Introduction This chapter analyzes IoT threats from the perspective of protocols. According to the data from NSFOCUS's threat hunting system, Telnet services (port 23) were targeted most frequently1. Therefore, we first analyze the attacks launched via Telnet. WS-Discovery reflection attacks are a new type of DDoS reflection attacks emerging in...
Category: DDoS Mitigation
A Preliminary Investigation into the Worm Technique Affecting Schneider’s Programmable Logic Controllers
Background Some time ago, some researchers detected a code injection vulnerability (CVE-2020-7475), which could cause Schneider's Programmable Logic Controllers (PLCs) to operate like worms. If successfully exploited, this vulnerability could allow a PLC to act as a mini PC to carry out malicious network activities or as an intranet springboard...
Annual IoT Security Report 2019-12
In this section, we analyze threat trends related to Netis routers according to the data captured by NSFOCUS's threat hunting system. Our data is based on log messages generated from May 21 to October 30, 2019. The following subsections analyze these log messages from the aspects of attack sources, attack...
Annual IoT Security Report 2019-11
In this section, we analyze two vulnerabilities, namely, the CVE-2016-10372 vulnerability32 in the Eir D1000 router and the backdoor vulnerability in Netis routers. Except UPnP-related vulnerabilities described in section 4.4.3 Malicious Behaviors Targeting UPnP Vulnerabilities, the CVE-2016-10372vulnerability was exploited most frequently. The backdoor vulnerability in Netis routers exerted a severe...
Pay or Die!
“Pay or Die†is an opening phrase often used by DDoS blackmailers. Github was attacked, NZX was unable to provide services for 4 days… these are all serious DDoS blackmail incidents this year. This is just the tip of the iceberg of such lucrative crimes. In various forms of digital...
Introduction of common attack types in manufacturing industry
Abstract The real economy with manufacturing as the core industry is the basis for maintaining national competitiveness and healthy economic development. Based on the universal recognition of this concept, the Industry 4.0 strategy of Germany, the national advanced manufacturing strategy of the United States, and the national manufacturing policy of...



