
Attackers exploited heap-based buffer overflow (CVE-2026-32956) in Silex serial-to-IP converters to gain device access, then used hard-coded keys for firmware updates and lateral network movement. Runtime segmentation helps contain post-compromise pivoting in OT environments. #CloudSecurity 🔗 Full TRC analysis: https://aviatrix.ai/threat-research-center/serial-ip-devices-vulnerabilities-2026
Post summary
Attackers are actively exploiting CVE‑2026‑32956, a heap‑based buffer overflow in Silex serial‑to‑IP converters, to gain device access and perform lateral movement.



