生成要約機械翻訳
PUB-820014151E米政府機関、AI生成のエクスプロイトスクリプトを用いてシーメンス製PLCを標的とする脅威アクターについて警告
NSA、CISA、FBI、DOE、EPAは共同サイバーセキュリティアドバイザリを発行し、重要インフラ部門全体のシーメンスS7シリーズのプログラマブルロジックコントローラ(PLC)を標的とする活発な脅威について警告した。脅威アクターは、露出したPLCを標的とするため、正規の監視ツールに偽装しsnap7ライブラリと統合されたAI生成のPythonエクスプロイトスクリプトを展開することで、偵察および能力開発を行っている。
重大度高75/100
証拠の確信度84%1 独立した情報源
証拠状態シグナル公開済み
何が起きたか
NSA、CISA、FBI、DOE、EPAは共同サイバーセキュリティアドバイザリを発行し、重要インフラ部門全体のシーメンスS7シリーズのプログラマブルロジックコントローラ(PLC)を標的とする活発な脅威について警告した。脅威アクターは、露出したPLCを標的とするため、正規の監視ツールに偽装しsnap7ライブラリと統合されたAI生成のPythonエクスプロイトスクリプトを展開することで、偵察および能力開発を行っている。
Active targeting of operational technology in multiple critical infrastructure sectors utilizing AI-assisted exploit scripting that could lead to industrial disruption and physical safety incidents.
証拠の抜粋
- Threat actors are using AI assistance to generate exploitation scripts disguised as legitimate monitoring tools targeting Siemens S7 Series PLCs.
- Targeted sectors in the US include Critical Manufacturing, Energy, Water and Wastewater, Chemical, Food and Agriculture, and Commercial Facilities.
- Threat actors combine AI-assisted scripting with open-source automation libraries such as snap7.dll/python-snap7 to conduct read/write operations on PLCs via the S7comm protocol.
- The advisory was jointly released by CISA, NSA, FBI, DOE, and EPA.
重大度の評価軸
影響78
規模70
制御喪失65
悪用可能性85
緊急性88
不可逆性60
情報源の引用
- Defending Against an Active Threat to Siemens S7 Series PLCsUS Cybersecurity and Infrastructure Security Agency · 2026-08-19 · 一次資料