Our takeCISA reports active exploitation of three vulnerabilities in Bransys ELD (Android <11.00.00 and iOS <1.1.54) that could expose telemetry data and firmware. Update to the fixed versions now if you run these ELD devices — same call for any size operation.Cyber Resilience desk
Sources (2)
- cisa_advisories · cisa_advisories
- cisa_ics · cisa_ics
What this means for you — Security leader:CISA reports active exploitation in Bransys ELD (Android <11.00.00 and iOS <1.1.54). Update all deployed units to the fixed versions immediately.
What this means for you — Lean IT orgs:If your fleet uses Bransys ELD devices, update the Android and iOS apps to the newest versions right away — this lets attackers reach your telemetry and firmware otherwise.
What this means for you — MSP:Check every client fleet for Bransys ELD Android <11.00.00 or iOS <1.1.54 and push the available updates; CISA states these versions are under active exploitation.
What this means for you — Researcher:CISA advisory ICSA-26-260-01 details three vulnerabilities in Bransys ELD with confirmed exploitation; affected versions are Android <11.00.00 and iOS <1.1.54.