Poor API's Lead To Integrator Created Vulns - Time To Upgrade API's

No ratings

Presented at S4 2014 by

SCADA manufacturers often promote a powerful API that allows asset owners and integrators to customize solutions. Many of these API were developed years ago with little thought to the security implications. The very basic API features that make the product appeal to industrial users, make this product a doorway for vulnerabilities. In this session Rotem Bar will use the API for popular HMI to show the security flaws, and then provide some recommendations for the SCADA applications to level up with modern architectures that provide a stronger and safer platform regarding security threats and resource management.