The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued four advisories about security issues, vulnerabilities and exploits affecting industrial control systems (ICS). The advisories highlight hardware vulnerabilities in specific systems and advises users and administrators to review for technical details and mitigation steps. Vulnerabilities include the potential acquiring of read-only access, ability to run arbitrary SQL queries, modify and delete sensitive data, shut down databases, and access patient details in related software.

The NCSC wants developers to get serious on software security
The NCSC’s new Software Security Code of Practice has been praised by cyber professionals as a significant advancement in enhancing software supply chain security.