Viakoo daily OT security briefing — September 02, 2026. Below are concise summaries of five recent developments affecting industrial, maritime and grid-connected operational technology.
CISA Releases Eight Industrial Control Systems Advisories
On September 1, 2026, CISA released eight industrial control systems advisories, including an update for Mitsubishi Electric multiple FA engineering software and advisories covering Rockwell Automation products such as 1734 POINT I/O, RSLinx Classic, Redundancy Module Configuration Tool, Logix Platform, FactoryTalk Activation Manager, ControlLogix/CompactLogix/CompactLogix 5480/GuardLogix/Compact GuardLogix, and Historian ME. CISA directs users and administrators to review the individual advisories for technical details and mitigations.
Source: CISA Releases Eight Industrial Control Systems Advisories
SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks
SecurityWeek reported on September 2 that SonicWall observed exploitation of CVE-2026-83548, a CVSS 10 pre-authentication SSRF issue, and CVE-2026-83549, a CVSS 7.8 authenticated OS-command-injection issue, in SMA1000 appliances. SonicWall says the flaws may be chained for unauthenticated remote code execution; affected models are SMA1000 6210, 7210 and 8200v, and hotfixes 12.4.3-03526, 12.5.0-02952 and later address the flaws, while SSL-VPN on SonicWall firewalls and SMA100-series products are not affected.
Source: SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks
Coast Guard Establishes Office of Maritime Cybersecurity Policy
The U.S. Coast Guard has established the Office of Maritime Cybersecurity Policy (CG-MCP) as its central authority for developing and implementing cyber policy for the Marine Transportation System, including ports, vessels and maritime facilities. SecurityWeek reported that the office will develop domestic policy, contribute to international standards, direct coordinated compliance and enforcement strategy, and engage industry, government, academia and national laboratories, citing the sector’s growing use of information and operational technology as increasing cyber risk.
Source: Coast Guard Establishes Office of Maritime Cybersecurity Policy
Forescout Demonstrates AI-Assisted Porting of a PLC Exploit
Forescout Research/Vedere Labs reported on September 1 that researchers used AI assistance and substantial human guidance to port an RCE exploit for CVE-2021-31886 from a WAGO 750-852 PLC to a WAGO 750-831 without source code or a debugger. The final RCE development stage took 8 hours 32 minutes and $535.74 in API usage; the researchers say the experiment does not make PLC exploitation easy today but may weaken the assumption that a technically difficult OT vulnerability can safely be deprioritized, and a later attempt to develop a command-and-control implant bricked the test PLC.
Source: Forescout Demonstrates AI-Assisted Porting of a PLC Exploit
Analysis Examines Coordinated Cyber Risk to Grid Battery Storage
Help Net Security published an analysis on September 2 of modelled cyber risk to grid-connected battery fleets, explaining that compromise of centralized optimizer or manufacturer cloud control planes could enable coordinated changes in battery output. The analysis notes that a hostile rapid dispatch could resemble a legitimate control action in a control room and that this is a scenario analysis based on cited modelling and assumptions, not a report of a real cyberattack.
Source: Analysis Examines Coordinated Cyber Risk to Grid Battery Storage
End of briefing.