Industrial Cybersecurity
The latest Industrial Cybersecurity coverage — news, analysis, and updates from the WindowsNews.AI desk.
CISA Flags Critical Authentication Bypass and DoS Flaws in Rockwell FactoryTalk Historian
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding three serious vulnerabilities in Rockwell Automation’s FactoryTalk Historian Site Edition (SE),...
CVE-2026-6865: Schneider Electric’s EasyLogic and Saitel RTUs Exposed to File Theft via Path Traversal Bug
Schneider Electric and the U.S. Cybersecurity and Infrastructure Security Agency (CISA) are urging critical infrastructure operators to immediately patch a path traversal vulnerability that exposes...
CISA Reissues Advisory as Authorization Bypass Vulnerability in Rockwell PavilionX Demands Immediate Patching
The U.S. Cybersecurity and Infrastructure Security Agency on June 16, 2026, republished a Rockwell Automation security advisory detailing a missing-authorization flaw in FactoryTalk Analytics...
Schneider Electric Patches Critical RADIUS Authentication Bypass in Modicon, Connexium Switches
Schneider Electric has released firmware updates to address a critical vulnerability in its Connexium, Modicon, and Modicon Redundancy managed switches that could allow attackers to bypass RADIUS...
Schneider Electric Patches CVE-2026-6332: Cleartext Source Code Flaw in HVAC Software Versions Before 1.10.0
Schneider Electric fixed a cleartext storage vulnerability in its EcoStruxure Machine Expert HVAC software on May 12, 2026. The flaw, tracked as CVE-2026-6332, allows source code to be stored in...
ABB B&R Controller Flaw Lets Unauthenticated Attackers Crash Critical Systems
CISA has republished an advisory from ABB on May 26, 2026, shining a spotlight on CVE-2025-3450—a vulnerability that allows an unauthenticated network attacker to trigger denial-of-service...
CISA Warns ABB AC500 V2 PLC Flaw Leaks Data via Modbus TCP
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has amplified a critical advisory for industrial control systems, republishing ABB’s security notice for CVE-2025-7745 on May 26,...
CVE-2025-8754: ABB zenon Remote Transport Service Allows Unauthenticated Remote Reboot
ABB's widely deployed zenon industrial automation platform contains a severe vulnerability, tracked as CVE-2025-8754, that allows unauthenticated attackers to remotely reboot affected systems. The...
Critical VLC Vulnerabilities Force ABB to Issue Emergency Patch for Industrial Camera Software
ABB has released an urgent security update for its Ability Camera Connect software after discovering that a set of high-severity vulnerabilities in the embedded VLC media player component could allow...
Hitachi Energy GMS600 v1.3.2 fixes OpenSSL timing flaw CVE-2022-4304
Hitachi Energy has confirmed that two versions of its GMS600 grid monitoring system carry a dangerous OpenSSL vulnerability that could allow attackers to decrypt network traffic through timing...
CVE-2025-3465: ABB CoreSense Path Traversal Flaw Exposes Localhost—Patch Now
ABB’s industrial control systems are facing a critical security alert after the Cybersecurity and Infrastructure Security Agency (CISA) republished the vendor’s advisory for CVE-2025-3465, a...
CVE-2026-0300 PAN-OS RCE Bug Threatens All Siemens RUGGEDCOM APE1808 Devices
Siemens industrial security appliances are facing a critical remote code execution risk after CISA warned that all versions of the RUGGEDCOM APE1808 are affected by a PAN-OS vulnerability tracked as...