Industrial Control Security
The latest Industrial Control Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
A Simple Housekeeping Request Can Crash NASA's Core Flight Software — Patch Ready
On July 16, 2026, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) published an industrial-control advisory for CVE-2026-15352, a high-severity denial-of-service vulnerability in...
ABB's Advant Master Update Snafu Hides a Local DLL Vulnerability—Here's What to Check
ABB has disclosed a local code-execution flaw in its Advant Master industrial control engineering software, but what makes CVE-2025-13162 unusually sticky isn't the vulnerability itself—it's the...
CISA Warns of Unauthenticated Root Access Flaw in Daktronics Stadium Controllers
The U.S. Cybersecurity and Infrastructure Security Agency published an industrial control systems advisory on June 25, 2026, warning that several Daktronics controller models contain a critical...
CISA Republishes Siemens Advisory: KACO Inverter Credential and SQL Flaws Actively Exploited
The Cybersecurity and Infrastructure Security Agency (CISA) added a critical advisory to its Known Exploited Vulnerabilities catalog on June 9, 2026, republishing Siemens ProductCERT alert...
ABB WebPro SNMP Flaws Allow Auth Bypass and DoS on UPS Systems
Three critical vulnerabilities in ABB’s WebPro SNMP Card for PowerValue UPS systems expose industrial control environments to authentication bypass and denial-of-service attacks. The flaws,...
PCM600 Zip Slip Path Traversal Flaw Prompts CISA Warning for OT Engineering Workstations
CISA has republished a Hitachi Energy advisory detailing a critical path traversal vulnerability in the PCM600 configuration tool, a mainstay for protection and control engineers in electric utility...
CVE-2025-3756: ABB and CISA Warn of IEC 61850 Denial-of-Service Flaw, Urge OT Network Segmentation
ABB and the U.S. Cybersecurity and Infrastructure Security Agency (CISA) have jointly republished an industrial control systems (ICS) advisory for CVE-2025-3756, a denial-of-service vulnerability in...