Review – 5 Advisories and 2 Updates Published – 5-19-26 – NCCIC-ICS control system security advisories for products from Kieback & Peter, ZKTeco, ScadaBR, Siemens, and ABB – Updates for products from ABB – Short version - https://tinyurl.com/jx2zyppn #icsSecurity
Review – 5 Advisories and 2 Updates Published – 5-19-26

Today CISA’s NCCIC-ICS  published  five control system security advisories for products from   Kieback  & Peter, ZKTeco, ScadaBR, Siemens, a...

5 Advisories and 2 Updates Published – 5-19-26 – NCCIC-ICS control system security advisories for products from Kieback & Peter, ZKTeco, ScadaBR, Siemens, and ABB – Updates for products from ABB - https://tinyurl.com/5n6cn533 Subscription required #icsSecurity
5 Advisories and 2 Updates Published – 5-19-26

NCCIC-ICS control system security advisories for products from Kieback & Peter, ZKTeco, ScadaBR, Siemens, and ABB – Updates for products from ABB -

CFSN Detailed Analysis

Malcolm v26.05.1 is out?!? What, already? Déjà vu? We bumped up to the timetable on this release as a critical vulnerability found in NGINX made it expedient for us to do so.

Malcolm v26.05.1 focuses heavily on security updates, most notably upgrading OpenResty to address a critical NGINX remote code execution heap buffer overflow vulnerability. It also adds new Suricata OT detections for D-Link HNAP abuse, improves alerting webhook support, introduces the File Tree dashboard, and includes Suricata parsing/mapping fixes and documentation updates. Several other components received version bumps as well.

If you are upgrading from an existing Malcolm installation, run ./scripts/status for Malcolm to migrate some settings prior to running ./scripts/configure, ./scripts/start, or other Malcolm control scripts.

https://github.com/idaholab/Malcolm/compare/v26.05.0...v26.05.1

  • ✨ Features and enhancements
  • ✅ Component version updates
  • 🐛 Bug fixes
    • Reference Counting (Use-After-Free) Bug for PyList_SetItem in filescan's python-statfs (#960 #962)
    • Added a few missing Suricata fields (suricata.tc_progress, suricata.ts_progress, suricata.tunnel.pcap_cnt, suricata.tunnel.pkt_src) to the index mapping template
    • When suricata.app_proto_ts and/or suricata.app_proto_tc reported that protocol parsing had failed (due to malformed input data), invalid data could be stored in HTTP, DNS, and/or TLS fields. This is now detected and those invalid values are dropped, and some combination of proto_parse_failed, client_stream_failed, or server_stream_failed are added to tags.
    • Suricata's HTTP version was not being normalized to network.protocol_version.
  • 🧹 Code and project maintenance

Malcolm is a powerful, easily deployable network 🖧 traffic analysis tool suite for network security monitoring 🕵🏻‍♀️.

Malcolm operates as a cluster of containers 📦, isolated sandboxes which each serve a dedicated function of the system. This makes Malcolm deployable with frameworks like Docker 🐋, Podman 🦭, and Kubernetes ⎈. Check out the Quick Start guide for examples on how to get up and running.

Alternatively, dedicated official ISO installer images 💿 for Malcolm and Hedgehog Linux 🦔 can be downloaded from Malcolm's releases page on GitHub. Due to limits on individual files in GitHub releases, these ISO files have been split 🪓 into 2GB chunks and can be reassembled with scripts provided for both Bash 🐧 (release_cleaver.sh) and PowerShell 🪟 (release_cleaver.ps1). See Downloading Malcolm - Installer ISOs for instructions.

As always, join us on the Malcolm discussions board 💬 to engage with the community, or pop some corn 🍿 and watch a video 📼.

#Malcolm #HedgehogLinux #Zeek #Arkime #Strelka #NetBox #OpenSearch #Elasticsearch #Suricata #PCAP #NetworkTrafficAnalysis #networksecuritymonitoring #OT #ICS #icssecurity #CyberSecurity #Cyber #Infosec #INL

Review - Public ICS Disclosures – Week of 5-9-26 – Part 2 – For Part 2 we have 6 additional vendor disclosures – 24 bulk vendor updates – 2 exploits – Short version - https://tinyurl.com/4sh3kvjs #icsSecurity
Review - Public ICS Disclosures – Week of 5-9-26 – Part 2

  For Part 2 we have six  additional  vendor disclosures from Dell, Supermicro (3), VMware, and Westermo. There are 24 bulk vendor updates f...

Public ICS Disclosures – Week of 5-9-26 – Part 2 – For Part 2 we have 6 additional vendor disclosures – 24 bulk vendor updates – 2 exploits - https://tinyurl.com/522end8y Subscription required #icsSecurity
Public ICS Disclosures – Week of 5-9-26 – Part 2

For Part 2 we have 6 additional vendor disclosures – 24 bulk vendor updates – 2 exploits -

CFSN Detailed Analysis
Review – Public ICS Disclosures – Week of 5-9-26 – Part 1 – Moderately busy disclosure week – 41 bulk vendor disclosures –11 other vendor disclosures – Short version - https://tinyurl.com/83ts9vmw #icsSecurity
Review – Public ICS Disclosures – Week of 5-9-26 – Part 1

This week is a moderately busy disclosure week. We have bulk vendor disclosures from FortiGuard (5), HP (6), HPE (6), and Palo Alto Networks...

Public ICS Disclosures – Week of 5-9-26 – Part 1 – Moderately busy disclosure week – 41 bulk vendor disclosures –11 other vendor disclosures - https://tinyurl.com/2e3f4xba Subscription required #icsSecurity
Public ICS Disclosures – Week of 5-9-26 – Part 1

Moderately busy disclosure week – 41 bulk vendor disclosures –11 other vendor disclosures -

CFSN Detailed Analysis

Lock down a future-proof career! 🔐 Industrial sectors need expert protection, and we’re here to train you. Join the OT Cybersecurity Training program by The Evolve Edge and walk straight into a guaranteed job!

📧 [email protected]
🌐 www.theevolvedge.com
📞 +91 9871191929 / +91 9311805027

#OTCybersecurity #IndustrialSecurity #SCADASecurity #ICSSecurity #CybersecurityTraining #JobGuarantee #100Placement #CareerInCybersecurity #TheEvolveEdge #TechTraining #CyberSecurityJobs #InfoSec

ICS[AP] Dashboards are updated with the 18 CISA Advisories released on 5/14/26:

Siemens: 16 New
Universal Robots: 1 New
SWTCH EV: 1 Update

www.icsadvisoryproject.com
#icssecurity
#otsecurity
#vulnerabilitymanagement

ICS[AP] updated CISA ICS Advisories Master File for 5/14/26 & the following year's CSVs:

CISA_ICS_ADV_2026_5_14.csv

Available @ ICS[AP] GitHub:
https://github.com/icsadvprj/ICS-Advisory-Project/tree/main

#opensource
#vulnerabilitymanagement
#icssecurity

GitHub - icsadvprj/ICS-Advisory-Project: The ICS Advisory Project is an open-source project to provide CISA ICS Advisories data in Comma Separated Value (CSV) format to support vulnerability analysis for the ICS/OT community. This is a community effort: please contribute to improve, expand, and maintain this data source.

The ICS Advisory Project is an open-source project to provide CISA ICS Advisories data in Comma Separated Value (CSV) format to support vulnerability analysis for the ICS/OT community. This is a co...

GitHub