DEF CON: Security Holes in Deere, Case IH Shine Spotlight on Agriculture Cyber Risk
ID: 1f20300f-c150-511c-94bd-ef54a734f616
STIX ID: report--1f20300f-c150-511c-94bd-ef54a734f616
Feed Name: Security Ledger
Security researchers disclosed multiple serious vulnerabilities and misconfigurations in John Deere and Case IH public-facing systems—ranging from DOM-based XSS and poor access segmentation to a misconfigured Pega CRM (CVE-2021-27653)—that enabled administrative access, exposure of employee/dealer/customer data, and possession of an Okta signing certificate; combined weaknesses could allow remote access or control of farm equipment and pose systemic risks to the agricultural supply chain.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
