CODESYS Flaws Let Attackers Backdoor Critical PLCs
CODESYS, a widely-used software-based programmable logic controller (Soft PLC) platform, faces significant security risks due to several newly discovered flaws. According to Nozomi Networks Labs, attackers can chain these vulnerabilities to replace legitimate industrial control applications with backdoored versions. This action allows them to gain full administrative control over affected devices. Given that CODESYS operates critical systems across sectors like water treatment and manufacturing, these vulnerabilities pose severe safety risks. For instance, they may lead to production halts, equipment damage, or hazardous conditions.
The attack chain begins with an invader needing valid credentials. They can then sequence attacks to steal cryptographic keys and re-sign boot applications with malicious code. These exploits result in unauthorized root-level access, enabling attackers to alter safety settings and override critical processes. CODESYS Group has addressed these issues in its latest runtime version, urging administrators to apply updates and enhance network defenses.
Read the full article at https://cybersecuritynews.com/attackers-backdoor-codesys-applications/
