  12. PiP Cast: Perspectives In Paeds
    Join Melbourne-based OTs Jackie Sikic and Caitlin Smith as they explore best practices, unpack the latest evidence, and chat about the everyday challenges faced by clinicians in paediatrics...

    Great Australian Pods Podcast Directory: greataustralianpods.com/pip-ca

    #AusPods #Podcasts #Podcasting #Australia #Health #Careers #ComplementaryHealth #Wellness #OT

  13. PiP Cast: Perspectives In Paeds
    Join Melbourne-based OTs Jackie Sikic and Caitlin Smith as they explore best practices, unpack the latest evidence, and chat about the everyday challenges faced by clinicians in paediatrics...

    Great Australian Pods Podcast Directory: greataustralianpods.com/pip-ca

    #AusPods #Podcasts #Podcasting #Australia #Health #Careers #ComplementaryHealth #Wellness #OT

  14. PiP Cast: Perspectives In Paeds
    Join Melbourne-based OTs Jackie Sikic and Caitlin Smith as they explore best practices, unpack the latest evidence, and chat about the everyday challenges faced by clinicians in paediatrics...

    Great Australian Pods Podcast Directory: greataustralianpods.com/pip-ca

    #AusPods #Podcasts #Podcasting #Australia #Health #Careers #ComplementaryHealth #Wellness #OT

  15. PiP Cast: Perspectives In Paeds
    Join Melbourne-based OTs Jackie Sikic and Caitlin Smith as they explore best practices, unpack the latest evidence, and chat about the everyday challenges faced by clinicians in paediatrics...

    Great Australian Pods Podcast Directory: greataustralianpods.com/pip-ca

    #AusPods #Podcasts #Podcasting #Australia #Health #Careers #ComplementaryHealth #Wellness #OT

  16. PiP Cast: Perspectives In Paeds
    Join Melbourne-based OTs Jackie Sikic and Caitlin Smith as they explore best practices, unpack the latest evidence, and chat about the everyday challenges faced by clinicians in paediatrics...

    Great Australian Pods Podcast Directory: greataustralianpods.com/pip-ca

    #AusPods #Podcasts #Podcasting #Australia #Health #Careers #ComplementaryHealth #Wellness #OT

  17. europesays.com/pl/610180/ Skuteczny atak na elektrociepłownię w Polsce. W wyniku incydentu bezpieczeństwa doszło do zatrzymania turbiny parowej #cyberatak #elektrociepłownia #ot #PL #Poland #Polish #Polska #Polski

  18. Skuteczny atak na elektrociepłownię w Polsce. W wyniku incydentu bezpieczeństwa doszło do zatrzymania turbiny parowej

    CERT Polska opublikował właśnie znaczne uzupełnienie opisu incydentu, który relacjonowaliśmy w styczniu. Wg najnowszej relacji: 1. Atak na elektrociepłownię rozpoczął się od cyberataku na farmę fotowoltaiczną, a dokładniej przejęto urządzenie Fortigate z interface VPN wystawionym do Internetu. Jak dodaje CERT Polska: interfejs VPN był dostępny z sieci internet i umożliwiał...

    #Aktualności #Cyberatak #Elektrociepłownia #Ot

    sekurak.pl/skuteczny-atak-na-e

  19. Skuteczny atak na elektrociepłownię w Polsce. W wyniku incydentu bezpieczeństwa doszło do zatrzymania turbiny parowej

    CERT Polska opublikował właśnie znaczne uzupełnienie opisu incydentu, który relacjonowaliśmy w styczniu. Wg najnowszej relacji: 1. Atak na elektrociepłownię rozpoczął się od cyberataku na farmę fotowoltaiczną, a dokładniej przejęto urządzenie Fortigate z interface VPN wystawionym do Internetu. Jak dodaje CERT Polska: interfejs VPN był dostępny z sieci internet i umożliwiał...

    #Aktualności #Cyberatak #Elektrociepłownia #Ot

    sekurak.pl/skuteczny-atak-na-e

  20. Skuteczny atak na elektrociepłownię w Polsce. W wyniku incydentu bezpieczeństwa doszło do zatrzymania turbiny parowej

    CERT Polska opublikował właśnie znaczne uzupełnienie opisu incydentu, który relacjonowaliśmy w styczniu. Wg najnowszej relacji: 1. Atak na elektrociepłownię rozpoczął się od cyberataku na farmę fotowoltaiczną, a dokładniej przejęto urządzenie Fortigate z interface VPN wystawionym do Internetu. Jak dodaje CERT Polska: interfejs VPN był dostępny z sieci internet i umożliwiał...

    #Aktualności #Cyberatak #Elektrociepłownia #Ot

    sekurak.pl/skuteczny-atak-na-e

  21. Skuteczny atak na elektrociepłownię w Polsce. W wyniku incydentu bezpieczeństwa doszło do zatrzymania turbiny parowej

    CERT Polska opublikował właśnie znaczne uzupełnienie opisu incydentu, który relacjonowaliśmy w styczniu. Wg najnowszej relacji: 1. Atak na elektrociepłownię rozpoczął się od cyberataku na farmę fotowoltaiczną, a dokładniej przejęto urządzenie Fortigate z interface VPN wystawionym do Internetu. Jak dodaje CERT Polska: interfejs VPN był dostępny z sieci internet i umożliwiał...

    #Aktualności #Cyberatak #Elektrociepłownia #Ot

    sekurak.pl/skuteczny-atak-na-e

  22. Skuteczny atak na elektrociepłownię w Polsce. W wyniku incydentu bezpieczeństwa doszło do zatrzymania turbiny parowej

    CERT Polska opublikował właśnie znaczne uzupełnienie opisu incydentu, który relacjonowaliśmy w styczniu. Wg najnowszej relacji: 1. Atak na elektrociepłownię rozpoczął się od cyberataku na farmę fotowoltaiczną, a dokładniej przejęto urządzenie Fortigate z interface VPN wystawionym do Internetu. Jak dodaje CERT Polska: interfejs VPN był dostępny z sieci internet i umożliwiał...

    #Aktualności #Cyberatak #Elektrociepłownia #Ot

    sekurak.pl/skuteczny-atak-na-e

  23. Eye commentary suggests UK “uniquely placed” to bring oculomics from code to clinic

    A new commentary published in Eye has outlined the factors that will be important for the potential of…
    #EuropeSays #Britain #Europe #EU #UK ##Insight #AlexanderHeatley #oculomics #OptometryToday #OT #ProfessorPearseKeane #SiegfriedWagner #UnitedKingdom
    europesays.com/britain/99386/

  24. "💪 Strong CPS security starts with clear ownership.

    In this on-demand webinar, Sean Tufts shares how to build a practical CPS Security RACI that aligns cybersecurity, #OT, and operations teams. Discover strategies for defining roles and responsibilities, improving collaboration, and implementing repeatable workflows that strengthen cyber resilience without disrupting operations.

    ⏯️ Watch anytime: claroty.com/resources/webinars

    #Cybersecurity #OTSecurity #CriticalInfrastructure #CPS #OperationalResilience

  25. "💪 Strong CPS security starts with clear ownership.

    In this on-demand webinar, Sean Tufts shares how to build a practical CPS Security RACI that aligns cybersecurity, #OT, and operations teams. Discover strategies for defining roles and responsibilities, improving collaboration, and implementing repeatable workflows that strengthen cyber resilience without disrupting operations.

    ⏯️ Watch anytime: claroty.com/resources/webinars

    #Cybersecurity #OTSecurity #CriticalInfrastructure #CPS #OperationalResilience

  26. 👋 Meet Claire, the industry's first CPS-native AI security agent. Designed to help security teams work smarter, Claire delivers AI-powered insights, simplifies complex investigations, and helps organizations protect their #OT, #IoT, #IoMT, and other cyber-physical environments with greater speed and confidence.

    💡 Learn more: claroty.com/blog/how-claroty-c

    #Cybersecurity #ArtificialIntelligence #AI #OTSecurity #CriticalInfrastructure #CPS #ClarotyClaire

  27. 👋 Meet Claire, the industry's first CPS-native AI security agent. Designed to help security teams work smarter, Claire delivers AI-powered insights, simplifies complex investigations, and helps organizations protect their #OT, #IoT, #IoMT, and other cyber-physical environments with greater speed and confidence.

    💡 Learn more: claroty.com/blog/how-claroty-c

    #Cybersecurity #ArtificialIntelligence #AI #OTSecurity #CriticalInfrastructure #CPS #ClarotyClaire

  28. 👋 Meet Claire, the industry's first CPS-native AI security agent. Designed to help security teams work smarter, Claire delivers AI-powered insights, simplifies complex investigations, and helps organizations protect their #OT, #IoT, #IoMT, and other cyber-physical environments with greater speed and confidence.

    💡 Learn more: claroty.com/blog/how-claroty-c

    #Cybersecurity #ArtificialIntelligence #AI #OTSecurity #CriticalInfrastructure #CPS #ClarotyClaire

  29. 👋 Meet Claire, the industry's first CPS-native AI security agent. Designed to help security teams work smarter, Claire delivers AI-powered insights, simplifies complex investigations, and helps organizations protect their #OT, #IoT, #IoMT, and other cyber-physical environments with greater speed and confidence.

    💡 Learn more: claroty.com/blog/how-claroty-c

    #Cybersecurity #ArtificialIntelligence #AI #OTSecurity #CriticalInfrastructure #CPS #ClarotyClaire

  30. #OT #Advisory VDE-2026-072
    Pilz: Multiple Vulnerabilities affecting industrial PC IndustrialPI

    The Linux kernel used in the IndustrialPI, 'linux-image-revpi-v8', prior to version 6.12.91-revpi0-rpi-v8 contains multiple vulnerabilities. Successful exploitation of these vulnerabilities can give an attacker full control over the device.
    #CVE CVE-2026-43284, CVE-2026-46300, CVE-2026-31431

    certvde.com/en/advisories/vde-

    #CSAF pilz.csaf-tp.certvde.com/.well

  31. #OT #Advisory VDE-2026-072
    Pilz: Multiple Vulnerabilities affecting industrial PC IndustrialPI

    The Linux kernel used in the IndustrialPI, 'linux-image-revpi-v8', prior to version 6.12.91-revpi0-rpi-v8 contains multiple vulnerabilities. Successful exploitation of these vulnerabilities can give an attacker full control over the device.
    #CVE CVE-2026-43284, CVE-2026-46300, CVE-2026-31431

    certvde.com/en/advisories/vde-

    #CSAF pilz.csaf-tp.certvde.com/.well

  32. #OT #Advisory VDE-2026-065
    Endress+Hauser: iDTM Debug Interface Vulnerability in the FDI Package Library

    A vulnerability in the iDTM FDI allows an attacker with elevated privileges and access to the host system to enable the debug interface by placing a crafted file in the application directory.
    #CVE CVE-2026-9593

    certvde.com/en/advisories/vde-

    #CSAF endress-hauser.csaf-tp.certvde

  33. #OT #Advisory VDE-2026-065
    Endress+Hauser: iDTM Debug Interface Vulnerability in the FDI Package Library

    A vulnerability in the iDTM FDI allows an attacker with elevated privileges and access to the host system to enable the debug interface by placing a crafted file in the application directory.
    #CVE CVE-2026-9593

    certvde.com/en/advisories/vde-

    #CSAF endress-hauser.csaf-tp.certvde

  34. #OT #Advisory VDE-2026-065
    Endress+Hauser: iDTM Debug Interface Vulnerability in the FDI Package Library

    A vulnerability in the iDTM FDI allows an attacker with elevated privileges and access to the host system to enable the debug interface by placing a crafted file in the application directory.
    #CVE CVE-2026-9593

    certvde.com/en/advisories/vde-

    #CSAF endress-hauser.csaf-tp.certvde

  35. 🚨 SIGINT // Cybersecurity Watch — 2026-08-03
    CISA urges water utilities to lock down OT/PLCs after coordinated attacks hit multiple states, with signs pointing to Iranian threat actors.
    securityweek.com/cisa-urges-wa

  36. 🚨 SIGINT // Cybersecurity Watch — 2026-08-03
    CISA urges water utilities to lock down OT/PLCs after coordinated attacks hit multiple states, with signs pointing to Iranian threat actors.
    securityweek.com/cisa-urges-wa
    #CISA #ICS #OT #Cybersecurity

  37. 📰 CISA and FBI Warn of Attacks on US Water System PLCs

    CISA & FBI issue urgent warning on cyberattacks targeting US water systems. Malicious actors are compromising internet-exposed Rockwell PLCs, causing operational disruptions and boil water notices. Operators urged to remove OT from internet. #ICS #OT...

    🔗 cyber.netsecops.io/articles/ci

  38. 🚨 SIGINT // Cybersecurity Watch — 2026-08-02
    US warns Iranian hackers are actively targeting Siemens, Schneider Electric & Rockwell ICS devices, raising critical infrastructure risk.
    securityweek.com/us-warns-of-i