In 2019, almost a decade after the famed Stuxnet worm silently wreaked havoc on an Iranian uranium enrichment plant, SCADA vendors still have gaping holes in their PLC and HMI development environments. We will detail the results of our research on top industrial control vendors. This research breaks down 12 critical vulnerabilities discovered in the past 9 months and we are releasing previously undisclosed exploits. The vulnerabilities in top tier software systems indicate a lack of security standards in modern SCADA software. …

Joseph Bingham

Reverse Engineer at Tenable, Inc.

