
The S4 conference is the leading conference on the future of OT and ICS cybersecurity. The best way to understand how S4 is different is to attend! Help us ‘Create the Future’ of OT/IoT Security.
Keep reading to see how you can interact with our team on-site and stay tuned for more updates. We can’t wait to see you back at South Beach for what could be “The Last One”!

Speaker
Diego Giubertoni - Senior Security Researcher
SoftPLCs are PLC code that runs on a traditional OS. A variety of vendors offer these such as Beckhoff, Phoenix Contact, Wago, and Codesys.
Embedding a full-fledged operating system within a programmable logic controller, vendors inadvertently inherit a wide range of traditional OS-level vulnerabilities. This growing complexity introduces serious security concerns, particularly when deployed in critical infrastructure contexts where reliability and safety are paramount.
Diego will reveal a security analysis of several well-known softPLC platforms focusing on the enforcement and robustness of their built-in security models. Common classes of vulnerabilities will be presented as well as some vendor/model specific vulnerabilities. The presentation highlights the inherent risks that should be considered when leveraging general-purpose operating systems in softPLC design.