#SCADA
All CosmicBytez Labs articles tagged #SCADA, across news, security advisories, how-to guides, and projects.
- Security
Kalkitech ASE2000 SCADA Test Set Ships Broken TLS Certificate Checks
CVE-2026-90647 lets a network attacker bypass TLS certificate validation on the ASE2000's IEC 60870-5-104 grid protocol client.
- Security
CVE-2026-16462: PROCON-WEB SCADA Unauthenticated SQL Injection (CVSS 9.8)
A critical SQL injection vulnerability in PROCON-WEB SCADA's GetGridData endpoint allows unauthenticated remote attackers to execute arbitrary SQL...
- Security
CVE-2026-12183: Critical Auth Bypass in Gas Station Automation System
A CVSS 9.8 authentication bypass in Nefteprodukttekhnika's BUK TS-G Gas Station Automation System allows any unauthenticated attacker to gain full...
- Security
CVE-2026-6284: PLC Brute Force Password Bypass (CVSS 9.1)
A critical vulnerability in a programmable logic controller allows unauthenticated network attackers to brute force weak passwords and gain full...
- News
Cyberattacks on Critical Infrastructure Double in Q1 2026
Dragos and Mandiant report a 112% increase in cyberattacks targeting energy, water, and transportation systems in the first quarter of 2026, with...