Summary
The ICS-CERT has published an advisory that affects Rockwell Automation's FactoryTalk AssetCentre.
Threat Type
Vulnerability
Overview
The ICS-CERT has published an advisory that affects Rockwell Automation's FactoryTalk AssetCentre. Further information is available from the advisory which is summarized below.
ICS Advisory ICSA-21-091-01 - Rockwell Automation FactoryTalk AssetCentre
CVE-2021-27462 - A deserialization vulnerability exists in how the AosService.rem service in FactoryTalk AssetCentre ve
Summary
Proofpoint Threat Research discovered in late 2020 a new credential phishing campaign named BadBlood, carried out by threat group TA453, aka Charming Kitten. The campaign targets senior medical professionals who specialize in genetic, neurology, and oncology research in the United States and Israel. These targets are not the traditional targets for TA453, however, the tactics and techniques observed in BadBlood continue to mirror those used in historic TA453 campaigns.
Threat Type
Malware, Phishing,