
Archived
OpenPLC_v3
OpenPLC Runtime version 3
embedded-systems-securityscada-ics-security

OpenPLC Runtime version 3

Defensive security demo: seL4 microkernel gateway protecting vulnerable ICS from CVE-2019-14462

OpenPLC Runtime suffers from a persistent denial of service (DoS) vulnerability in the /upload-program-action endpoint.

Authenticated users can upload arbitrary files (e.g. .html, .svg) as profile images in OpenPLC Runtime. These files are publicly accessible without…

Instrumented fuzzer for PLC-based ICS control applications, targeting Codesys runtime on Wago controllers to uncover memory corruption and…