From Unauthenticated API to Grid Risk: A Hybrid Inverter Vulnerability Explained
- Auth Bypass.
- Commands over CAN Bus to internal components.
- Protection mechanisms disabled and configuration changes.
- Impact: damage connected devices, permanent DoS to the inverter itself, fines, and even risk to the lives of grid technicians.
- proprietary communication protocols and file formats.
- RX architecture reverse engineering.
[link] [comments]