Re: Pen-testing Simatic Data Aquisition Periphery e.g. PLC S5 orS7

From: Ted Doty (tdotyat_private)
Date: Fri Sep 28 2001 - 13:32:02 PDT

  • Next message: Jason binger: "brute-forcing NTLM HTTP Authentication"

    At 07:25 PM 9/28/2001 +0200, Patrick Coomans wrote:
    >
    >Have you already tried launching a DOS attack against an Allen Bradley 
    >PLC?  I only have Siematic PLC's here with me to play with.
    
    I think that ISS released a security advisory in 1998 about Allen Bradley 
    PLCs.  Something about not handling an ICMP redirect correctly.  As I 
    recall, the things crashed pretty hard.
    
    Unfortunately, I can't remember any more details, but there might be more 
    info on xforce.iss.net.
    
    - Ted
    
    ----------------------------------------------------------------------------
    This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
    Service. For more information on SecurityFocus' SIA service which
    automatically alerts you to the latest security vulnerabilities please see:
    https://alerts.securityfocus.com/
    



    This archive was generated by hypermail 2b30 : Sat Sep 29 2001 - 10:35:24 PDT