Our takeSiemens published fixes and mitigations for the Copy Fail vulnerability affecting multiple SIPLUS and SIMATIC products. Update to the latest versions or apply the listed workarounds now if you run these systems.Cyber Resilience desk
Sources (1)
- cisa_ics · cisa_ics
What this means for you — Security leader:Update affected Siemens SIPLUS and SIMATIC products to the newest versions; for products without fixes yet, apply the specific mitigations Siemens lists in the advisory.
What this means for you — Lean IT orgs:Check if you run any Siemens SIPLUS or SIMATIC equipment and update it to the latest version as soon as you can; if a fix is not ready, follow the exact workarounds Siemens published.
What this means for you — MSP:Review client environments for Siemens SIPLUS and SIMATIC deployments, push the newly released versions immediately, and implement Siemens' listed countermeasures on systems awaiting patches.
What this means for you — Researcher:Review the full Siemens advisory and CSAF for technical details on the Copy Fail vulnerability and the affected product versions.