07-16-18 – News This Past Week

Flaws Expose Siemens Protection Relays to DoS Attacks
Siemens has informed customers that some of the company’s SIPROTEC protection relays are exposed to denial-of-service (DoS) attacks due to a couple of vulnerabilities present in the EN100 communication module
https://www.securityweek.com/flaws-expose-siemens-protection-relays-dos-attacks

VPNFilter Malware Hits Critical Infrastructure in Ukraine
The Security Service of Ukraine (SBU) revealed this week that the VPNFilter malware, which it attributed to Russian intelligence agencies, had targeted a critical infrastructure organization
https://www.securityweek.com/vpnfilter-malware-hits-critical-infrastructure-ukraine

Ukraine Security Service Stops VPNFilter Attack at Chlorine Station
Ukraine’s SBU Security Service reportedly detected and shut down a cyberattack that used VPNFilter malware on network equipment in a chlorine station that supplies water treatment and sewage plants
https://www.darkreading.com/attacks-breaches/ukraine-security-service-stops-vpnfilter-attack-at-chlorine-station/d/d-id/1332282

ICS Security: ‘The Enemy Is in the Wire’
Threats to industrial control systems are real and frightening. The government is taking steps to keep us safer in the future, but there are near-term steps you can take right now.
https://www.darkreading.com/attacks-breaches/ics-security-the-enemy-is-in-the-wire/a/d-id/1332247

Thales and Device Authority healthcare IoT solution ensures device and data security for medical devices
Thales and Device Authority announce a jointly developed solution to ensure the authentication of IoT devices and the confidentiality and integrity of the data they rely on – giving both healthcare professionals and their patients the confidence to adopt these technologies

Thales and Device Authority healthcare IoT solution ensures device and data security for medical devices

Power Grid Protection Firm SEL Patches Severe Software Flaws
Several vulnerabilities, including ones rated high severity, have been discovered in management and configuration tools from power grid protection company Schweitzer Engineering Laboratories (SEL). The vendor has released software updates to address the flaws
https://www.securityweek.com/power-grid-protection-firm-sel-patches-severe-software-flaws

Posted in Uncategorized.