Publications

Reports
Blog
Events

Filter

19 October 2020

Practical example of fuzzing OPC UA applications

We continue to describe our approaches to searching for vulnerabilities in industrial systems based on the OPC UA protocol. In this article, we examine new techniques that can be used to search for memory corruption vulnerabilities if the source code is available. We also discuss an example of fuzzing using libfuzzer.

10 May 2018

OPC UA security analysis

This paper discusses our project that involved searching for vulnerabilities in implementations of the OPC UA protocol. In publishing this material, we hope to draw the attention of vendors that develop software for industrial automation systems and the industrial internet of things to problems associated with using such widely available technologies, which turned out to be quite common.

Select a date

Select an author 22
APT 30
Companies and organisations 13
Industrial control systems 4
Industries 29
Laws and regulation 7
Malware 30
Products and services 14
Technologies 28
Types of threats 29

Filter

Select a date

Select an author 6
APT 1
Companies and organisations 51
Events and conferences 2
Industrial control systems 5
Industries 4
Laws and regulation 4
Malware 25
Products and services 58
Technologies 13
Types of threats 25

Filter

Select a date

Companies and organisations 6
Conferences 4
Products and services 1
Technologies 1
Types of events 8

Select a date

Select an author 22
APT 30
Companies and organisations 13
Industrial control systems 4
Industries 29
Laws and regulation 7
Malware 30
Products and services 14
Technologies 28
Types of threats 29
Filter

Select a date

Select an author 6
APT 1
Companies and organisations 51
Events and conferences 2
Industrial control systems 5
Industries 4
Laws and regulation 4
Malware 25
Products and services 58
Technologies 13
Types of threats 25
Filter

Select a date

Companies and organisations 6
Conferences 4
Products and services 1
Technologies 1
Types of events 8
Filter