
TRC analysis shows attackers can crash Siemens Desigo controllers by sending malformed BACnet packets (CVE-2026-59693). The vulnerability causes complete device unresponsiveness, requiring manual resets to restore building automation functionality. Critical infrastructure environments face operational disruption until patched. #CriticalInfrastructure #Vulnerability 🔗 Full breakdown: https://aviatrix.ai/threat-research-center/icsa-26-225-08-cve-2026-59693
Post summary
The post announces a new crash vulnerability (CVE‑2026‑59693) in Siemens Desigo controllers triggered by malformed BACnet packets, highlighting potential operational disruption in critical infrastructure until a patch is applied.


