ICS Patch Tuesday: Security Advisories Released by CISA, Schneider, Siemens, Rockwell

November 13, 2024 at 07:21AM CISA, Schneider Electric, Siemens, and Rockwell Automation have issued security advisories for November 2024’s Patch Tuesday, focusing on vulnerabilities in industrial control systems. The information was reported by SecurityWeek. **Meeting Takeaways:** 1. **Participants:** CISA, Schneider Electric, Siemens, and Rockwell Automation. 2. **Key Event:** November 2024 Patch Tuesday security advisories have … Read more

Schneider Electric ransomware crew demands $125k paid in baguettes

November 5, 2024 at 04:56PM Schneider Electric is investigating a breach by the ransomware group Hellcat, which claims to have stolen over 40 GB of data and demands $125,000 in baguettes. The breach affects critical data and user information accessed through the company’s Atlassian Jira system. This marks Schneider’s third breach in two years. **Meeting … Read more

Schneider Electric Clawed by ‘Hellcat’ Ransomware Gang

November 5, 2024 at 03:58PM Hackers known as “Hellcat” claim to have stolen over 40GB of sensitive data from Schneider Electric, demanding a $125,000 ransom. They breached the company’s Jira system and threatened to release the data if their demands are unmet. Schneider Electric is investigating, acknowledging unauthorized access but not confirming the theft. ### … Read more

Schneider Electric Launches Probe After Hackers Claim Theft of User Data

November 5, 2024 at 05:06AM Hackers have allegedly stolen sensitive user data by breaching Schneider Electric’s Jira system, prompting the company to initiate an investigation. **Meeting Takeaways:** 1. **Incident Overview**: Hackers have reportedly breached Schneider Electric’s Jira system, claiming to have stolen sensitive user data. 2. **Affected Information**: The stolen information includes sensitive user data. … Read more

Schneider Electric confirms dev platform breach after hacker steals data

November 4, 2024 at 02:24PM Schneider Electric confirmed a breach of its developer platform, with a threat actor claiming to have stolen 40GB of data from its JIRA server, including 75,000 unique email addresses. The company’s Global Incident Response team is investigating, and its products remain unaffected. The hacker demands $125,000 in “Baguettes” not to … Read more

ICS Patch Tuesday: Advisories Published by Siemens, Schneider, ABB, CISA

September 11, 2024 at 05:15AM The September 2024 Patch Tuesday saw security advisories from Siemens, Schneider Electric, and ABB, addressing critical vulnerabilities in their products, including authentication bypass, remote code execution, and privilege escalation issues. CISA also issued advisories for various ICS vulnerabilities, emphasizing the importance of implementing available mitigations and workarounds. Based on the … Read more

ICS Patch Tuesday: Advisories Released by Siemens, Schneider, Rockwell, Aveva

August 14, 2024 at 04:51AM Siemens, Schneider Electric, Rockwell Automation, Aveva, and the US cybersecurity agency CISA published ICS security advisories. Siemens addressed 9 advisories covering around 50 vulnerabilities, including critical and high-severity flaws in SINEC NMS. Schneider Electric addressed vulnerabilities in EcoStruxure and Accutech Manager. Aveva published 3 high-severity advisories, while Rockwell Automation addressed … Read more

ICS Patch Tuesday: Advisories Published by Siemens, Rockwell, Mitsubishi Electric

May 15, 2024 at 06:36AM Major industrial control systems providers, including Siemens, Rockwell Automation, Mitsubishi Electric, and Johnson Controls, have issued Patch Tuesday advisories addressing vulnerabilities in their products. Siemens has published 15 advisories, addressing critical vulnerabilities in various products, while Rockwell Automation and Mitsubishi Electric also reported high-severity vulnerabilities. CISA has informed organizations about … Read more

ICS Patch Tuesday: Siemens Addresses Palo Alto Networks Product Vulnerabilities

April 9, 2024 at 09:42AM Siemens and Schneider Electric have released April 2024 Patch Tuesday advisories. Siemens published eight advisories, including 80 vulnerabilities in ICS products. Notably, patches for three critical code execution flaws in Scalance W1750D access points were announced. Meanwhile, Schneider Electric disclosed a high-severity privilege escalation vulnerability in its Easergy Studio product. … Read more

Nozomi Networks Raises $100 Million to Expand Industrial Cybersecurity Business

March 13, 2024 at 09:27AM Nozomi Networks, an industrial and IoT cybersecurity firm, secured $100 million in a Series E funding round, with total funds now exceeding $250 million. Mitsubishi Electric and Schneider Electric joined as investors. The funding will assist in scaling product development and supporting global go-to-market efforts. Nozomi has emphasized the potential … Read more