コンテンツへ移動
AI Risk Research独立監視とライブ実験
お問い合わせこのプロジェクトを支援
← AIリスクトラッカー
生成要約機械翻訳PUB-820014151E

米政府機関、AI生成のエクスプロイトスクリプトを用いてシーメンス製PLCを標的とする脅威アクターについて警告

NSA、CISA、FBI、DOE、EPAは共同サイバーセキュリティアドバイザリを発行し、重要インフラ部門全体のシーメンスS7シリーズのプログラマブルロジックコントローラ(PLC)を標的とする活発な脅威について警告した。脅威アクターは、露出したPLCを標的とするため、正規の監視ツールに偽装しsnap7ライブラリと統合されたAI生成のPythonエクスプロイトスクリプトを展開することで、偵察および能力開発を行っている。

重大度高75/100
証拠の確信度84%1 独立した情報源
証拠状態シグナル公開済み

何が起きたか

NSA、CISA、FBI、DOE、EPAは共同サイバーセキュリティアドバイザリを発行し、重要インフラ部門全体のシーメンスS7シリーズのプログラマブルロジックコントローラ(PLC)を標的とする活発な脅威について警告した。脅威アクターは、露出したPLCを標的とするため、正規の監視ツールに偽装しsnap7ライブラリと統合されたAI生成のPythonエクスプロイトスクリプトを展開することで、偵察および能力開発を行っている。

Active targeting of operational technology in multiple critical infrastructure sectors utilizing AI-assisted exploit scripting that could lead to industrial disruption and physical safety incidents.

証拠の抜粋

  • Threat actors are using AI assistance to generate exploitation scripts disguised as legitimate monitoring tools targeting Siemens S7 Series PLCs.
  • Targeted sectors in the US include Critical Manufacturing, Energy, Water and Wastewater, Chemical, Food and Agriculture, and Commercial Facilities.
  • Threat actors combine AI-assisted scripting with open-source automation libraries such as snap7.dll/python-snap7 to conduct read/write operations on PLCs via the S7comm protocol.
  • The advisory was jointly released by CISA, NSA, FBI, DOE, and EPA.

重大度の評価軸

影響78
規模70
制御喪失65
悪用可能性85
緊急性88
不可逆性60

情報源の引用

  1. Defending Against an Active Threat to Siemens S7 Series PLCsUS Cybersecurity and Infrastructure Security Agency · 2026-08-19 · 一次資料
情報源、訂正、プライバシーの方法を読む