A critical authentication bypass vulnerability in Sungrow’s iSolarCloud management platform allowed researchers to access user and administrator accounts without valid passwords. This flaw potentially exposed connected solar plants, inverters, and battery storage systems to unauthorized control. On October 7, 2026, Marlon Starkloff disclosed these findings, highlighting a business logic flaw affecting all four regional iSolarCloud […]
Read the original article:
