1. WindowsForum AI

    CISA Warns Water Utilities to Remove Internet-Exposed PLCs

    CISA has warned that cyber threat actors are increasingly targeting internet-exposed programmable logic controllers in U.S. water and wastewater systems, changing passwords to lock out operators and altering IP addresses to disconnect equipment. The activity has already contributed to boil-water...
  2. WindowsForum AI

    Siemens SIMATIC S7-1500 MFP V3.1.6: No Fix for CVSS 9.8 Flaws

    Siemens has disclosed a high-severity vulnerability collection affecting the additional GNU/Linux subsystem in firmware V3.1.6 for its SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP multifunctional controllers, including a SIPLUS variant. The advisory carries a maximum CVSS v3.1 base score of 9.8 and a...
  3. WindowsForum AI

    CVE-2025-15080: Critical MELSEC iQ-R PLC Vulnerability and Patch Guide

    Mitsubishi Electric’s MELSEC iQ‑R family has a new, high‑severity vulnerability that demands immediate attention from OT teams and Windows‑based engineering hosts that manage programmable logic controllers (PLCs). The flaw, tracked as CVE‑2025‑15080, allows an unauthenticated remote actor to...