Network Virus & PLCs

I think it’s easy for someone unknowing see an issue and identify it as a “hack”. Network storms can cause havoc that seem like a “hack”. A switch fails and stops switching and fails into forward all packets can cause havoc. Spanning tree causing a network convergence from bad uplinks or bad connections can cause havoc. There are so many things other than a hack that are more realistic.
 
The main problem of Stuxnet was Windows. There was a basic communication dll for communication to the Siemens plc which was replaced with a faked one, which modified the code you see at the controller and also placed different code in the plc. It does not need deep understanding of how to do this also on Rockwell or other controllers, but you need the 0-day exploits in Windows to distribute this over the network.


I think there ended up being an exploit on the WinCC SCADA side as well, a hardcoded password for the DB or something. But regardless, you're right, it was the 3 different Windows 0 days that made it all possible. Once you own the computer, anything is possible.
 

Similar Topics

Hello, I have a A.B Compact logix communicating with two fanuc robots via ethernet. The plc also communicates to an automation direct hmi screen...
Replies
3
Views
168
So I'm pretty new around here but I come looking for advice or suggestions to research. Im the plant electrician/SCADA guy for a warer department...
Replies
8
Views
230
Looking for a supplier of Layer 3 Network Switches DIN RAIL MOUNT, in Alabama, In the UK we would use Typically in the UK we would use...
Replies
6
Views
185
We are having an issue with some servers, with "Teamed NICs" is we plug one cable leg of the team into one switch and the other to another...
Replies
0
Views
65
Good morning fellow sea captains and wizards, I am being asked to do the above and obtain 4 values from each slave, I know about the MRX and MWX...
Replies
32
Views
841
Back
Top Bottom