Showing posts with label fingerprint. Show all posts
Showing posts with label fingerprint. Show all posts

Wednesday, November 21, 2018

SD-WAN and Elon Musk at #zeronights

The goal of this talk is to provide the results of passive and active fingerprinting for SD-WAN systems using a common threat intelligence approach. We explore Internet-based and cloud-based publicly available SD-WAN systems using the well-known «Shodan» and «Censys» search engines and custom developed automation tools and show that most of the SD-WAN systems have known vulnerabilities related to outdated software and insecure configuration. 

As presented at Zeronights 2018 by Anton Nikolaev, Denis Kolegov, Oleg Broslavsky.

Saturday, December 28, 2013

Internet connected ICS/SCADA/PLC|30C3 release

Trying to find SCADA/PLC/HMI in Internet?
No success?

SCADAStrangeLove strike forces to the rescue!

With our Pretty Shiny Sparkly™ ICS/SCADA/PLC Cheat Sheet you will become real SCADAHacker and will search for SCADA for free! Special #30C3 release by Gleb Gritsai, Alexander Timorin, Alexander Zaitsev, Sergey Gordeychik, Valentin Shilnenkov.

Please enjoy responsible!


Sunday, July 8, 2012

XSS in HMI? So what?

Sometimes XSS  (and other client-side) very useful! Can help to exploit server-side vulnerabilities. Operator’s browser is proxy to SCADAnet!
 

Question: Anybody works with SCADA and Internet using same browser?
Correct answer: Yes!