Discover this podcast and so much more

Podcasts are free to enjoy without a subscription. We also offer ebooks, audiobooks, and so much more for just $11.99/month.

Knocking down the legs of the industrial security triad. [Research Saturday]

Knocking down the legs of the industrial security triad. [Research Saturday]

FromCyberWire Daily


Knocking down the legs of the industrial security triad. [Research Saturday]

FromCyberWire Daily

ratings:
Length:
20 minutes
Released:
Feb 11, 2023
Format:
Podcast episode

Description

Pascal Ackerman, OT Security Strategist from Guidepoint Security, joins Dave to discuss his work on discovering a vulnerability in the integrity of common HMI client-server protocol. This research is a Proof of Concept (PoC) attack on the integrity of data flowing across the industrial network with the intention of intercepting, viewing, and even manipulating values sent to (and from) the HMI, ultimately trying to trick the user into making a wrong decision, ultimately affecting the proper operation of the process.
In this research, they are targeting Rockwell Automation’s FactoryTalk View SE products, trying to highlight the lack of integrity and confidentiality on the production network and the effect that has on the overall security of the production environment.
The research can be found here:
GuidePoint Security researcher discovers vulnerability in the integrity of common HMI client-server protocol
Released:
Feb 11, 2023
Format:
Podcast episode