logo

Internet-Exposed ICS Devices Raise Alarm for Critical Sectors

ID: 9e3013cd-7136-51af-8ecd-8d1accc48622

STIX ID: report--9e3013cd-7136-51af-8ecd-8d1accc48622

Feed Name: Security Affairs

Threat Score
70/100

Date Published: 2026-04-09

Date Updated: 2026-04-22

Author: Pierluigi Paganini

...
...

Researchers scanned the internet for devices responding on Modbus port 502 and, after filtering, identified 179 likely internet-exposed ICS devices across multiple countries — including systems tied to national railways and power grids. The report warns that legacy protocols like Modbus lack encryption and authentication, allowing attackers (even with limited skills) to read or modify critical registers, and recommends basic mitigations such as firewalls, VPNs, segmentation, and stronger authentication to reduce the high-risk exposure of industrial infrastructure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.