How much does it take to hack a mobile network?
Is electronic government secure
in the era of WikiLeaks and Anonymous?

Is SCADA hacking a Hollywood fiction
or the nowadays reality?
Internet banking: is there any chance to win
over the fraudsters?

Cyber-crimes, cyber-espionage, cyber-war: where do we draw a borderline?


Monday, June 16, 2014

Smart City Hacked at PHDays IV

The Critical Infrastructure Attack (CIA) contest at Positive Hack Days IV has shown for the second time how weak critical infrastructure systems can be in terms of security. The participants successfully compromised various ICS systems during this two-day contest.

Last year at PHDays III, the contest was held with different name – Choo Choo Pwn. Organizers designed a transportation system controlled by real ICS hardware and software.

The contest's infrastructure was massively updated.. Organizers added new SCADA systems (such as Siemens TIA Portal 13 Pro and Schneider Electric ClearSCADA 2014) and various OPC servers (Kepware KepServerEX, Honeywell Matrikon OPC). New HMI devices, the operator panel Siemens KTP 600, PLC (Siemens Simatic S7-300 and S7-1500)and remote control devices (ICP DAS PET-7067) were presented as well. Schneider Electric MiCOM C264 was provided by CROC.

The contest's stand was created by Ilya Karpov, ICS security expert at Positive Technologies, and his colleagues from the group of SCADA security researchers.

Contestants needed to discover and exploit vulnerabilities in SCADA systems and industrial protocols in order to gain control over robotic arm, cranes, heating plants, transport management and illumination systems. Moreover, there was an opportunity of remote control over certain elements: robots, plant facilities, a railroad crossing, and cooling towers.

Similar SCADA systems and controllers are commonly used in a number of critical objects of various industries: factories and water power plants, transport infrastructure, oil and gas.

Alisa Shevchenko became the winner of the two-day competition – she detected several zero-day vulnerabilities in Indusoft Web Studio 7.1 by Schneider Electric. Nikita Maksimov shared second place with Pavel Markov. They managed to disrupt RTU PET-7000, provided by ICP DAS, and guess the password of the web interface for the controller Allen-Bradley MicroLogix 1400 by Rockwell Automation. Dmitry Kazakov took third place. He discovered XSS vulnerabilities (published) in the web interfaces of the Simatic S7-1200 controllers by Siemens.

"Contestants managed to gain control over robots and cranes via Modbus TCP. During the two days, they detected many critical vulnerabilities, most of them being in Simatic S7-1200 controllers. What's more, during the second day, one of the participants caused several operation failures of MiniWeb’s web server WinCC Flexible 2008 SP3 Update4," — said Ilya Karpov.

If exploited in real life, discovered vulnerabilities could cause harmful consequences, such as denial of service, functional failure of critical infrastructure management systems, which in its turn may disrupt normal life of an entire city'.

According to the responsible disclosure policy, contestants notify respective vendors about vulnerabilities they detected. Details about the vulnerabilities will be available after the vendors address the vulnerabilities.

As a winner Alisa Shevchenko received a special prize – the quadrocopter Phantom 2 Vision+.

Pictured: Alisa Shevchenko

The winners of the last year's Choo Choo Pwn were Mikhail Elizarov, a student from the North Caucasian Federal University (Stavropol Krai, Russia) and Arseny Levshin, a university student from Minsk.

Contest on critical infrastructure security is one of the main attractions of PHDays. Positive Technologies experts also presented the contest’s stand and workshops at Power of Community and at the 30th Chaos Communication Congress in Hamburg.


  1. Just a regular old guy from America who read the guardian article and was interested in learning more about what you do. No intentions, just curious. Looks like you're very talented. Sorry for your inclusion on the sanctions list. The US government is largely a bunch of assholes. Good luck with future endeavors.

  2. I want to thank you for writing this article.This is great Article for me. It also more very informative & awesome.
    Online lead genaration

  3. Congrats to the winners! This year we are having a harsh rivalry between a student from Clearview Regional High School and Deptford Township High School. Both have showed the results shared on essayforcollege essay help org constructor's page.

  4. Showbox users all over spread content through facebook and youtube directly from the software. showbox apk

  5. It is not difficult to guess that he|she will be having WhatsApp installed in it and more this website

  6. nice post Our Asus Routers Customer Service team has encountered problems where the router is working but no wifi signal is available. Such things are possible and are tricky to fix. You can just reach out to us and we will take it from there. Call us to get easy and fast fixes for your Asus routers. The Asus Routers Customer Service is always available for resolving your problems. Asus Customer Support

  7. You have the nice information thanks for sharing . If you need Apple AirPort Help Use Our Service.

  8. you have shared the nice and informative post thanks for sharing.
    d link router customer support

  9. Useful Information You have the nice information thanks for sharing. If you need Cisco Customer Support Number
    Help Use Our Service.

  10. Thanks for sharing this kind of amazing post. It is a great experience to read all about.
    Linksys customer support

  11. Download Live NetTV Apk or Showbox Apk on your Android, iOS, Tablets, Amazon, Android Box device to watch Movies, TV Shows and 1000+ live TV channels in 27 categories.

  12. KineMaster Pro is the only full-featured professional video editor for Android, supporting multiple layers of video, images, and text, as well as precise cutting and trimming, multi-track audio, precise volume envelope control, color LUT filters, 3D transitions, and much more.

  13. Spotify APK is a digital music service that gives you access to millions of songs.
    The Ultimate Entertainment is back with the RedBox TV APK with hundreds of Live TV Channels available for streaming at your proposal.

  14. The Deep Websites, Dark web, Hidden Wiki is accessed using Tor that contains .onion websites and provided Deep Web Links 2018 with more of deep web news.

  15. You're searching for the Best Gaming Chair. We know that and don't worry - we got you completely covered with our updated guide on gaming and office chairs.

  16. If you are looking for the SSLC Result Karnataka, you can go through the official website of Karnataka board; here we are providing the details of the official sites of the Karnataka SSLC board 2018

  17. This comment has been removed by the author.

  18. Thanks for the unique post about Smart City Hacked at PHDays IV. If you would add a video tutorial with it. That will be more good. However, i will come next day to ready more about the next post. Thanks from Lucky Patcher

  19. Hope you will get the letest news about all android game, and download all kind of mod games, free apk for your android mobile. Here is the largest collection of android games and tools only for you, which are free of cost. from APKJA

  20. Buy High Quality Replica Watches in India. Best Quality First Copy Watches. First Copy Watches For Men and Women.

  21. nice this post, thanks for sharing... IMO for PC imo for pc

  22. This is very nice post. I found your website perfect for my needs
    anime download app pc

  23. thanks for this amazing article we loved it
    check out Fortnite Apk

  24. Thanks a lot for sharing this list, very useful.

  25. Thanks a lot admin for proving such information on a single blog keep posting.

  26. thanks for share informative information.....

  27. Droid4x is a free Android emulator that can install your favourite Android apps on computer.

    Droid4x Apk

  28. download terrarium tv for androidbox and watch unlimited movies and TV shows for free.

  29. Hey, I am glad I have found this information. This is what I need thanks for sharing an informative post.I am hoping the same best work from you in the future as well.Really the blogging is spreading its wings rapidly.If you are looking for the TSPSC details, you can go through the official website of here we are providing the details of the official sites of the TSPSC.
    TSPSC vacancy
    TSPSC SI Vacancy Details
    TSPSC Forest Gaurd Vacancy
    TSPSC Group 1 recruitment
    TSPSC group 2 recruitment

  30. it is good to use. i am having the same one. at the time of purchasing i am very much confused but i read a lot of reviews from diff sites. i share a link where a i buy this
    best front load washing machine

  31. thanks for the sharing wonderful article with us and also check the and Hindi Gana

  32. "Hello all budies keep updating with world news headlines....Digital world economy provides latest news from India and the world. Get today's news headlines from Business, Technology, cryptocurrency news, market updates, and economic news..

    Tesla to Remain Public, Confirms CEO...

    Electric Version of Jaguar coming soon...

    Cryptocurrency Accepted in Chile...

    Crypto Transactions Barred...

    CloudWalker launches smart tv…


  33. افكار جديدة فى التنظيف
    تنظيف البيوت من المسئوليه الكبيرة التى لابد من القيام بيها و فالتنظيف من الاشياء الحيوية التى تساعد فى الحفاظ على المكان وتساعد فى الحفاظ على صحتك وصحه افراد اسرتك فاليك افضل الطرق المميزة التى تساعد فى الشعور بالراحه النفسيه والهدوء والسعى الى التخلص من اى تغيرات من الممكن ان تتعرض اليها من اهم ما تقوم بيه الاتى :-
    شركة تنظيف الشارقة
    شركة تنظيف شقق الشارقة
    شركة تنظيف فلل الشارقة
    شركة تنظيف منازل الشارقة
    الاغطيه والمفروشات من اهم الاشياء التى لابد من الحفاظ عليها والقيام باعمال التنظيف باستمرار لانها من الممكن ان تؤدى الى التعرض الى الحساسية والامراض الصدرية فعليك ان تقوم باعمال التنظيف مرة على الاقل كل 6 اشهر والقيام بتنفيض الملايات والمراتب والتخلص من الاتربة ، بالاضافة الى القيام بتغير الملايات مرة كل اسبوع .
    شركة تنظيف دبي
    شركة تنظيف شقق دبي
    شركة تنظيف فلل دبي
    شركة تنظيف منازل دبي
    • الارضيات ومشاكل التنظيف التى لابد من الاهتمام بيها فافضل الطرق فى اعمال التنظيف للبورسلين استخدام المياه والمنظفات المميزة المخصصه للارضيات ، الباركية شمع العسل وزيت بذرة القنب من اهم الاشياء التى تساعد فى الحفاظ عليها ضد اى تغيرات تتعرض اليها فاليك الطرق المجربة ( امزجى قليل من زيت الفنب وعليه معلقه كبيرة من الخل ومعلقه كبيرة من الكحول الطبى والبدء فى استخدام قطعه من القماش ومسح الارضيات والاهتمام باعمال التجفيف وانتظر النتيجه بعد دقائق)
    شركة تنظيف العين
    شركة تنظيف شقق العين
    شركة تنظيف فلل العين
    شركة تنظيف منازل العين
    • الهواء الراكد من اكثر المسببات للرواح الكريهه فى المكان ومن اكثر الاشياء التى يحتاج الى تجددها فمن افضل الطرق هو القيام بفتح الشبابيك المتواجده فى المكان والقيام بفتح الشفاط الكهربائى وتغير الهواء المتواكد فى المكان ، او القيام بزيوت عطرية ووضعها فى بخاخات والقيام برش على الارضيات والكنب والاماكن التى بيها روائح كريهه

  34. شركة تنظيف ابوظبي
    شركة تنظيف شقق ابوظبي
    شركة تنظيف فلل ابوظبي
    شركة تنظيف منازل ابوظبي
    • بقع السجاد : من اكثر الاشياء التى من الممكن ان يتعرض اليها وخاصه اذا كان هناك اطفال فى المكان فاذا تم سكب اى كوب او وجود اى بقعه فعليكى ان تقومى فى الحال بالتنظيف على السجاد فلا تقوم بمسحها فعليك ان تقومى بوضع قطعه من القماش وامتصاصها تماما والبدء فى اعمال التنظيف بالطريقه التى تتلائم مع السجاد .
    التخلص من الحشرات فى المطابخ
    المطابخ من اكثر الاماكن التى نستخدمها يوميا ونظافة المطابخ تتدل على افراد اصحاء وعائله سليمة فنظافة المطابخ والتخلص من الحشرات من اهم الاشياء التى لابد من القيام بيها وعدم الانتظار الى ان تتكاثر وتنتشر فى المطابخ من اهم انواع الحشرات التى من الممكن ان تتعرض اليها الاتى :-
    • الصراصير الصغبرة فى المطابخ
    شركة مكافحة حشرات الشارقة
    شركة مكافحة حشرات العين
    شركة مكافحة حشرات ابوظبي
    شركة مكافحة حشرات دبي
    من اكثر انواع الحشرات التى يتم التعرض اليها فعليك اولا ان تتعرف على الاسباب التى تؤدى الى التعرض الى الصراصير والقضاء عليها نهائيا من اهم ما تقوم بيه الاهتمام بالتخلص من القمامه اول باول ، الاهتمام بالتخلص من بقايا الاطعمه ،التخلص من الردة ، التخلص من تسربات المياه تحت الاحواض لانها من البيئة الخصبة التى تساعد فى نمو الحشرات وتساعد فى تكاثرها وانتشارها ، الاهتمام بالبيارات ونظافتها وخاصه اذا كانت فى المطابخ هذه هى اهم الاسباب التى تؤدى الى انتشار الصراصير الصغيرة فى المطابخ فاذا كانت هناك اى مشكله واستعصى عليك الامر فتعاون معنا الان .

  35. Rush your business with us.
    Join us now
    Check out this relevant link
    Registration Kart

  36. A smart city or smart metropolis as a global organic system is connected from multiple systems with artificial intelligence systems that can behave intelligently as humans
    Vietnam hair

  37. Check out this amazing link
    Colour Masterbatches
    We are providing best Colour Masterbatches

  38. So if you want you can download it

  39. There is am application which let you watch online TV
    Check tvtap pro adfree

  40. Tubemate for PC is an app which allows you to download videos from various websites. Tubemate is available for android, windows and MAC as well. With just a single click you can download videos from your favorite websites. Tubemate is well known for its fast download capability.

  41. Purchase lower-priced prescription drugs from our online pharmacy – and enjoy the convenience of better service and peace of mind when ordering from our secure online shopping system.
    Save upto 80% on popular medicines.

    online medicine

    order online medicine

    med at door step

    buy online medicine

  42. The most lasting impression Cold War has on its audience is that it's a film that tells its conventional story in an unconventional manner. Rather than throwing Wiktor and Zuzanna into a straightforward narrative, the story of Pawlikowski's dour, and in all honesty toxic, romance is told by, in essence, snapshots in time. We never linger with these characters too long, as time and locales shift when the story needs them to.

  43. This blog was really amazing, thank you so much for sharing this blog.
    Website Development Company in Delhi

  44. gta v android

    Probably most of us have Android smartphones. Android users are growing rapidly. All of us use our smartphone for entertainment, gaming and ...

  45. this is a nice article.

  46. Nice Blog, Visit for the best SEO Service and Website Designing and Development for your business.
    Website Designing Company in India

  47. For the best Mutual fund Investment and for the best Mutual fund Schemes Visit Mutualfundwala.
    Mutual Fund Agent
    Mutual Funds India

  48. Go to this website if you want to play best games

  49. For best sound and audio engineering course visit our website spingurus.
    electronic music production courses in delhi


  50. WhatsApp 2019 is to have a cross-platform mobile messaging app for iPhone, Samsung, Android, Windows, Mac OS. WhatsApp app permits you to trade messages without requiring to invest for the MESSAGE. Whatsapp 2019 APK of this app will absolutely be excellent for some people, since there was absolutely nothing else to utilizing any kind of kind of area in your net web browser. New app usually works as an expansion of your phone; it's a mirror publication as well as additionally a conversation of the devices you.


  51. Epson Printer Support is a team of well experienced experts who takes care of your epson printer issue. If face any problem with your device like your printer is crashed, device is not working properly, paper jamming issue or others then contact with experts at Epson Printer Support and get instant help.

  52. A Professional mobile app development Canada company offering Android & iOS app development services. I like its sharing. Thanks you

  53. Check the blog to get arrangement additionally you can call us at our with toll no 1-877-301-0214. Our sans toll no is accessible on our blog HP Printer Technical Support. Benevolently visit our site to get the best arrangement.
    Hp Printer Customer Support Contact Number

  54. I want to say that this post is awesome, nice written.

  55. Awesome and amazing website got so much from here.
    Thanks to the Author.
    dental implants in conroe

  56. really awesome information dear. Great article you did.

    Click Here
    Download Here

  57. Out now for PlayStation4, Xbox One, PlayStation3, Xbox 360, and PC. A bold new direction in open-world freedom, storytelling, mission-based gameplay Download GTA V APK Free Download

  58. really great post admin thanks for this.
    tvtap app

  59. Our dedicated technical team is available to be able to 24X7, 365 days a year to make sure comprehensive support and services at any hour. QuickBooks Technical Support Number assure you the quickest solution of most your QuickBooks software related issues.

  60. Do you pay your representatives month to month, week after week or every other week this does not to imply that you can't do anything in QuickBooks yourself, yet the product has a broad expectation to learn and adapt, you will require a snappy response to escape a stalemate. That is the thing that we are here for you we give you that quick arrangement at whatever point you require dial our QuickBooks Payroll Support Number.

  61. With QuickBooks Enterprise version you get the advantage of Advanced Reporting highlight which essentially helps in smoothening the route for better overseeing of the business. It is advised to take the help from QuickBooks Tech Support Phone Number 1888-557-6950 and scan your Quickbooks Enterprise time to time to avoid errors and corruption.

  62. With QuickBooks Enterprise form you get the benefit of Advanced Reporting feature which basically helps in smoothening the course for better directing of the business. It is encouraged to take the assistance from QuickBooks Enterprise Support Number 1888-557-6950 and examine your Quickbooks Enterprise time to time to avaoid mistakes and defilement.

  63. epson l220 driver download is among the brand names of printers made by epson. Perhaps also Epson L220 is the most recent innovation from epson printer where printer is the printer upgradean of epson printer L210. Where on the printer L220 every one of its functions made extra contemporary as well as a lot more multifunctional.

  64. Problems are inevitable plus they usually do not come with a bang. Our team at QuickBooks Support Number is ready beforehand to provide you customer-friendly assistance if you speak to an issue using QuickBooks Pro. All of us is skilled, talented, knowledgeable and spontaneous. Without taking most of your time, our team gets you rid of all unavoidable errors of this software.

  65. Would you like to Update QuickBooks Pro? We now have was able to make it simple for you at QuickBooks Tech Support Number. It is almost always simpler to focus on updated version as it helps you incorporate all of the latest features in your software and assists you undergo your task uninterrupted. You will find simple steps that you must follow. Firstly, click on file and choose the chance Open & Restore. Now open the file and click on Update Company File for New Version. And now maybe you are all set.

  66. Before joining and downloading a game you should check out the video of the game. Mobdro is an application for watching movies, TV, watching game players evaluate that game. google chrome is available Mobdro on their gadget.

  67. It will be good initiative to modern living. Like coc has clash of lights apk for its private server.

  68. Our specialist group won't just give you an answer yet you can give the learning and tips how to manage it in future. Our master group of QuickBooks Payroll Support Number works day and night to serve you.

  69. Geek Squad provides help to fix all your broken devices whether electrical or digital. We deal in fixing devices like PC, laptop, television, refrigerator and other appliances. Our team at Geek Squad Tech Support is at your service 24/7 with relevant solutions.


  70. HP Printer Support experts gives the best & most reliable solutions against your damaged HP printers. the experts available can be reached anytime for help so reach them now for help.


  71. La veilleuse coranique bluetooth avec sa télécommande pour offrir.
    Cadeau ramadam idéal
    La veilleuse coranique personnalisée pas cher
    Veilleuse coranique pas cher
    Veilleuse coranique pas cher

    Découvrez La veilleuse coranique Munawara
    Video de la Veilleuse coranique munawara
    Veilleuse coranique munawara

    Je travailles sur un projet de fabrication de cornes de gazelle personnalisée
    cornes de gazelle marocaine
    cornes de gazelle algerienne
    Merci de laisser ce lien c'est sympa...

    Le casque vapeur hair steamer permet de lutter contre la sécheresse, la chute des cheveux et leur mauvaise santé , dans le confort de votre domicile. Le hair steamer est un casque vapeur qui apporte une dose d'hydratation pour les cheveux crépus.
    Hair steamer vapohair
    Lee hair steamer casque vapeur est recommendé par fes femmes aux cheveux crépus
    Casque vapeur
    La casque vapeur hair steamer apporte beaucoup de bienfait au cheveux crépus de type afro Hair.
    hair steamer Casque vapeur hydratation cheveux crépus
    hair steamer casque vapeur

  72. We site name, are leading tech support team provider for your entire QuickBooks related issues. QuickBooks Support Phone Number

  73. QuickBooks software program is developed in such a manner that it will supply you with the best account management reference to this era.
    QuickBooks Tech Support Number


  74. Geek Squad Phone Number provides support for various devices. Geek Squad has a team of experts for technical support. If you are facing any issue with your device, dial Geek Squad Phone Number for support.

  75. Geek Squad Tech Support group is accessible 24/7 across the globe. These experts are trained to resolve various tech issues. Call the experts at Geek Squad Tech Support for 24/7 help and avail best help on device repair.

  76. There were a lot of rumblings out there in the video game industry that something major was coming to the Android world, but most people would never have assumed that it was a full Android version of what many consider to be one of the best video games in human history – Grand Theft Auto 5!


  78. Our technical support team essentially deals with all of the problem attainable conditions that occur in HP printer. However we’ve listed a number of the foremost common issues that we offer support once you decision at our HP Printer Tech Support Number. We are a number one freelance technical support suppliers for HP printers. We’ve got been providing support to the valuable customers. The ultimate aim of HP Printer Support Phone Number team would be to produce the best answer to you as per your issue.

  79. QuickBooks technical help is present at our QuickBooks Support Phone Number this and gets your solution from our technical experts.

  80. With QuickBooks Tech Support Number you can easily easily effortlessly create invoices and keep close tabs on every little thing like exacltly what the shoppers bought, just how much they paid etc.

  81. Installing of QuickBooks Pro is a seamless task by making use of QuickBooks Support Phone Number.It is rather possible that one could face trouble while installing QuickBooks Pro software since this probably the most universal problem.

  82. It offers you the facility of automated data backup and recovery. These features are really best for the development of one's business. QuickBooks Tech Support Number will be two versions Premier and Premier Plus. Both in the versions you will want to choose the industry type during the time of installation.

  83. Brother offers you exclusive features like network support option, Wi-Fi setup printing and many other. But like other electronic devices, you may possibly face some issues while using Brother Printer. If you can get any issue while using the Brother Printer, call Brother Printer Support Phone Number to get the reliable solution without having any variety of delay. Brother Tech Printer Support Number will give you you support for the issues. We have been offering you 24*7 support, you can easily give us a call any time you get into a problem.