Tag: Rockwell Automation

Nearly 4,000 US industrial devices exposed to Iranian cyberattacks
News

Nearly 4,000 US industrial devices exposed to Iranian cyberattacks

Thousands of Rockwell Automation's Internet-exposed programmable logic controllers (PLCs) are among the attack surface targeted by hackers with ties to Iran in assaults targeting U.S. critical infrastructure networks. Iranian state-backed hacking organizations have been targeting Rockwell Automation/Allen-Bradley PLC equipment since March 2026, resulting in operational disruptions and financial losses, according to a joint alert released by several U.S. federal agencies on Tuesday. The writing agencies cautioned that Iranian-affiliated APT targeting activities against American groups have recently intensified, probably in reaction to hostilities between Iran, the US, and Israel. The FBI discovered that this activity led to data tampering on HMI and SCADA displays as well as the e...
Critical Flaw in Rockwell Automation Devices Allows Unauthorized Access
News

Critical Flaw in Rockwell Automation Devices Allows Unauthorized Access

It has been discovered that Rockwell Automation ControlLogix 1756 devices have a high-severity security bypass vulnerability that might be used to carry out programming and configuration commands for the common industrial protocol (CIP). With the CVE identifier CVE-2024-6242, the vulnerability has an 8.4 CVSS v3.1 score. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) stated in an advisory that "a threat actor can circumvent the Trusted Slot feature in a ControlLogix controller by exploiting a vulnerability present in the affected products." A threat actor may be able to utilize any compromised module in a 1756 chassis to carry out CIP commands that alter user projects and/or device configuration on a Logix controller located within the chassis read more about Cr...