Introducing SCADAfence's “Tailored Threat Intelligence”
    September 20, 2022

    Introducing SCADAfence's “Tailored Threat Intelligence”

    A SCADAfence New Feature report “Could we be next?”   One of the biggest challenges for an industrial OT/ICS security professional is figuring out if their organization is vulnerable to the latest...

    SCADAfence Discovers First CVEs Detected In Alerton PLCs
    September 6, 2022

    SCADAfence Discovers First CVEs Detected In Alerton PLCs

    Alerton, a subsidiary of Honeywell, is a major manufacturer of building management systems for heating, ventilation, and air conditioning (HVAC). SCADAfence’s research team discovered vulnerabilities...

    LockBit Ransomware Targets OT
    September 1, 2022

    LockBit Ransomware Targets OT

    LockBit Overview The first known ransomware attacks using what would come to be known as LockBit were reported back in 2019. Organizations that were infected with the malicious software had their...

    Presenting The SCADAfence Cloud
    August 29, 2022

    Presenting The SCADAfence Cloud

    SCADAfence now offers new advanced services via our cloud. We use the cloud to deliver continuous OT security updates, software upgrades and OT health monitoring.

    Understanding The South Staffs Water Cyber Attack
    August 23, 2022

    Understanding The South Staffs Water Cyber Attack

    South Staffordshire PLC, parent company of South Staffs Water, a small independent utility that supplies water to 1.6 million customers, including 35,000 businesses, in central England was hit by a...

    Evaluating Risk Across Your Entire OT Architecture
    August 18, 2022

    Evaluating Risk Across Your Entire OT Architecture

    A SCADAfence New Feature Report Here is the standard, old school way of automated risk assessment across an OT network:  First, scan each device individually. Then evaluate its specific level of risk...

    ICS / OT Security News Update | SCADAfence - August 17
    August 17, 2022

    ICS / OT Security News Update | SCADAfence - August 17

    Our research team compiled the latest updates on newly announced CVEs, recent ransomware attacks including BlackCat & Luna, and IoT security news. They also offer analysis of the potential impacts...

    SCADAfence Contributes New Metasploit Module For Pentesting BACnet
    August 15, 2022

    SCADAfence Contributes New Metasploit Module For Pentesting BACnet

    The SCADAfence engineering team has contributed a new module to the widely used Metasploit framework as a “pay it forward” program that will allow pentesters and asset owners to use a new set of...

    CVE Prioritization Boosts OT Security & Saves Your Organization Money
    August 2, 2022

    CVE Prioritization Boosts OT Security & Saves Your Organization Money

    A SCADAfence New Feature reportA large, robust Industrial Control Systems (ICS) network can contain tens of thousands of devices. Each of those devices may have any number of associated known CVEs...

    Did Iranian Hackers Cause The Fire At An Israeli Power Plant?
    July 18, 2022

    Did Iranian Hackers Cause The Fire At An Israeli Power Plant?

    Almost immediately after a fire broke out in an active power plant in southern Israel on July 14, 2022, an Iranian hacking group claimed responsibility. While it's understandable why the group, which...

    ICS / OT Security News Update | SCADAfence - July 15
    July 15, 2022

    ICS / OT Security News Update | SCADAfence - July 15

    Our research team compiled the latest updates on newly announced CVEs, recent ransomware attacks and IoT security news. They also offer analysis of the potential impacts and their expert...

    The Iran Steel Industry Cyber Attack Explained
    July 7, 2022

    The Iran Steel Industry Cyber Attack Explained

    Iran’s steel Industry was hit by a hacktivist group calling themselves ”Goneshke Darande” [Predatory Sparrow] on June 27th, 2022. The attack focused specifically on three steel companies that are...

    What Really Caused The Freeport LNG Plant Explosion?
    June 30, 2022

    What Really Caused The Freeport LNG Plant Explosion?

    This blog is a response to a recently published article that implied a link between the June 8th explosion at the Freeport LNG plant and Russian threat actors. The author attempted to connect...

    ICS / OT Security News Update | SCADAfence - June 22
    June 20, 2022

    ICS / OT Security News Update | SCADAfence - June 22

    Our research team compiled the latest updates on newly announced CVEs, recent ransomware attacks and IoT security news. They also offer analysis of the potential impacts and their expert...

    Why Wind Farms’ OT Networks Could Be Ransomware’s Next Big Target
    May 26, 2022

    Why Wind Farms’ OT Networks Could Be Ransomware’s Next Big Target

    A Change In The Air The past several decades have seen a seismic shift in how the world thinks about energy. Concerns about climate change and global geopolitics have caused many nations to declare a...

    Interview With SCADAfence's New Field CTO, Paul Smith
    May 16, 2022

    Interview With SCADAfence's New Field CTO, Paul Smith

    OT and ICS Industry veteran Paul Smith, author of “Pentesting Industrial Control Systems” has recently joined the SCADAfence team in the role of Field CTO. We interviewed Paul to get his thoughts on...

    Weekly ICS / OT Security News Digest | SCADAfence - May 10
    May 11, 2022

    Weekly ICS / OT Security News Digest | SCADAfence - May 10

    Our research team has put together all of the most relevant news topics in the Ransomware and IoT security fields, as well as their impacts and their expert recommendations:

    CISA's Top 15 Routinely Exploited Vulnerabilities: SCADAfence Customers Stay Protected
    May 9, 2022

    CISA's Top 15 Routinely Exploited Vulnerabilities: SCADAfence Customers Stay Protected

    On April 27, the Cybersecurity and Infrastructure Security Agency (CISA), published a joint advisory in collaboration with CSA/NSA/FBI/ACSC and other cybersecurity authorities, providing details on...

    INCONTROLLER / Pipedream: State-Sponsored Attack Tools Targeting Multiple ICS Systems
    April 14, 2022

    INCONTROLLER / Pipedream: State-Sponsored Attack Tools Targeting Multiple ICS Systems

    Dangerous New Malware Can Shut Down, Sabotage Industrial Sites  

    Industroyer2 Malware Attack: Vigilance needed on ICS Networks | SCADAfence
    April 14, 2022

    Industroyer2 Malware Attack: Vigilance needed on ICS Networks | SCADAfence

    Russian-backed Group Attempts to Compromise Ukrainian Power Grid Using Industroyer2 Malware As part of their ongoing military assault against neighboring Ukraine, Russian-backed hacker group Sandworm...

    Vulnerability Report: Rockwell PLC Unauthorized Code Injection [CVE-2022-1161, CVE-2022-1159]
    April 6, 2022

    Vulnerability Report: Rockwell PLC Unauthorized Code Injection [CVE-2022-1161, CVE-2022-1159]

    Two vulnerabilities in Rockwell programmable logic controllers and engineering workstation software have been disclosed. These vulnerabilities give attackers a way to modify automation processes and...

    Your Weekly ICS / OT Security News Digest - March 31st
    March 31, 2022

    Your Weekly ICS / OT Security News Digest - March 31st

    Our research team has put together all of the most relevant news topics in the ICS, IT, Ransomware & OT security fields, as well as their impacts and their expert recommendations:

    The Weekly ICS and OT Security News Digest - March 10th 2022 | SCADAfence
    March 10, 2022

    The Weekly ICS and OT Security News Digest - March 10th 2022 | SCADAfence

     

    The Russia-Ukraine Conflict from an Industrial Cybersecurity Perspective
    March 8, 2022

    The Russia-Ukraine Conflict from an Industrial Cybersecurity Perspective

    In recent weeks, Ukraine has been hit with numerous cyberattacks targeting its government and banking sector as a part of the Russo-Ukrainian crisis. Several Ukrainian government departments and...

    OT Security in 2021 - The Roundup | SCADAfence
    December 30, 2021

    OT Security in 2021 - The Roundup | SCADAfence

    As 2021 draws to a close, it is time for our customary round-up of the year’s industry-changing cyber attacks, product and company updates, and SCADAfence’s achievements. 

    OT Security for Log4J with the SCADAfence Platform
    December 22, 2021

    OT Security for Log4J with the SCADAfence Platform

    Until two weeks ago, Log4j was just a popular Java logging framework, one of the numerous components that run in the background of many modern web applications. But since a zero-day vulnerability...

    A SCADAfence Update Regarding The Log4Shell Vulnerability
    December 15, 2021

    A SCADAfence Update Regarding The Log4Shell Vulnerability

    December 10, 2021, will always be remembered by the security community as the day when a highly critical zero‑day vulnerability was found in the very popular logging library for Java applications, ...

    Simplifying Cyber Security for the Mining Industry
    December 13, 2021

    Simplifying Cyber Security for the Mining Industry

    The COVID-19 pandemic has been detrimental to the world economy while flattening many industries. The mining industry was fortunate to be one of the very few industries to deliver exceptional growth...

    This Thanksgiving, Be Thankful for OT Security | SCADAfence
    November 24, 2021

    This Thanksgiving, Be Thankful for OT Security | SCADAfence

    Thanksgiving – when families get together and express gratitude for everything they have over some food and hopefully some football. For most families and especially security teams, this is a time...

    To Patch or Not to Patch in OT | SCADAfence
    November 9, 2021

    To Patch or Not to Patch in OT | SCADAfence

    When organizations are seeking out the right OT network security for their OT environments and OT devices, the clear objective is to decrease and eliminate risks. Too often organizations only adopt...

    Implementing Zero Trust Security in OT Environments
    October 26, 2021

    Implementing Zero Trust Security in OT Environments

    In 2021, the increasing number of cyber security attacks on major critical infrastructure operators grabbed the headlines. The successful attacks targeted different industrial sectors such as oil...

    Integrate IBM QRadar SIEM with SCADAfence For Complete OT Visibility
    October 6, 2021

    Integrate IBM QRadar SIEM with SCADAfence For Complete OT Visibility

    CISOs and security teams face an uphill battle when it comes to detecting and mitigating ever more frequent and sophisticated cyber threats, especially in OT environments.

    Innovative OT Security Solutions. SCADAfence's largest product rollout.
    September 14, 2021

    Innovative OT Security Solutions. SCADAfence's largest product rollout.

    Over time, we have learned that we develop products not for our own innovation, but for you the customers, to help improve your OT security. In 2021, we were excited to launch three newly designed...

    White House Pushes for Stronger Critical Infrastructure Security
    August 2, 2021

    White House Pushes for Stronger Critical Infrastructure Security

    In the wake of the different ransomware attacks on Colonial Pipeline, JBS Foods, Oldsmar Florida water system and other critical infrastructure, President Joe Biden signed a national security...

    OT Networks Are the Low-Hanging Fruit for Supply Chain Attacks
    July 28, 2021

    OT Networks Are the Low-Hanging Fruit for Supply Chain Attacks

    When looking back at 2020 and 2021 the first thing that comes to mind is the different supply chain attacks on the industrial sectors. The successful attacks by threat actors exploited the industrial...

    The Results are in: SCADAfence is the Most Advanced OT Security Vendor Covering MITRE ATT&CK for ICS
    July 22, 2021

    The Results are in: SCADAfence is the Most Advanced OT Security Vendor Covering MITRE ATT&CK for ICS

    There is a lot of buzz recently on the topic of MITRE ATT&CK for ICS and rightfully so.

    Ransomware Attacks on the Automotive Sector Are Picking Up Speed
    July 14, 2021

    Ransomware Attacks on the Automotive Sector Are Picking Up Speed

    50% of Automotive Manufacturers Are Susceptible to a Ransomware Attack The automotive industry has started to ramp up its digitalization in their manufacturing sites but cybersecurity is still an...

    Kaseya Supply Chain Attack Delivers Mass Ransomware Event to MSPs
    July 5, 2021

    Kaseya Supply Chain Attack Delivers Mass Ransomware Event to MSPs

    Just as the security community was recovering from the SolarWinds supply-chain attack, over July 4th holiday weekend Kaseya IT management software, commonly implemented by Managed Service Providers...

    Water Utilities Face Increasing Risk of Cyber Attacks
    July 1, 2021

    Water Utilities Face Increasing Risk of Cyber Attacks

    Cyber Crime on the Rise - Ransomware is Everywhere Over the past few months, there is a feeling that every day a different organization has fallen victim to a ransomware attack. While the idea of a...

    ​Top 20 PLC Secure Coding Practices Released
    June 24, 2021

    ​Top 20 PLC Secure Coding Practices Released

    Over the years, programmable logic controllers (PLC) have been insecure by default. Security good practices have been created and adopted for IT which can be seen in OWASP’s Top Ten Vulnerabilities...