logo

MMS Under the Microscope: Examining the Security of a Power Automation Standard

ID: 0a100283-4f5e-556e-834c-22ad6651b4fe

STIX ID: report--0a100283-4f5e-556e-834c-22ad6651b4fe

Feed Name: Claroty Team82

Threat Score
75/100

Date Published: 2024-10-07

Date Updated: 2026-04-17

Author: Mashav Sapir; Vera Mens

...
...

Executive Summary: Team82 analyzed the MMS/IEC 61850 protocol used in power substation devices, developed an MMS Stack Detector for implementation fingerprinting, and used fuzzing to uncover five vulnerabilities across multiple MMS stacks (including a stack buffer overflow enabling potential remote code execution and crashes leading to denial-of-service). They produced PoCs that crashed devices (including Siemens SIPROTEC5 and ABB AC 800M behaviors), disclosed findings to vendors (resulting in CVEs and advisories), and released tooling and recommendations to help secure affected industrial control systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.