At least 30 vulnerabilities were found in the past year in the DIAEnergie industrial energy management system made by Delta Electronics. The company says it has created patches for all of them, but for now most of those patches are only available on demand.
FBI Sees Growing Russian Hacker Interest in US Energy Firms
The FBI is warning that it has seen increased interest by Russian hackers in energy companies since the start of Russia’s war against Ukraine, though it is offering no indication that a specific cyberattack is planned.
Most Hood Plants Up After Cyber ‘Event,’ Schools Concerned
NIST Releases ICS Cybersecurity Guidance for Manufacturers

NIST guide provides examples of commercial products that manufacturers can use to address specific security risks
The Rising Importance of Research Communities for Industrial Cybersecurity
IT security research communities have been around for decades, sharing their findings with community members and the vendors of the affected product with the aim of accelerating some type of corrective action to safeguard users. As appreciation for the value of this service continued to grow, vendors began to offer bug bounty programs to provide researchers financial motivation to work with them to identify vulnerabilities.
Hackers Target German Branch of Russian Oil Giant Rosneft
The German subsidiary of Russian energy giant Rosneft has been hit by a cyberattack, the Federal Office for Information Security (BSI) said on Monday, with hacker group Anonymous claiming responsibility.
Rosneft Deutschland reported the incident in the early hours of Saturday morning, the BSI said.
High-Severity Vulnerabilities Patched in Omron PLC Programming Software
Several high-severity vulnerabilities that can be exploited for remote code execution were patched recently in the CX-Programmer software of Japanese electronics giant Omron.
Siemens Addresses Over 90 Vulnerabilities Affecting Third-Party Components
Siemens has released 15 new advisories to inform customers about more than 100 vulnerabilities affecting its products, including over 90 security flaws introduced by the use of third-party components.
CISA Informs Organizations of Flaws in Unsupported Industrial Telecontrol Devices
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) last week released an advisory to inform organizations about potentially serious vulnerabilities affecting ipDIO telecontrol communication devices that are no longer supported by the vendor.
Slight Increase in Attacks on ICS Computers in 2021: Report
Kaspersky said it saw only a small increase in the percentage of industrial control system (ICS) computers targeted in 2021 compared to the previous year, but there was a more significant rise for certain types of threats.












