Re: Pen-testing Simatic Data Aquisition Periphery e.g. PLC S5 orS7

From: Ted Doty (tdoty@mindspring.com)
Date: 09/28/01


From: Ted Doty <tdoty@mindspring.com>
To: Patrick Coomans <Patrick.Coomans@4all.be>, PEN-TEST@SECURITYFOCUS.COM
Message-Id: <5.1.0.14.1.20010928163010.00acfe20@localhost>
Date: Fri, 28 Sep 2001 16:32:02 -0400
Subject: Re: Pen-testing Simatic Data Aquisition Periphery e.g. PLC S5 orS7

At 07:25 PM 9/28/2001 +0200, Patrick Coomans wrote:
>
>Have you already tried launching a DOS attack against an Allen Bradley
>PLC? I only have Siematic PLC's here with me to play with.

I think that ISS released a security advisory in 1998 about Allen Bradley
PLCs. Something about not handling an ICMP redirect correctly. As I
recall, the things crashed pretty hard.

Unfortunately, I can't remember any more details, but there might be more
info on xforce.iss.net.

- Ted

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/



Relevant Pages

  • RE: SQL
    ... Subject: SQL ... >> This list is provided by the SecurityFocus Security ... For more information on SecurityFocus' SIA service which ... >This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • RE: Insurance
    ... property--data beign deemed "intangible" for the purposes of insurance. ... for physical security testing there are often 3rd parties ... For more information on SecurityFocus' SIA service which ... This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • RE: Pen-Testing Lotus Notes/Domino
    ... Subject: Pen-Testing Lotus Notes/Domino ... of document security. ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • R: Pen-Testing help (Compaq Insight & htsearch)
    ... This web server happens to be in front of their ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: Application & Iplanet/Apache web server vulnerability and penetration testing
    ... I don't know what to do on the web servers other than delete example ... Any suggestions on iPlanet and Apache security? ... > This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)