vulnerability Xiiaozet LK100W The CISA has issued an advisory regarding critical vulnerabilities in the Xiiaozet LK100W device. Exploitation could allow an attacker to gain full control over the device by leveraging authentication bypass and command injection flaws. Users are strongly urged to update to version 2.1.240 to mitigate the risk. CISA Advisories · 3d ago Critical CVE-2026-78037CVE-2026-78239CVE-2026-76943vulnerabilitycommand injectionauthentication bypass
threat-intel Threat landscape for industrial automation systems. Q2 2026 In Q2 2026, the percentage of ICS computers blocked by malicious objects continued to decline, hitting a low of 19.15%, the lowest since 2022. East Asia and Africa saw significant increases in threat percentages across… Securelist · 3d ago High RUCHAFicsindustrial automationcybersecurity
threat-intel Hands-On Cyber-Physical Systems Training Returns to ICS Cybersecurity Conference SecurityWeek and MTSI are offering a hands-on training course, Cyber Attack Methods (CAM), as part of the 25th Anniversary Industrial Control Systems (ICS) Cybersecurity Conference. The course teaches participants to thi… SecurityWeek · 5d ago Medium cyber-physicalicscybersecurity
vulnerability PayRange API A critical vulnerability in the PayRange API allows unauthorized access to sensitive device information and potential denial-of-service attacks. The vulnerability stems from a lack of proper authorization on management e… CISA Advisories · 5d ago Critical CVE-2026-18965USCAvulnerabilityicscontrol systems
vulnerability Zoneminder A critical Remote Code Execution (RCE) vulnerability exists in Zoneminder versions 1.37.48 and 1.38.3, allowing authenticated users to execute arbitrary operating system commands. The vulnerability stems from an Improper… CISA Advisories · 5d ago Critical CVE-2026-76060vulnerabilityrceos command injection
vulnerability Rently Smart Home Rently Smart Home versions 20.1.0 and earlier are vulnerable to an insufficient credentials issue, potentially allowing an attacker to access sensitive information and override user permissions. Rently has released a pat… CISA Advisories · 5d ago Medium CVE-2026-75960USINvulnerabilitycwe-522industrial control systems
threat-intel AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure A U.S. government advisory warns of an active threat targeting critical infrastructure organizations, specifically Siemens S7 PLCs, utilizing AI-generated exploit scripts. Threat actors are leveraging internet scanning t… The Hacker News · Aug 20, 2026 High USCHplcindustrial control systemics
threat-intel Hackers Using AI to Target Siemens PLCs in Critical US Sectors US government agencies have issued a cybersecurity advisory warning critical infrastructure organizations about a growing threat of hackers using AI to target Siemens PLCs. The attackers are scanning for exposed PLCs and… SecurityWeek · Aug 20, 2026 High USicsplccybersecurity
threat-intel Defending Against an Active Threat to Siemens S7 Series PLCs The National Security Agency (NSA), CISA, FBI, DOE, and EPA are issuing an advisory warning of an active cyber threat targeting Siemens S7 Series Programmable Logic Controllers (PLCs). Threat actors are leveraging AI to… CISA Advisories · Aug 19, 2026 High icsplccybersecurity
vulnerability Vulnérabilité dans les produits Moxa (19 août 2026) A vulnerability has been identified in Moxa products, allowing an attacker to trigger a denial-of-service attack remotely. This affects several Moxa devices and requires immediate attention to mitigate the risk. CERT-FR · Aug 19, 2026 Medium CVE-2011-1473moxavulnerabilitydenial-of-service
vulnerability Siemens Simcenter Nastran A stack overflow vulnerability exists in Siemens Simcenter Nastran and Femap versions prior to V2606, potentially allowing remote code execution. Siemens has released updates to address the issue. Organizations are advis… CISA Advisories · Aug 18, 2026 High CVE-2026-59086stack-overflowremote-code-executionindustrial-control-systems
vulnerability ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact Several major industrial automation vendors – Siemens, Schneider Electric, and Phoenix Contact – released security patches to address critical vulnerabilities in their ICS products. These flaws could allow attackers to e… SecurityWeek · Aug 12, 2026 High icsindustrial control systemspatch tuesday
vulnerability Multiples vulnérabilités dans les produits Siemens (12 août 2026) Siemens has announced multiple vulnerabilities in its industrial automation products, including Desigo DXR2, PXC3, PXC4, PXC5, and IoT2050 Advanced. These vulnerabilities could allow attackers to execute arbitrary code r… CERT-FR · Aug 12, 2026 High CVE-2026-58115CVE-2026-59693industrial control systemsicscybersecurity
threat-intel New Jersey, Alabama Join States Targeted in Water Cyberattacks A coordinated cyberattack targeting water and wastewater facilities in the United States is expanding, with New Jersey and Alabama becoming the latest states to report incidents. The attacks, linked to Iranian hackers, a… SecurityWeek · Aug 10, 2026 High IRUScyberattackwater systemsics
threat-intel Novel Private APN Pivot Let Hackers Sabotage Second Polish Energy Facility Polish CERT has revealed a second, parallel cyberattack targeting a smaller CHP plant supplying heat to 50,000 residents, utilizing a novel private APN attack vector. The attack, attributed to Russian APT group Sandworm,… SecurityWeek · Aug 10, 2026 High PLicsindustrial control systemsprivate apn
vulnerability Johnson Controls Inc. TL280 A critical vulnerability (CWE-327) exists in Johnson Controls Inc.'s TL280 firmware, allowing attackers to access sensitive information on the device. The vulnerability stems from hardcoded credentials embedded directly… CISA Advisories · Aug 6, 2026 Critical CVE-2026-27871cwe-327firmwareics
vulnerability Medixant RadiAnt DICOM A vulnerability in Medixant RadiAnt DICOM versions older than 2025.2 allows an attacker to crash the application by opening a maliciously crafted DICOM file, potentially leading to remote code execution. CISA recommends… CISA Advisories · Aug 6, 2026 High CVE-2026-17264PLdicomcwe-787heap overflow
threat-intel Water Sector Cyberattacks Reportedly Hit at Least 12 States A growing number of US states, including Minnesota, Michigan, and Georgia, are experiencing cyberattacks targeting water and wastewater facilities. The FBI has linked these attacks to Iran, specifically targeting interne… SecurityWeek · Aug 5, 2026 High IRicsiotcyberattack
threat-intel US Warns of Iranian Hackers Targeting Siemens, Schneider, and Rockwell ICS Devices The US government has issued an updated cybersecurity advisory warning of ongoing Iranian-linked attacks targeting industrial control systems (ICS) manufactured by Siemens, Schneider Electric, and Rockwell Automation. Ha… SecurityWeek · Jul 23, 2026 High IRicsindustrial control systemsplc
vulnerability Rockwell Automation ThinManager Rockwell Automation has issued a security advisory regarding a path traversal vulnerability in its ThinManager software. This vulnerability allows an authenticated attacker to write arbitrary files to restricted system d… CISA Advisories · Jul 21, 2026 Critical CVE-2026-11917path traversalicsindustrial control systems