Showing 6 of 47 advisories
AZT-2026-001
Critical Active

SCADA Protocol Injection Vulnerability in Legacy Grid Controllers

📅 Published: 2026-03-12 🔄 Updated: 2026-03-14 🏷️ CVE-2026-1842

A critical command injection flaw has been identified in Modbus/TCP implementations across third-party SCADA controllers deployed at 14 regional substations. Exploitation could allow unauthorized manipulation of voltage regulation and breaker sequencing.

Affected Systems:Zenth Energy Control Network (ZECN) Nodes 4-19
Threat Actor:Attributed to state-sponsored APT group "BlackMoor"
Mitigation:
  • Apply emergency firmware patch v3.8.1 to all edge controllers
  • Enable network segmentation rules AZT-NET-442
  • Disable external Modbus polling on non-essential nodes
  • Monitor for anomalous transaction IDs in SIEM
AZT-2026-003
High Monitoring

Supply Chain Compromise in Zenth Cloud SDK v2.1

📅 Published: 2026-03-10 🔄 Updated: 2026-03-13 🏷️ GHSA-2026-008

Malicious telemetry endpoints were embedded in a recent release of the Zenth Digital Systems Cloud SDK. Affected binaries exfiltrate environment variables and session tokens to C2 infrastructure hosted on compromised CDN ranges.

Affected Systems:Enterprise clients using SDK v2.1.0 - v2.1.4
Impact Scope:Potential credential harvesting, lateral movement in multi-tenant environments
Mitigation:
  • Downgrade immediately to v2.0.9 or upgrade to v2.1.5
  • Rotate all environment secrets and API keys
  • Block outbound traffic to IP ranges 185.220.x.x and 45.77.x.x
  • Review CloudWatch logs for anomalous data transfer spikes
AZT-2026-005
Medium Resolved

Phishing Campaign Targeting Zenth Health Sciences Payroll Systems

📅 Published: 2026-03-08 🔄 Updated: 2026-03-09 🏷️ IR-2026-005

A coordinated spear-phishing campaign utilizing cloned internal HR portals successfully compromised 12 employee credentials. Attackers attempted to redirect payroll direct deposit accounts. Incident contained and funds secured.

Affected Systems:Workday Integration, Microsoft 365 Tenant
Impact Scope:12 compromised accounts, 0 financial loss
Mitigation:
  • Forced password reset and MFA re-enrollment for affected users
  • Deployed enhanced email filtering rules (AZT-EMA-99)
  • Conducted security awareness briefing for HR & Finance teams
  • Submitted IOCs to sector ISAC and national CERT
AZT-2026-007
High Active

Telemetry Firmware Buffer Overflow in Aevum Orbital Nodes

📅 Published: 2026-03-06 🔄 Updated: 2026-03-14 🏷️ CVE-2026-2109

A stack-based buffer overflow in the downlink telemetry parser (v4.2) allows remote code execution via malformed telemetry packets. Exploitation could lead to command injection or attitude control disruption on 3 LEO satellites.

Affected Systems:Orbital Constellation Block-2 (Satellites 4, 7, 12)
Impact Scope:Potential loss of telemetry integrity, command hijacking risk
Mitigation:
  • Activate safe-mode firmware fallback via ground control
  • Apply OTA patch AZT-AERO-2026-007B during next orbital window
  • Implement packet validation gateways at all tracking stations
  • Temporarily restrict non-essential command uplinks
AZT-2026-002
Low Resolved

Outdated TLS Certificates on Legacy Wealth Management Portals

📅 Published: 2026-02-28 🔄 Updated: 2026-03-02 🏷️ AZT-FIN-2026-002

Several legacy client-facing portals were operating with SHA-1 signed certificates nearing expiration. While no active interception was detected, compliance risk was elevated. Certificates renewed and deprecated protocols disabled.

Affected Systems:Aevum Capital Group Legacy Web Tier (3 endpoints)
Impact Scope:Compliance gap, potential browser warnings
Mitigation:
  • Deployed RSA-2048/ECC certificates via automated PKI pipeline
  • Disabled TLS 1.0/1.1 across all client-facing gateways
  • Updated WAF rules to reject weak cipher suites
  • Scheduled automated cert rotation audit for Q2
AZT-2026-009
Critical Active

Zero-Day in Zenth AI Model Serving Framework (Z-ML v4)

📅 Published: 2026-03-14 🔄 Updated: 2026-03-14 🏷️ CVE-2026-2201

An authenticated remote code execution vulnerability exists in the model inference pipeline. Crafted input tensors can trigger heap corruption in the CUDA acceleration layer. Active exploitation detected in production environments.

Affected Systems:All deployments using Z-ML Runtime v4.0.1 - v4.0.3
Impact Scope:Full host compromise, data exfiltration, model poisoning risk
Mitigation:
  • Immediately upgrade to v4.0.4 (hotfix available)
  • Enable input sanitization gateway (AZT-SEC-MLG)
  • Isolate inference clusters from internal networks
  • Rollback to v3.8.2 if hotfix cannot be applied within 48h