Critical Sungrow Authentication Bypass Flaw Lets Hackers Take Control of Solar Power Plants

A critical authentication bypass vulnerability in Sungrow’s iSolarCloud management platform allowed researchers to access user and administrator accounts without valid passwords. This flaw potentially exposed connected solar plants, inverters, and battery storage systems to unauthorized control. On October 7, 2026, Marlon Starkloff disclosed these findings, highlighting a business logic flaw affecting all four regional iSolarCloud […]

This article has been indexed from GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Read the original article: