- by Dr. William Goble, CFSE
- Thursday, January 12, 2012
- News
2011…A Year in Review
2011 was a good year in many ways for Functional Safety and Cyber Security. Several instrumentation products achieved IEC 61508 certification. exida Certification alone issued 64 product certifications (http://www.sael-onine.com). With most certification projects, improvements to the design and quality are made. Some manufacturers…
Read More...
- by Michael Medoff , CFSE, CISA
- Thursday, October 29, 2020
- Industrial Cybersecurity
IEC 62443 Cybersecurity Certification for Medical Devices
exida has traditionally been involved in industries such as oil and gas, chemicals, power generation and automotive. While these are a diverse set of industries, many of the techniques that we use such as FMEDA (Failure Modes Effects and Diagnostic Analysis), Risk Assessment, Threat Modelling, etc.…
Read More...
- by Michael Medoff , CFSE, CISA
- Wednesday, August 10, 2011
- Industrial Cybersecurity
Keeping “Dancing Monkeys” out of your PLC
Last week a security researcher, Dillon Beresford of NSS Labs, presented at the Blackhat conference on the security vulnerabilities he found in Siemens PLC firmware. One of many stories on Dillon’s findings can be found here. Among other things, Dillon found “dancing monkeys” in the code! Actually,…
Read More...
- by Michael Medoff , CFSE, CISA
- Thursday, February 09, 2012
- Industrial Cybersecurity
Outrage! Panic! Indifference?
How should you react to news of PLC security vulnerabilities?
Project Basecamp was an exercise conducted at the S4 Security Conference that was held last month in Miami, Florida. At the event, six security researchers reported their findings on the…
Read More...
- by Michael Medoff , CFSE, CISA
- Tuesday, March 15, 2011
- Industrial Cybersecurity
The Real Impact of Stuxnet
Stuxnet has, rightly, generated a significant amount of discussion and concern with the industrial automation community. Fortunately, unless you operate a uranium enrichment facility using Siemens S7 PLC’s and some very specific variable frequency drives (VFDs) you probably haven’t been directly impacted by the Stuxnet…
Read More...