Similarities between newly patched GE Cimplicity flaws, Sandworm attacks observed

SecurityWeek reports that several recently addressed memory corruption vulnerabilities in the GE Cimplicity human-machine interface and supervisory control and data acquisition system, tracked as CVE-2023-3463, were noted by cybersecurity researcher Michael Heinzl, who discovered the bugs, to be similar to those exploited in attacks by the Russian state-sponsored threat operation Sandworm nearly a decade ago.

Article Link: https://cms.cyberriskalliance.com/brief/vulnerability-management/similarities-between-newly-patched-ge-cimplicity-flaws-sandworm-attacks-observed