Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Alerts

BitSight Uncovers Zero-Days in ATG Systems

September 25, 2024
Reading Time: 2 mins read
in Alerts
BitSight Uncovers Zero-Days in ATG Systems

BitSight Technologies has revealed alarming zero-day vulnerabilities in Automatic Tank Gauge (ATG) systems used across critical infrastructure sectors. An investigation by BitSight’s TRACE researchers identified multiple critical flaws in systems from five different vendors, which could potentially be exploited by cybercriminals to inflict extensive physical damage, create environmental hazards, and cause significant economic losses. The findings underscore the urgent need for enhanced cybersecurity measures, especially as many of these ATG systems remain online and accessible over the Internet, making them prime targets for malicious attacks.

The vulnerabilities disclosed by BitSight have been under scrutiny since March 21, 2024. The company has been working closely with the U.S. Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) and the affected vendors to remediate these critical issues. CISA has published advisories aimed at informing stakeholders about the risks and necessary steps to mitigate them. Despite the proactive approach, many ATG systems continue to be vulnerable, raising serious concerns about their security, especially given the potential consequences of a successful cyberattack.

ATG systems play a crucial role in monitoring and controlling the storage of fuels in facilities such as gas stations, airports, and hospitals. They measure levels, volumes, and temperatures while also managing alarms and emergency shutdowns. However, the inherent vulnerabilities associated with these systems could lead to disastrous scenarios, including unauthorized access to critical controls, disruption of operations, and even catastrophic accidents resulting from tampering with fuel storage parameters. These risks are exacerbated by the fact that many ATG systems were designed without considering the cybersecurity challenges posed by Internet connectivity.

BitSight emphasizes the need for organizations to take immediate action by identifying and securing any ATG systems they manage or use. It is essential to remove these systems from public access and employ protective measures such as firewalls to prevent unauthorized access. Additionally, manufacturers of ATG systems must prioritize cybersecurity in their development processes and throughout the supply chain. As critical infrastructure continues to face increasing cyber threats, addressing these vulnerabilities is paramount to ensure national and economic security.

Reference:
  • BitSight Uncovers Critical Zero-Day Flaws in Automatic Tank Gauge Systems
Tags: Cyber AlertsCyber Alerts 2024Cyber threatsCybersecuritySeptember 2024Zero-Day
ADVERTISEMENT

Related Posts

VexTrio TDS Uses Adtech To Spread Malware

Simple Typo Breaks AI Safety Via TokenBreak

June 13, 2025
VexTrio TDS Uses Adtech To Spread Malware

VexTrio TDS Uses Adtech To Spread Malware

June 13, 2025
VexTrio TDS Uses Adtech To Spread Malware

Old Discord Links Now Lead To Malware

June 13, 2025
SmartAttack Uses Sound To Steal PC Data

SmartAttack Uses Sound To Steal PC Data

June 13, 2025
SmartAttack Uses Sound To Steal PC Data

Coordinated Brute Force Hits Tomcat Manager

June 13, 2025
SmartAttack Uses Sound To Steal PC Data

Pentest Tool TeamFiltration Hits Entra ID

June 12, 2025

Latest Alerts

Old Discord Links Now Lead To Malware

VexTrio TDS Uses Adtech To Spread Malware

Simple Typo Breaks AI Safety Via TokenBreak

Coordinated Brute Force Hits Tomcat Manager

SmartAttack Uses Sound To Steal PC Data

Pentest Tool TeamFiltration Hits Entra ID

Subscribe to our newsletter

    Latest Incidents

    Cyberattack On Brussels Parliament Continues

    Swedish Broadcaster SVT Hit By DDoS

    Major Google Cloud Outage Disrupts Web

    AI Spam Hijacks Official US Vaccine Site

    DragonForce Ransomware Hits Philly Schools

    Erie Insurance Cyberattack Halts Operations

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial