Update: Serial Server Flaws Expose Critical Infrastructure
ID: 65a851a1-f7af-5453-a321-7c07f4b84169
STIX ID: report--65a851a1-f7af-5453-a321-7c07f4b84169
Feed Name: Security Ledger
Threat Score
Rapid7 discovered widespread insecure configurations of internet-exposed serial/terminal servers (primarily Digi devices) that often allow unauthenticated access to connected devices — including POS terminals, ATMs and industrial control systems — with ~114,000 IPs observed and ~13,000 exposed serial ports offering shells; the report documents session-hijacking activity and recommends timeouts, authentication/encryption, firmware updates and enhanced logging.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
