Critical Vulnerabilities Found in Custom TCP/IP Stack

This article has been indexed from Softpedia News / Security

Security researchers at Forescout recently published a study revealing 14 critical vulnerabilities in a widely used TCP/IP stack across millions of Operational Technology devices from 200 manufacturers, according to The Hacker News.

OT devices are primarily used in areas such as critical infrastructure, water treatment, power generation, and manufacturing plants. The custom TCP/IP stack is found in OT devices used by major vendors such as Emerson, Honeywell, Rockwell Automation, Siemens, Mitsubishi Electric, and Schneider Electric, for industrial automation equipment. 

The custom closed-source TCP/IP stack developed for embedded systems, called the InterNiche stack, has the role of enabling Internet access. The faulty TCP/IP stack is called Niche…

Read the original article: Critical Vulnerabilities Found in Custom TCP/IP Stack