
TRC analysis shows attackers exploiting CVE-2026-64893 in Johnson Controls EasyIO Neo controllers to intercept credentials via man-in-the-middle attacks on cleartext HTTP. Compromised building automation credentials enable lateral movement through unencrypted network segments. #CloudSecurity 🔗 Full breakdown: https://aviatrix.ai/threat-research-center/johnson-controls-easyio-neo-cve-2026-64893-cleartext-transmission
