logo

Deep Dive Into PIPEDREAM’s OPC UA Module, MOUSEHOLE

ID: 35eced89-ed1c-5f09-9d25-3ad736912217

STIX ID: report--35eced89-ed1c-5f09-9d25-3ad736912217

Feed Name: Dragos Blog

Threat Score
78/100

Date Published: 2023-05-05

Date Updated: 2026-04-27

...
...

Dragos analyzes PIPEDREAM’s MOUSEHOLE module—an OPC UA client component developed by the CHERNOVITE group—that leverages the open-source python-opcua library to scan for OPC UA servers, brute-force authentication, read/write node attributes, and modify security settings; the report warns that poorly secured OPC UA servers could enable adversaries to directly impact industrial control systems and cause loss of control, and it highlights the broader risk posed by accessible open-source ICS protocol libraries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.