Business Wire

CA-FORESCOUT

6.12.2023 07:02:34 CET | Business Wire | Press release

Share
Critical Infrastructure Still at High Risk: Forescout Research Spotlights 21 New Vulnerabilities

Forescout, a global cybersecurity leader, today released “SIERRA:21 – Living on the Edge,” an analysis of 21 newly discovered vulnerabilities within OT/IoT routers and open-source software components. The report — produced by Forescout Research – Vedere Labs, a leading global team dedicated to uncovering vulnerabilities in critical infrastructure — emphasizes the continued risk to critical infrastructure and sheds light on possible mitigations.

This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20231205915662/en/

To view this piece of content from mms.businesswire.com, please give your consent at the top of this page.

Sierra:21 Infographic (Source: Forescout)

“SIERRA:21 – Living on the Edge” features research into Sierra Wireless AirLink cellular routers and some of its open-source components, such as TinyXML and OpenNDS. Sierra Wireless routers are popular — an open database of Wi-Fi networks shows 245,000 networks worldwide running Sierra Wireless for a variety of applications. For example, Sierra Wireless routers are used for police vehicles connecting to a central network management system or to stream surveillance video, in manufacturing plants for industrial asset monitoring, in healthcare facilities providing temporary connectivity and to manage electric vehicle charging stations. The 21 new vulnerabilities have the potential to stop vital communications that could impact everyday life.

Read the blog: Forescout Vedere Labs discloses 21 new vulnerabilities affecting OT/IoT routers

Forescout Research further finds:

  • The attack surface is expansive with 86,000 vulnerable routers still exposed online. Less than 10% of these routers are confirmed to be patched against known previous vulnerabilities found since 2019.
  • Regions with the highest number of exposed devices includes:
    • 68,605 devices in The United States
    • 5,580 devices in Canada
    • 3,853 devices in Australia
    • 2,329 devices in France
    • 1,001 devices in Thailand
  • Among the 21 vulnerabilities, one has critical severity (CVSS score 9.6), nine have high severity and 11 have medium severity. These vulnerabilities allow attackers to steal credentials, take control of a router by injecting malicious code, persist on the device and use it as an initial access point into critical networks.
  • Patching can’t fix everything. 90 percent of devices exposing a specific management interface have reached end of life, meaning they cannot be further patched.
  • It’s an uphill battle to secure supply chain components. Open-source software elements continue to go unchecked and increase the attack surface of critical devices, leading to vulnerabilities that may be hard for organizations to track and mitigate.

“We are raising the alarm today because there remain thousands of OT/IoT devices representing an increased attack surface that requires attention,” advises Elisa Constante, VP of Research, Forescout Research – Vedere Labs. “Vulnerabilities impacting critical infrastructure are like an open window for bad actors in every community. State-sponsored actors are developing custom malware to use routers for persistence and espionage. Cybercriminals are also leveraging routers and related infrastructure for residential proxies and to recruit into botnets. Our discoveries reaffirm the need for heightened awareness of the OT/IoT edge devices that are so often neglected.”

Sierra Wireless and OpenDNS have issued patches for the identified vulnerabilities. TinyXML is an abandoned open source project, so the upstream vulnerabilities will not be fixed and must be addressed downstream.

For more information, download the full report, “SIERRA:21 – Living on the Edge,” now at https://www.forescout.com/resources/sierra21-vulnerabilities.

Additional Resources:

About Forescout

Forescout Technologies, Inc., a global cybersecurity leader, continuously identifies, protects and helps ensure the compliance of all managed and unmanaged connected cyber assets – IT, IoT, IoMT and OT. For more than 20 years, Fortune 100 organizations and government agencies have trusted Forescout to provide vendor-agnostic, automated cybersecurity at scale. The Forescout® Platform delivers comprehensive capabilities for network security, risk and exposure management, and extended detection and response. With seamless context sharing and workflow orchestration via ecosystem partners, it enables customers to more effectively manage cyber risk and mitigate threats.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20231205915662/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

JTB to Acquire Asian DMC Leader EXO Travel for Accelerated Global Growth18.6.2026 04:00:00 CEST | Press release

— Advancing JTB's “Departing Globally, Arriving Globally” Vision — JTB Corp. today announced that it has reached an agreement to acquire all the shares of All Wise Holdings Pte. Ltd., the operator of Bangkok-based EXO Travel Group, a leading Destination Management Companies (DMCs) in Asia. The acquisition will be made through a JTB group company in the Asia-Pacific region. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260615106801/en/ EXO Travel operates in the B2B market, primarily across Asia Pacific. For over 30 years, it has consistently maintained high customer satisfaction based on trust, achievements and high-quality service. The company has a strong brand presence in the affluent markets of Europe, North America and Australia, where the trust of partner companies contributes significantly to its value. Additionally, EXO Travel leverages its extensive network of destinations in Asia Pacific to develop strong products

LabGenius Therapeutics and LG Chem Enter a Research Collaboration, Option and License Agreement to Develop an AI/ML-Designed Tumour-Targeting Antibody18.6.2026 01:01:00 CEST | Press release

The companies have entered into a multi-year research collaboration, option and licensing agreement in which LabGenius Therapeutics will leverage its AI/ML-driven antibody discovery platform,EVA™, to design and engineer next-generation multispecifics with enhanced therapeutic properties LabGenius Therapeutics will receive an undisclosed upfront payment and potential early milestones, plus, if the option is exercised, potential triple-digit million clinical, regulatory, and commercial milestones, along with royalties on net sales LabGenius Therapeutics (“LabGenius”), a drug discovery company combining machine learning (ML) and high-throughput experimentation to optimise therapeutic antibodies, today announced a multi-year research collaboration, option and licensing agreement with LG Chem. The collaboration aims to identify next-generation multispecific antibodies designed to overcome the key limitations of existing immunotherapies, including on-target, off-tumour toxicities. Together,

Joe Vernachio Named President of SOREL18.6.2026 00:00:00 CEST | Press release

Columbia Sportswear Company (Nasdaq: COLM), a leading innovator in active outdoor apparel, footwear, accessories and equipment, today announced that Joe Vernachio will be the next President of SOREL. Founded in 1962, SOREL is a leader in functional and lifestyle footwear that can be worn anywhere from the tundra to the streets of New York City. “We’re excited to welcome Joe Vernachio back to the Columbia Sportswear family,” said Tim Boyle, CEO and Chair of the Board. “Joe is a terrific leader who can build on the great work, talent and momentum in place at SOREL.” Mr. Vernachio led the Mountain Hardwear brand for several years, until he left to become the COO and ultimately, the CEO of Allbirds. His background also includes time as Global Vice President for Product and Operations at The North Face, and key roles at Nike, Spyder, Roots, Calvin Klein and Patagonia. “Joe is a consumer‑focused, collaborative leader with a deep passion for product and brand storytelling. His energy, experti

Venture Global and EnBW Announce New LNG Purchase Agreements17.6.2026 22:30:00 CEST | Press release

Today, Venture Global, Inc. (NYSE: VG) and EnBW announced the execution of new, binding agreements for the purchase of approximately 0.82 million tonnes per annum (MTPA) of U.S. liquefied natural gas (LNG) from Venture Global for approximately five years commencing in 2026, to be supplied from Venture Global’s portfolio. The new agreements add to the existing long-term sales and purchase agreements (SPAs) between Venture Global and EnBW for 2 MTPA for 20 years. “As one of Germany’s top LNG suppliers, Venture Global is proud to strengthen our partnership with EnBW and support the region’s energy security with a reliable supply of LNG,” said Venture Global CEO Mike Sabel. “The new mid-term agreements build on our strong, long-standing relationship with EnBW and reflects our commitment to meeting our customers’ evolving energy needs. Our dynamic marketing platform uniquely positions us to provide supply solutions across the short, medium, and long term.” About Venture Global Venture Globa

Kinaxis Announces Results of Voting at Annual and Special Meeting of Shareholders17.6.2026 22:05:00 CEST | Press release

Kinaxis® Inc. (“Kinaxis” or the “Company”) (TSX:KXS), a global leader in end-to-end supply chain planning and orchestration, received approval for all resolutions put forward to shareholders at today’s Annual and Special Meeting of Shareholders (the “Meeting”), as detailed in the Company’s management information circular dated May 5, 2026 (the “Circular”). 1. Election of Directors Shareholders voted to elect all eight directors nominated to the Kinaxis board, to hold office until the close of the next annual meeting of shareholders of the Company or until their successors are elected or appointed. Name of Nominee Total Number of Votes For Percentage of Votes For Total Number of Votes Against Percentage of Votes Against Razat Gaurav 21,870,163 99.01% 219,468 0.99% Robert Courteau 20,882,945 94.54% 1,206,685 5.46% Gillian (Jill) Denham 21,474,486 97.22% 615,143 2.78% José Alberto Duarte 21,699,181 98.23% 390,448 1.77% Lynn Loewen 21,952,244 99.38% 137,387 0.62% Angel Mendez 21,410,402 96

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye