logo

Top-Down and Bottom-Up: Exploiting Vulnerabilities In the OT Cloud Era

ID: 0c6a915c-72bf-5c54-9fe6-20a16f1fdf91

STIX ID: report--0c6a915c-72bf-5c54-9fe6-20a16f1fdf91

Feed Name: Claroty Team82

Threat Score
75/100

Date Published: 2023-08-23

Date Updated: 2026-04-17

Author: Uri Katz

...
...

Claroty Team82 analyzed cloud-based ICS management and disclosed multiple vulnerabilities in CODESYS Automation Server and WAGO PLCs (including pre-auth RCE, CSRF, and package verification flaws), demonstrating chained top-down and bottom-up attacks that could allow an adversary to take over cloud management accounts and deploy malicious logic to PLC fleets; vendors have since patched or mitigated the issues.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.