CISA ICS Advisory: ST Engineering iDirect iQ-Series Terminals (Update A)
Here’s what this advisory affects, and what to do about it.
Successful exploitation of these vulnerabilities could allow an attacker to gain unauthorized access to device information or cause a denial-of-service condition. The following versions of ST Engineering iDirect iQ-Series Terminals (Update A) are affected: Evolution iQ‑Series terminals 3315‑Series terminals 9‑Series terminals
CISA has published an updated industrial control systems advisory warning of vulnerabilities in ST Engineering iDirect iQ-Series satellite communication terminals.
Unauthorized access and denial-of-service
The advisory states that successful exploitation of the vulnerabilities could allow an attacker to gain unauthorized access to device information or cause a denial-of-service condition. The advisory does not say whether the flaws have been exploited in the wild.
Watch this company
Get alerted the next time this company files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about this company’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
- Every indexed leak tied to your address — all of them, named and dated
- What this kind of incident typically exposes
- A ten-minute lock list written for this kind of organisation
Affected products
The following ST Engineering iDirect products are affected:
- Evolution iQ-Series terminals
- 3315-Series terminals
- 9-Series terminals
No specific version numbers are listed in the advisory beyond the product lines themselves.
What to do
- Determine whether any Evolution iQ-Series, 3315-Series, or 9-Series terminals are in use in your environment.
- Apply the vendor-provided updates or mitigations published for these terminals.
- Follow all recommendations listed in the CISA advisory for restricting network exposure of the affected devices.
- Monitor ST Engineering iDirect’s official channels for any further updates to this advisory.
- Segment or restrict external access to iQ-Series terminals where immediate patching is not feasible.
Operators of satellite-based industrial control systems and critical infrastructure should treat this class of terminal vulnerabilities as a priority for review.
What the free scan actually returns
Found on people-search siteswe remove these
These listings are live, public, and legal to remove — and removing them is what we do.
Found in breach recordsverifiedreported — unverified
Each record is labeled: confirmed breach data, or an attacker’s claim no one has verified.
Leaked data cannot be deleted from the internet — anyone claiming otherwise is lying. Broker listings can be removed. We do the second, and show you exactly what to fix from the first.
Report details & sourcing
Related breaches
CISA ICS Advisory: AVEVA Pipeline Integrity Monitor
Successful exploitation of these vulnerabilities could allow an attacker to disclose information, br…
CISA ICS Advisory: Orthanc DICOM Server
Successful exploitation of this vulnerability could allow an authenticated remote attacker to write …
CISA ICS Advisory: NextGen Healthcare Mirth Connect
Successful exploitation of these vulnerabilities could allow an attacker to exfiltrate date or cause…