logo

Claroty Team82

ID: 0e212062-1a0a-5652-919a-8d201d00ad04

STIX ID: identity--0e212062-1a0a-5652-919a-8d201d00ad04

Feed Type: skeleton

Earliest post: 2022-08-18

Latest post: 2026-04-08

The Claroty Team82 blog publishes advanced cybersecurity research and vulnerability disclosures focused on industrial, IoT, and cyber-physical systems, providing deep technical insights into real-world threats and critical infrastructure risks.

01/01/2020
06/04/2026
Title Date Published Describes IncidentAuthorVisible
Hands Free: What LLM Driven Vulnerability Research Looks Like2026-06-01TrueTomer GoldschmidtTrue
Exploiting EnOcean SmartServer to Attack Connected Building Management Systems2026-04-28TrueAmir ZaltzmanTrue
The Risky Road Bringing Building Management Systems Online: Exploring the CEA-852 Standard2026-04-08TrueAmir ZaltzmanTrue
Examining the Legacy BMS LonTalk Protocol2026-02-19TrueAmir ZaltzmanTrue
New Architecture, New Risks: One-Click to Pwn IDIS IP Cameras2026-01-21TrueVera MensTrue
Roaring Access: Exploiting a Pre-Auth Root RCE on Sixnet RTUs2025-11-12TrueNitsan LitovTrue
Turning Camera Surveillance on its Axis2025-08-03TrueNoam MosheTrue
Cascading Chaos: A GOT-Oriented Exploit Story2025-07-25TrueTomer GoldschmidtTrue
Attention, High Voltage: Exploring the Attack Surface of the Rockwell Automation PowerMonitor 10002025-05-28TrueVera MensTrue
Delving into Windows CE, Part 4: Vulnerability Research into a Windows CE-Based HMI Used in the Wild2025-05-06TrueTomer GoldschmidtTrue
Team82 Finds Critical Flaws in OPC Protocol Implementations2025-04-17TrueUri KatzTrue
OT Operators Slow to Update Vulnerable Remote Access Devices2025-04-10TrueTal Keren; Sharon BrizinovTrue
Vendors Affected by Wibu CodeMeter Vulnerabilities2025-04-10TrueTrue
Do the CONTEC CMS8000 Patient Monitors Contain a Chinese Backdoor? The Reality is More Complicated…2025-02-26TrueTrue
Hack The Emulated Planet: Vulnerability Hunting on Planet WGS-804HPT Industrial Switches2025-01-22TrueTomer GoldschmidtTrue
Inside a New IoT/OT Cyberweapon: IOCONTROL2024-12-20TrueTrue
Inside a New OT/IoT Cyberweapon: IOCONTROL2024-12-16TrueTrue
The Insecure IoT Cloud Strikes Again: RCE on Ruijie Cloud-Connected Devices2024-12-09TrueNoam Moshe; Tomer GoldschmidtTrue
The Problem with IoT Cloud-Connectivity and How it Exposed All OvrC Devices to Hijacking2024-11-12TrueUri KatzTrue
MMS Under the Microscope: Examining the Security of a Power Automation Standard2024-10-07TrueMashav Sapir; Vera MensTrue
From Exploits to Forensics: Unraveling the Unitronics Attack2024-08-07TrueTrue
Bypassing Rockwell Automation Logix Controllers’ Local Chassis Security Protection2024-08-01TrueSharon BrizinovTrue
Pwn2Own: Pivoting from WAN to LAN to Attack a Synology BC500 IP Camera, Part 22024-07-16TrueSharon Brizinov; Uri Katz; Tomer Goldschmidt; Noam MosheTrue
Pwn2Own: WAN-to-LAN Exploit Showcase, Part 12024-07-15TrueSharon Brizinov; Noam Moshe; Tomer GoldschmidtTrue
Hacking a $100K Gas Chromatograph without Owning One2024-06-24TrueVera MensTrue
OPC-UA Deep Dive Series (Part 10): Security Tips for Asset Owners2024-05-20TrueTrue
Exploiting Honeywell ControlEdge VirtualUOC2024-05-16TrueUri KatzTrue
OPC UA Deep Dive: A Complete Guide to the OPC UA Attack Surface2024-05-01TrueTrue
Exploiting a Classic Deserialization Vulnerability in Siemens SIMATIC Energy Manager2024-04-24TrueNoam MosheTrue
Unpacking the Blackjack Group's Fuxnet Malware2024-04-15TrueTrue
Practical and Theoretical Attacks in the Industrial Landscape (Part 2)2024-03-11TrueTomer GoldschmidtTrue
OPC UA Deep Dive Series (Part 9): Chaining Vulnerabilities to Exploit Softing OPC UA Integration Server2024-01-30TrueUri KatzTrue
Synology NAS DSM Account Takeover: When Random is not Secure2024-01-19TrueSharon BrizinovTrue
OPC UA Deep Dive Series (Part 8): Gaining Client-Side Remote Code Execution2023-12-21TrueNoam MosheTrue
OPC UA Deep Dive Series (Part 6): OPC UA Exploit Framework2023-12-21TrueSharon Brizinov; Uri KatzTrue
DICOM Demystified: Exploring the Underbelly of Medical Imaging2023-11-29TrueNoam MosheTrue
OPC UA Deep Dive Series (Part 7): Practical Denial of Service Attacks2023-11-07TrueTrue
Critical Vulnerabilities Found in Rockwell FactoryTalk AssetCentre2023-10-31TrueAmir Preminger; Sharon BrizinovTrue
Boost Your Network with Team82's boofuzz OPC UA Fuzzer2023-10-31TrueVera MensTrue
OPC UA Deep Dive Series (Part 4): Targeting Core OPC UA Components2023-10-30TrueTrue
Software-Based PLC Flaws Enable Windows Box Code Execution2023-10-30TrueMashav SapirTrue
Security Flaws Exposed in QuickBlox Chat And Video Framework2023-10-30TrueAmir Preminger; Sharon Brizinov; Itay Cohen; Oleg IlushinTrue
OPC UA Deep Dive Series (Part 5): Inside Team82’s Research Methodology2023-10-30TrueTrue
Exploiting Cloud Connectivity to PWN your NAS: Synology DS9202023-10-24TrueVera Mens; Sharon BrizinovTrue
EDS Subsystem Vulnerabilities Expose OT Assets to Malicious File Delivery2023-10-18TrueTrue
Exploiting Cloud Connectivity to PWN your NAS: WD PR41002023-10-18TrueNoam MosheTrue
ENIP Stack Vulnerability Causes Crashes or Leads to Code Execution2023-10-18TrueSharon BrizinovTrue
Stack-Based Buffer Overflow Vulnerability Discovered in Industrial VPN2023-10-18TrueTrue
VPN Security Flaws Pose Cyber Risk to Remote OT Personnel2023-10-18TrueTrue
Wibu-Systems CodeMeter Vulnerabilities Expose OT Networks2023-10-18TrueSharon Brizinov; Tal KerenTrue

1–50 of 91