Security Snippets: Rapid SCADA vulnerabilities create risk

Hogan Lovells
Contact

Hogan Lovells[co-author: Rachel Dalton]

Industrial automation platform Rapid SCADA contains seven key vulnerabilities.


CISA recently published an advisory about seven vulnerabilities in Rapid SCADA—an open-source industrial automation platform that provides tools for the quick creation of monitoring and control systems. According to CISA, these vulnerabilities may allow threat actors to remotely execute arbitrary code on systems running Rapid SCADA, which could result in the loss of control or data.

CISA flagged the energy and transportation sectors as being at risk in its advisory. Organizations may even see attacks from these vulnerabilities from the public internet directly, as, according to independent researchers, at least some Rapid SCADA systems have internet-facing IP addresses.

CISA recommends the following mitigations for potentially affected organizations:

  • Ensure control system devices are not accessible from the internet
  • Isolate control system networks from business networks
  • Use Virtual Private Networks (VPNs)

[View source.]

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations.

© Hogan Lovells | Attorney Advertising

Written by:

Hogan Lovells
Contact
more
less

PUBLISH YOUR CONTENT ON JD SUPRA NOW

  • Increased visibility
  • Actionable analytics
  • Ongoing guidance

Hogan Lovells on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide