Dozens of solar inverter flaws could be exploited to attack power grids
ID: 983c2865-6085-560c-aaaa-ec8b2731726f
STIX ID: report--983c2865-6085-560c-aaaa-ec8b2731726f
Feed Name: Bleeping Computer
Threat Score
Forescout Vedere Labs disclosed 46 vulnerabilities affecting Sungrow, Growatt, and SMA solar inverters and cloud backends that enable account takeover, remote code execution, and device hijacking; attackers exploiting these flaws (IDORs, XSS, hard-coded credentials, stack overflows) could scale control across fleets of inverters to modulate power generation and potentially destabilize power grids — vendors have released patches.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
