The NCCIC has published an advisory on resource management errors and improper input validation vulnerabilities in Rockwell Automation Stratix 5950. Numerous products are affected. Successful exploitation of this vulnerability could allow a remote attacker to cause an affected device to reload. Rockwell Automation recommends that users not use any IPsec virtual private network (VPN) connections and apply a series of general guidelines. The NCCIC has also provided a series of measures for mitigating the vulnerabilities. Read the advisory at NCCIC/ICS-CERT.
H2Oex: In Person 1 day event/exercise. Thurs Dec 5th. Washington DC. Join us!