logo

Practical and Theoretical Attacks in the Industrial Landscape (Part 2)

ID: 3857a512-de86-5766-988d-1c6fbadff17a

STIX ID: report--3857a512-de86-5766-988d-1c6fbadff17a

Feed Name: Claroty Team82

Threat Score
70/100

Date Published: 2024-03-11

Date Updated: 2026-04-17

Author: Tomer Goldschmidt

...
...

This report surveys adversary tactics, techniques, and procedures for compromising a simulated industrial factory—covering attacks against HMIs, engineering workstations, and PLCs (memory and DLL manipulation, project file injection, MiTM of OPC UA/CIP, remote code execution, logic download, code hiding, and tag manipulation)—and highlights mitigations such as CIP Security and vendor hardening; it is a scenario-driven TTP and vulnerability-focused analysis rather than a description of an active compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.