Review - 1 Advisory Published – 2-13-24 – NCCIC-ICS control system security advisory for products from Mitsubishi – Short version – http://tinyurl.com/yrj6hjpk #icsSecurity
1 Advisory Published – 2-13-24 – NCCIC-ICS control system security advisory for products from Mitsubishi – A brief look at Cyber Tuesday in the control system world - http://tinyurl.com/fh387h9r Subscription required #icsSecurity
Schneider published three new advisories and one update - https://www.se.com/ww/en/work/support/cybersecurity/security-notifications.jsp
Siemens published 15 new advisories and 8 updates - https://www.siemens.com/global/en/products/services/cert.html
I know that a few other researchers explored this wild and wacky communications protocol before me. While the vuln found isn't a big deal, my hat's off to all who came before...it was pretty gross to RE how it all worked: https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-021_en.pdf
Committee Hearings – Week of 2-11-24 – Light schedule with Senate heading home for two weeks – One markup hearing that includes a bill to require NTIA study on security hazards of foreign made routers and modems - http://tinyurl.com/33zrpffz #Hearings
Limits to graphical analysis…. https://xkcd.com/2893/
CFSN Detailed Analysis - Substack Daily Update – 2-12-24 – Free Content – http://tinyurl.com/mt6myn93
Short Takes – 2-11-24 – UFO conspiracy bubble – Gander bombing? – Juniper web vulnerability – Ukraine resistance – Counter-UAS hackathon – Glowing houseplants – Problem with roses – Protecting churches - http://tinyurl.com/e6f5punf
Review – S 3661 Introduced – Food & Ag Cybersecurity – Would require USDA to assess ag sector cybersecurity – Additionally requires annual food sector security exercises – Similar to HR 7062 – Short version – http://tinyurl.com/khv54sy4 #Legislation
S 3661 Introduced – Food & Ag Cybersecurity – Would require USDA to assess ag sector cybersecurity – Additionally requires annual food sector security exercises – Similar to HR 7062 - http://tinyurl.com/2dzjdx9x Subscription required #Legislation
Future ICS News - Security Researcher Exonerated - #futurenews - http://tinyurl.com/djrx5s62
CFSN Detailed Analysis - Substack Daily Update – 2-10-24 – Free Content – http://tinyurl.com/mryj5dme
Short Takes – 2-10-24 – KEV analysis – Recreational UAS ICR – National security Jackal – Space plane review – Jetpacks for satellites - http://tinyurl.com/4amx5eav
OSHA Sends Walk-Around Rep Final Rule to OMB - http://tinyurl.com/4ahzhwnt #Regulation #OSHA
Chemical Incident Reporting – Week of 2-3-24 – 1 incident – possible CSB reportable – http://tinyurl.com/bddwxzhp #CSB #ChemicalIncident
CRS Reports – Week of 2-3-24 – Freight Rail Safety Legislation – Pending legislation and issues - http://tinyurl.com/yucaaat7 #CRS #RailSafety #Legislation
Review - Public ICS Disclosure – Week of 2-3-24 – Fairly busy disclosure week before Cyber Tuesday – 22 vendor disclosures – 1 vendor update – 3 exploits – Includes two more KEV’s as third-party vulnerabilities – Short version – http://tinyurl.com/5n96b93s #icsSecurity
Public ICS Disclosure – Week of 2-3-24 – Fairly busy disclosure week before Cyber Tuesday – 22 vendor disclosures – 1 vendor update – 3 exploits – Includes two more KEV’s as third-party vulnerabilities - http://tinyurl.com/jf7bp7y2 Subscription required #icsSecurity