Archive for September, 2007

Own your local SCADA!

Thursday, September 6th, 2007

Doing penetration tests can bring sometimes surprising results. But doing penetration tests on critical targets should not bring any surprising results. As Forbes few days ago informed, Scott Lunsford was offered to penetrate into nuclear power station.

As owner of the plant claimed, critical components could not ne accessed from the Internet.”It turned out to be one of the easiest penetration tests I’d ever done,” Lunsford said.

He added: “By the first day, we had penetrated the network. Within a week, we were controlling a nuclear power plant.” System was powered by SCADA software. Ganesh Devarajan from Tipping Point presented at DefCon his security research on SCADA systems and possibilities to find vulnerabilities inside. No doubt this system is vulnerable, because it is not publicly available, so there is no pressure from users to fix possible vulnerabilities.

Source and more info: zone-h

Hydro Ottawa upgrades SCADA system

Thursday, September 6th, 2007

Houston, TX, Aug. 28, 2007 — Hydro Ottawa Ltd. completed an upgrade to Telvent’s latest OASyS SCADA system version, OASyS DNA 7.4, in less than two months. Telvent’s solution will continue to help monitor and control Hydro Ottawa’s electric distribution system.

Source and more info: pennnet

ABB’s AC800M Industrial Controller Achieves Achilles Level 1 Security Certification

Thursday, September 6th, 2007

VANCOUVER, BC, Canada – September 4, 2007 – Wurldtech Labs, an independent division of Wurldtech Security Technologies, a leading provider of cyber-security solutions to SCADA, process-control and mission-critical industries worldwide, today announced that the ABB AC800M industrial controller has been awarded the Achilles™ Level 1 Security Certification. Already a global leader in power and automation technologies, ABB’s Achilles™ Level 1 Certification achievement enables the company to further differentiate their product from their competitors. By demonstrating AC800M’s compliance, ABB is effectively aligning their brand with one that places security as a corporate priority; while taking a proactive step towards security regulations and standards that are being set in today’s industrial automation industry.

“Control systems must meet very high requirements on security against cyber attacks,” says Thomas Pauly, responsible for cyber security in System 800xA. “This requires meticulous development processes and advanced methods and tools for verification. Wurldtech’s Achilles plays an important role in how we achieve that.” The Achilles™ Certification Program presents device manufactures such as ABB with an independently verified result from which to communicate their product security to customers, while providing the operators of control systems with the most complete, accurate, and trustworthy information possible on the security of their deployed products.

Source and more info: industrial-embedded

Waterfall protects Israeli SCADA Systems

Thursday, September 6th, 2007

Waterfall Solutions is currently completing two implementations of its security solutions in leading Israeli Critical National Infrastructure (CNI) entities. The implementations in the Israel Electric Corporation (IEC) and the Eilat Ashkelon Pipeline Company (EAPC) establish Waterfall Solutions as the choice for protecting SCADA systems.

The Waterfall security solutions have been implemented in critical organizations and entities for several years already, through Gita Technologies. However, having changed its business strategy, Waterfall Solutions is now operating as an independent company, identifying new markets. The Ludan Engineering Company carried out the adaptations and integration in the IEC project.

Use of Waterfall Solutions’ technology prevents the possibility of the critical infrastructure’s sensitive Control Network being attacked. This protection is achieved without impairing the necessary connectivity with business and data systems on the administrative network. The solution is based on unique hardware elements, combined with a variety of software applications, which are suitable for a wide range of information security requirements and regulations.

Source and more info: securitypark

Sielco Sistemi – Winlog Pro SCADA software now includes Symbol Factory library

Thursday, September 6th, 2007

Sielco Sistemi is proud to announce that, following the agreement with Software Toolbox, all Winlog Pro SCADA software development licenses will include Symbol Factory 2.0, the most popular library of industrial automation graphic objects.

Symbol Factory 2.0 includes over 4,000 manufacturing and industrial objects such as pumps, valves, motors, tanks, PLCs, piping, ISA symbols, etc. with easy-to-use features for resizing and changing colour, scheme and orientation of objects (bitmap or metafile).

Symbol Factory 2.0 provides a further enhancement of the graphic performance offered by Winlog Pro SCADA software, adding a library of symbols to the existing library of powerful graphic objects that includes circular (Dial, GearDial) and linear (Vslider, Hslider) potentiometers, pointer (120Meter, 180Meter, 270Meter) and linear (Vmeter, Hmeter) indicators, thermometers (ThermoMeter), switches and selectors (RockerSwitch, ToggleSwitch).

Source and more info: businessportal24

GE Fanuc Launches New Proficy HMI/SCADA iFIX 4.5

Thursday, September 6th, 2007

GE Fanuc Automation, a unit of GE Enterprise Solutions, announced the availability of Proficy HMI/SCADA iFIX 4.5, providing monitoring, control and data management for companies worldwide. This new version of the visualization product addresses a wide range of customer identified needs, including advanced reliability to improved ease of use, while adding more power and flexibility.

iFIX 4.5 supports operation on the Microsoft Windows Vista operating system. The software automatically adopts the latest operating system look and feel throughout all of its applications and dialogs. In addition to integration with its award-winning Proficy Change Management and Microsoft Windows Vista support, other major enhancements in iFIX 4.5 include:
• Dynamo Versioning.
• Multiple Display Instances.
• Double Precision Math in the iFIX Process Database.
• Support for up to 200 clients connected to one SCADA Node.
• Better OPC Integration and Certification.

Proficy Change Management version 5.7, in combination with iFIX allows users to gain control over changes to their iFIX systems, enhances security, helps manage the application development Life Cycle and provides the ability to recover quickly from disasters. Enhancements in this latest release provide even more detailed reporting capabilities to ensure the system integrity is maintained.

Source and more info: arcweb