SaiFlow's Blog

Featured

Latest insights and industry updates

image of a traffic control center (for a mobility and transportation)

Invisible and Everywhere: Why Smart Meters Are the Next Frontier of Energy Cyberattacks

With over 1.1 billion smart meters deployed worldwide and more than 2 billion expected by 2030, these increasingly connected grid assets are becoming a growing cybersecurity concern, requiring energy-aware protection against emerging threats.
image of a traffic control center (for a mobility and transportation)

RCE by Design: When Firmware Updates Become the Attack

SaiFlow's research uncovered an undocumented firmware update mechanism in XCharge C6 chargers that relies solely on attacker-controlled MD5 validation and executes embedded scripts as root, effectively enabling remote code execution through malicious firmware delivered via compromised servers, man-in-the-middle attacks, or CSMS compromise.
image of a traffic control center (for a mobility and transportation)

The Hidden CCS2 Attack Surface on EV Chargers

The EV charging industry has well-established security standards. OCPP provides clear guidelines for securing the communication channel between EV Chargers and the Charging Station Management System. While the industry has focused on securing the backend communication, the attack surface exposed through the CCS2 charging plug remains largely untested.
image of a traffic control center (for a mobility and transportation)

Plug and Pwn: The Sound of Compromised EV Charger

A malicious EV connecting to the CCS2 charging plug exploits SLAC protocol to compromise XCharge C6 and manipulate its power and cooling system controls
image of a traffic control center (for a mobility and transportation)

One USB Away from Root: Exploiting an Energy IoT Data Logger

Code execution as root via USB storage device in FIMER's VSN700 Data Logger, as well as discussing the general practice in the industry.
image of a traffic control center (for a mobility and transportation)

Libmodbus Message Smuggling Vulnerability

A message smuggling vulnerability found on the Modbus protocol open-source library - Libmodbus