Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore a critical cybersecurity presentation that reveals six devastating attacks against the latest Siemens S7 PLCs, focusing on exploiting vulnerabilities in their TLS1.3 implementation. Learn how researchers discovered methods to extract private keys from these industrial control systems through protocol design flaws, enabling various attack scenarios including remote key theft, man-in-the-middle attacks for malicious program injection, and interception of legitimate key provisioning processes. Understand the significant implications for industrial control system security as demonstrated through attacks that can completely compromise process control infrastructure while remaining undetected by operators. Gain insights from Technion researchers who expose the vulnerabilities in what was considered Siemens' most secure PLC product line, highlighting ongoing challenges in protecting critical infrastructure from sophisticated cyber threats.
Syllabus
Nope, S7ill Not Secure: Stealing Private Keys From S7 PLCs
Taught by
Black Hat