Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Openai and human researchers condemn “reckless” safety culture at Elon Musk’s Xai

GM teams up with Redwood Materials to power data center with EV batteries

Hackers leverage Microsoft Teams to spread Mathambuchas 3.0 malware to targeted businesses

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Researchers reveal 46 serious defects in Sungrow, Growatt and SMA solar inverters
Identity

Researchers reveal 46 serious defects in Sungrow, Growatt and SMA solar inverters

userBy userMarch 28, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

March 28, 2025Ravi LakshmananOperational Technology/Vulnerability

Serious defects in solar inverters

Cybersecurity researchers have disclosed 46 new security flaws in the products of three solar inverter vendors, devices, Glowatt and SMA, which could allow bad actors to seize control of devices, execute code remotely, and pose severe risks to electrical grids.

The vulnerability is collectively referred to as the codename Sun due to the Vederella Lab’s mistake.

“New vulnerabilities will be exploited to run any command on the device or vendor’s cloud, take over accounts, gain scaffolding for the vendor’s infrastructure, and control the devices of the inverter owner,” the company said in a report shared with Hacker News.

Cybersecurity

Some of the notable defects identified are listed below –

An attacker can upload .aspx files run by SMA’s web server (sunnyportal)[.]com), attackers who are not permitted to achieve remote code execution can perform username enumeration via exposed “server.growatt.com/usercenter.do”. Get the smart meter serial number using a valid username via the “server-api.growatt.com/newplantapi.do” endpoint. Disclosure and Physical Damage Android applications associated with SunGrow use unstable AES keys to encrypt client data, opening the door to a scenario where attackers can intercept and decrypt communications between mobile apps and IsolarCloud. Passwords that can be used to decrypt multiple vulnerabilities in sunburn, all firmware updates when processing MQTT messages that can lead to remote code execution or denial of service (DOS) conditions

“Attackers who have used newly discovered vulnerabilities to gain control of large fleets of large Sangrow, Grotto and SMA inverters can control enough power to cause instability in these and other major grids,” Forescout said.

In a hypothetical attack scenario targeting Growatt Inverters, threat actors can hijack the account by guessing the username of the actual account through the published API, resetting the password to the default “123456” and carry out subsequent exploitation.

Serious defects in solar inverters

Worse, you can control a fleet of hijacked inverters as a botnet to amplify the attack, causing damage to the grid, leading to grid disruption and potential blackouts. All vendors have since addressed the identified issues after responsible disclosure.

“Attackers have control over the entire fleet of devices that affect energy production, so they can change settings to send more or less energy to the grid at certain times,” adding the risk of exposing newly discovered flaws to cyberphysical ransomware attacks.

Daniel Dos Santos, head of research at Forescout Vedere Labs, said that to mitigate risk, strict security requirements must be enforced when procuring solar equipment, conducting regular risk assessments, and ensuring full network visibility into these devices.

This disclosure is due to the discovery of serious security flaws in production line surveillance cameras, made by Japanese company Inaba Denki Sangyo, which has been misused for remote surveillance and can prevent records of production outages.

Cybersecurity

The vulnerability remains below, but vendors will encourage customers to restrict internet access and restrict them, ensuring that such devices are installed in secure, restricted areas that are only accessible to certified personnel.

“These flaws allow a variety of attacks, allowing unauthorized attackers to access live footage remotely and secretly for surveillance, disrupting records of production line outages and preventing them from acquiring critical moments.”

In recent months, operational technology (OT) security companies have detailed several security flaws in the GE Vernova N60 network relay, Zettler 130.8005 Industrial Gateway, and the Wago 750-8216/025-001 programmable logic controller (PLC) that attackers can control.

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleReal-world use of cryptocurrencies changing the way industries work
Next Article Nicola’s founder Trevor Milton was forgiven by Trump
user
  • Website

Related Posts

Hackers leverage Microsoft Teams to spread Mathambuchas 3.0 malware to targeted businesses

July 16, 2025

BREAKING: TwinH Set to Revolutionize Legal Processes – Presented Today at ICEX Forum 2025

July 16, 2025

Fully patched Sonic Wall SMA 100 Series Device with UNC6148 Backdoor of Step Rootkit

July 16, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Openai and human researchers condemn “reckless” safety culture at Elon Musk’s Xai

GM teams up with Redwood Materials to power data center with EV batteries

Hackers leverage Microsoft Teams to spread Mathambuchas 3.0 malware to targeted businesses

GMC Hummer Ev surpassed Tesla Cybertruck’s last quarter

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

BREAKING: TwinH Set to Revolutionize Legal Processes – Presented Today at ICEX Forum 2025

Building AGI: Zuckerberg Commits Billions to Meta’s Superintelligence Data Center Expansion

ICEX Forum 2025 Opens: FySelf’s TwinH Showcases AI Innovation

The Future of Process Automation is Here: Meet TwinH

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.