10 nasty software bugs put thousands of fuel storage tanks at risk of cyberattacks
ID: d01563b0-305d-5da5-8d43-0dcd45b2b328
STIX ID: report--d01563b0-305d-5da5-8d43-0dcd45b2b328
Feed Name: The Register (Security)
Researchers (Bitsight) and CISA disclosed ten critical vulnerabilities in Automatic Tank Gauge (ATG) systems from multiple vendors (Dover/DFS, OPW, Franklin, OMNTEC, Alisonic Sibylla). Several flaws are rated 9.8–10.0 CVSS and enable remote administrative control, command injection, hardcoded credentials, authentication bypass and SQL injection; these can lead to real-world physical and environmental damage. Approximately 1,200–1,500 devices remain exposed, three affected products currently lack fixes, and mitigations include patching where available, network isolation, firewalls and VPN-based remote access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
