INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).
ATTENTION: This report is based on previous data. New intelligence sources have been linked and the Executive Summary and Mitigations need to be re-synthesized.
Armatura One Exploit Kit Utilizes Spear-Phishing Tactics
| 2026-10-08 12:00 MEDIUM HIGH EXPLOITED VULNERABILITY VULNERABILITY DISCLOSURE PHISHING & SOCIAL ENGINEERING CRITICAL INFRASTRUCTURE & OT
Executive Summary
AI-generated
A critical vulnerability has been discovered in Armatura One, a widely used software solution for manufacturing and energy sectors. The exploit affects versions 4.7.2 and below of the system, which exposes its OpenWire protocol listener on the network by default, making it vulnerable to attacks. Furthermore, the software stores sensitive database credentials in an install configuration file, encrypting them with AES-128-CBC when protection is enabled, but fails to generate unique passwords for each installation. This has led to a known vulnerability (CVE-2023-46604) and multiple other vulnerabilities including deserialization of untrusted data, use of hard-coded cryptographic keys, and insertion of sensitive information into log files. The affected sectors include manufacturing, energy, and transportation systems in the United States.
Technical Mitigations AI-generated
• Implement a secure deserialization mechanism for the OpenWire marshaller to prevent arbitrary code execution.
• Use a dynamic encryption key and initialization vector, or implement a secure key management system to protect against key recovery by an attacker with access to the installation package.
• Generate unique passwords per installation instead of assigning fixed vendor-defined passwords to database superuser accounts.
Technical Observables Login Required
Indicators of Compromise (IoCs) Protected
Raw threat telemetry, malicious IP addresses, file hashes, and direct VirusTotal correlation are restricted to authenticated users.
re•••••.co
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
CVE-2026-94594CVE-2026-94594
CVE-2026-105278CVE-2026-105278
CVE-2023-46604CVE-2023-46604
CVE-2026-72507CVE-2026-72507
CVE-2026-105281CVE-2026-105281
CVE-2026-101022CVE-2026-101022
CVE-2026-71189CVE-2026-71189
CVE-2026-69662CVE-2026-69662
CVE-2026-72510CVE-2026-72510
CVE-2026-94591CVE-2026-94591
CVE-2026-63713CVE-2026-63713
CVE-2026-70356CVE-2026-70356
CVE-2026-100730CVE-2026-100730
CVE-2026-68954CVE-2026-68954
CVE-2026-71302CVE-2026-71302
CVE-2026-85479CVE-2026-85479
CVE-2026-68068CVE-2026-68068
CVE-2026-94593CVE-2026-94593
CVE-2026-104629CVE-2026-104629
CVE-2026-71379CVE-2026-71379
CVE-2026-94592CVE-2026-94592
Target & Sectors
NORTH_AMERICA
NORTH_AMERICA
manufacturingmanufacturing
Incident Timeline
2026/09/29
Threat actors used the Initial Release Date of Armatura One to publish a Legal Notice and Terms of Use on 2026/09/29.
Click on any entity below to view its context and source!
industry
Legal
Revision History
Initial Release Date:
2026-09-29
Date
Revision
Summary
2026-09-29
1
Initial Publication
Legal Notice and Terms of Use
organisation
Initial Release Date
Revision History
Initial Release Date:
2026-09-29
Date
Revision
Summary
2026-09-29
1
Initial Publication
Legal Notice and Terms of Use
general_metric
01 Initial Publication
Revision History
Initial Release Date:
2026-09-29
Date
Revision
Summary
2026-09-29
1
Initial Publication
Legal Notice and Terms of Use
2026/10/01
Threat actors used a crafted POST request to exploit the deserialization flaw in Armatura One's OpenWire marshaller, allowing unauthenticated network attackers to trigger deserialization of an arbitrary object graph before authentication is checked.
Click on any entity below to view its context and source!
organisation
CVE-2023-46604
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
infrastructure
4.7.2
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
Armatura LLC Armatura One: <4.7.2, Armatura LLC Armatura One (USA): <4.6.1
Product Status:
known_affected
Relevant CWE:
CWE-321 Use of Hard-coded Cryptographic Key
Metrics
Armatura One's database initialization routine assigns a fixed, vendor-defined password to the database superuser account at creation time, rather than generating a unique password per installation.
infrastructure
4.6.1
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
Armatura LLC Armatura One: <4.7.2, Armatura LLC Armatura One (USA): <4.6.1
Product Status:
known_affected
Relevant CWE:
CWE-321 Use of Hard-coded Cryptographic Key
Metrics
Armatura One's database initialization routine assigns a fixed, vendor-defined password to the database superuser account at creation time, rather than generating a unique password per installation.
infrastructure
9.8
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
organisation
Armatura
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
organisation
Armatura One (USA
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
organisation
CVSS
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
Vendor
Equipment
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
Armatura LLC
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
organisation
Deserialization of Untrusted Data
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
organisation
Critical Manufacturing
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
organisation
Transportation Systems
Countries/Areas Deployed
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log File
Background
Critical Infrastructure Sectors:
Communications, Critical Manufacturing, Energy, Transportation Systems
Countries/Areas Deployed:
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
Armatura One's
Armatura LLC Armatura One: <4.7.2, Armatura LLC Armatura One (USA): <4.6.1
Product Status:
known_affected
Relevant CWE:
CWE-321 Use of Hard-coded Cryptographic Key
Metrics
Armatura One's database initialization routine assigns a fixed, vendor-defined password to the database superuser account at creation time, rather than generating a unique password per installation.
organisation
POST
Worldwide
Company Headquarters Location:
United States
Vulnerabilities
Expand All +
The file export endpoint allows any unauthenticated attacker to export arbitrary database tables by sending a crafted POST request.
organisation
CVE-2026-71379
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
CVE-2026-72510
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
CVE-2026-71302
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
CVE-2026-69662
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
infrastructure
7.6.3
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
Toptech Systems
Product Version:
Toptech Systems TMS7: 7.6.3, Toptech Systems TopHAT: 7.6.3
Product Status:
known_affected
Relevant CWE:
CWE-552 Files or Directories Accessible to External Parties
Metrics
The TMS file upload endpoint fails to enforce server-side file type restrictions, allowing an attacker to upload and execute arbitrary PHP files on the web server.
Toptech Systems
Product Version:
Toptech Systems TMS7: 7.6.3, Toptech Systems TopHAT: 7.6.3
Product Status:
known_affected
Relevant CWE:
CWE-434 Unrestricted Upload of File with Dangerous Type
Metrics
The application accepts user-supplied session identifiers and does not regenerate the session ID after authentication.
Toptech Systems
Product Version:
Toptech Systems TMS7: 7.6.3, Toptech Systems TopHAT: 7.6.3
Product Status:
known_affected
Relevant CWE:
CWE-384 Session Fixation
Metrics
Acknowledgments
Sachin Shetty and Roy Duisters of Shell CyberDefence reported these vulnerabilities to Toptech and CISA.
organisation
CVE-2026
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
TopHAT 7.6.3
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
Toptech Systems
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
TopHAT
Files or Directories Accessible
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
External Parties
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
Unrestricted Upload of File
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
an SQL Command
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
Background
Critical Infrastructure Sectors
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
Chemical
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
CVSS
Vendor
Equipment
Vulnerabilities
v3 10
Toptech Systems
Toptech TMS7 and TopHAT
Files or Directories Accessible to External Parties, Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), Session Fixation, Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection'), Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Background
Critical Infrastructure Sectors:
Energy, Chemical, Transportation Systems
Countries/Areas Deployed:
organisation
Initial Release Date
Revision History
Initial Release Date:
2026-10-01
Date
Revision
Summary
2026-10-01
1
Initial Publication
Legal Notice and Terms of Use
organisation
this Privacy & Use
Legal Notice and Terms of Use
This product is provided subject to this Notification (
) and this Privacy & Use policy (
).
infrastructure
146 TIP-12
Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov in the technical information paper, ICS-TIP-12-146-01B--Targeted Cyber Intrusion Detection and Mitigation Strategies.
Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov/ics in the technical information paper, ICS-TIP-12-146-01B--Targeted Cyber Intrusion Detection and Mitigation Strategies.
organisation
Affected Products
organisation
Virtual Private Networks
When remote access is required, use more secure methods, such as Virtual Private Networks (VPNs).
organisation
Toptech Systems
Product Version
Toptech Systems
Product Version:
Toptech Systems TMS7: 7.6.3, Toptech Systems TopHAT: 7.6.3
Product Status:
known_affected
Relevant CWE:
CWE-552 Files or Directories Accessible to External Parties
Metrics
The TMS file upload endpoint fails to enforce server-side file type restrictions, allowing an attacker to upload and execute arbitrary PHP files on the web server.
organisation
Directories Accessible
Toptech Systems
Product Version:
Toptech Systems TMS7: 7.6.3, Toptech Systems TopHAT: 7.6.3
Product Status:
known_affected
Relevant CWE:
CWE-552 Files or Directories Accessible to External Parties
Metrics
The TMS file upload endpoint fails to enforce server-side file type restrictions, allowing an attacker to upload and execute arbitrary PHP files on the web server.
organisation
PHP
Toptech Systems
Product Version:
Toptech Systems TMS7: 7.6.3, Toptech Systems TopHAT: 7.6.3
Product Status:
known_affected
Relevant CWE:
CWE-552 Files or Directories Accessible to External Parties
Metrics
The TMS file upload endpoint fails to enforce server-side file type restrictions, allowing an attacker to upload and execute arbitrary PHP files on the web server.
organisation
Toptech
Toptech TMS7 and TopHAT.
organisation
TopHAT
Toptech TMS7 and TopHAT.
Tactical Metrics
Metrics
infrastructure
2.9.477
Software Version
Click for context!
View CSAF
Summary
The following versions of Grid Protection Alliance openPDC and openHistorian are affected:
openPDC <2.9.477, <2.9.482 (CVE-2026-104629, CVE-2026-100730, CVE-2026-105281, CVE-2026-85479, CVE-2026-101022)
openPDC (Docker image) <
<2.9.477
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance has added additional verification and integrity checks of adapters in openPDC version 2.9.477 and later and openHistorian version 2.8.580 and later.
Grid Protection Alliance openHistorian <2.8.580
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance has added additional verification and integrity checks of adapters in openPDC version 2.9.477 and later and openHistorian version 2.8.580 and later.
Metrics
infrastructure
2.9.482
Software Version
View CSAF
Summary
The following versions of Grid Protection Alliance openPDC and openHistorian are affected:
openPDC <2.9.477, <2.9.482 (CVE-2026-104629, CVE-2026-100730, CVE-2026-105281, CVE-2026-85479, CVE-2026-101022)
openPDC (Docker image) <
3 Affected Products
Grid Protection Alliance openPDC <2.9.482
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance has added additional validation into serialization logic in openPDC version 2.9.482 and later and openHistorian version 2.8.585 and later.
Grid Protection Alliance openHistorian <2.8.585
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance has added additional validation into serialization logic in openPDC version 2.9.482 and later and openHistorian version 2.8.585 and later.
6 Affected Products
Grid Protection Alliance openPDC <2.9.482
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance updated the default configuration to bind this interface to the local loopback address only.
Grid Protection Alliance openPDC <2.9.482
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance updated the default configuration to bind this interface to the local loopback address only.
9 Affected Products
Grid Protection Alliance openPDC <2.9.482
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance updated the default configuration to bind this interface to the local loopback address only.
Metrics
infrastructure
Windows
Affected Product
On systems using Windows Authentication, an attacker must already be authenticated to reach this function; on systems without Windows Authentication, this is reachable by an unauthenticated network attacker.
Systems using Windows Authentication are additionally protected, as they require the attacker to already be authenticated to reach this function.
Metrics
infrastructure
2.8.585
Software Version
3 Affected Products
Grid Protection Alliance openPDC <2.9.482
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance has added additional validation into serialization logic in openPDC version 2.9.482 and later and openHistorian version 2.8.585 and later.
Grid Protection Alliance openHistorian <2.8.585
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance has added additional validation into serialization logic in openPDC version 2.9.482 and later and openHistorian version 2.8.585 and later.
Grid Protection Alliance openHistorian <2.8.585
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance updated the default configuration to bind this interface to the local loopback address only.
Metrics
infrastructure
2.8.580
Software Version
<2.9.477
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance has added additional verification and integrity checks of adapters in openPDC version 2.9.477 and later and openHistorian version 2.8.580 and later.
Grid Protection Alliance openHistorian <2.8.580
Product Status: known_affected
Remediations
Vendor fix
Grid Protection Alliance has added additional verification and integrity checks of adapters in openPDC version 2.9.477 and later and openHistorian version 2.8.580 and later.
Metrics
infrastructure
146
Tip-12
Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov/ics in the technical information paper, ICS-TIP-12-146-01B--Targeted Cyber Intrusion Detection and Mitigation Strategies.
Additional mitigation guidance and recommended practices are publicly available on the ICS webpage at cisa.gov in the technical information paper, ICS-TIP-12-146-01B--Targeted Cyber Intrusion Detection and Mitigation Strategies.
Metrics
infrastructure
4.7.2
Software Version
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One…
Armatura LLC Armatura One: <4.7.2, Armatura LLC Armatura One (USA): <4.6.1
Product Status:
known_affected
Relevant CWE:
CWE-321 Use of Hard-coded Cryptographic Key
Metrics
Armatura One's database initialization routine assigns a fixed, vendor-defined password to the database superuser account at creation time, rather than generating a unique password per installation.
Metrics
infrastructure
4.6.1
Software Version
The following versions of Armatura LLC Armatura One are affected:
Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One…
Armatura LLC Armatura One: <4.7.2, Armatura LLC Armatura One (USA): <4.6.1
Product Status:
known_affected
Relevant CWE:
CWE-321 Use of Hard-coded Cryptographic Key
Metrics
Armatura One's database initialization routine assigns a fixed, vendor-defined password to the database superuser account at creation time, rather than generating a unique password per installation.
Metrics
infrastructure
9.8
Software Version
…593, CVE-2026-94594)
Armatura One (USA) <4.6.1 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593, CVE-2026-94594)
CVSS
Vendor
Equipment
Vulnerabilities
v3 9.8
Armatura LLC
Armatura LLC Armatura One
Deserialization of Untrusted Data, Use of Hard-coded Cryptographic Key, Use of Hard-coded Credentials, Insertion of Sensitive Information into Log Fil…
Metrics
infrastructure
7.6.3
Software Version
The following versions of Toptech TMS7 and TopHAT are affected:
TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
TopHAT 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662…
Toptech Systems
Product Version:
Toptech Systems TMS7: 7.6.3, Toptech Systems TopHAT: 7.6.3
Product Status:
known_affected
Relevant CWE:
CWE-552 Files or Directories Accessible to External Parties
Metrics
The TMS file upload endpoint fails to enforce server-side file type restrictions, allowing an attacker to upload and execute arbitrary PHP files on the web server.
Toptech Systems
Product Version:
Toptech Systems TMS7: 7.6.3, Toptech Systems TopHAT: 7.6.3
Product Status:
known_affected
Relevant CWE:
CWE-434 Unrestricted Upload of File with Dangerous Type
Metrics
The application accepts user-supplied session identifiers and does not regenerate the session ID after authentication.
Toptech Systems
Product Version:
Toptech Systems TMS7: 7.6.3, Toptech Systems TopHAT: 7.6.3
Product Status:
known_affected
Relevant CWE:
CWE-384 Session Fixation
Metrics
Acknowledgments
Sachin Shetty and Roy Duisters of Shell CyberDefence reported these vulnerabilities to Toptech and CISA.
Intelligence Sources
CISA
2026-09-29
CISA Advisories
2026-10-01
Armatura LLC Armatura One
CISA Advisories
CISA
2026-10-01
CISA
2026-10-08
CISA Advisories
2026-10-08
Grid Protection Alliance openPDC and openHistorian
CISA Advisories
Unpublish from Social Media?
Are you sure you want to delete this podcast video from all synchronized social networks (YouTube, Facebook, Threads)?
Important:
Due to Meta API restrictions, Instagram Reels cannot be deleted automatically via API by third-party apps.
View Profile to Delete Manually
View Profile to Delete Manually
Tactical Intelligence
Report Intelligence Issue
Podcast Options
Generate
Incident Version History
CURRENT VERSION
Last Updated: 2026-10-09T05:45
Comprehensive Tactical Telemetry
Highly Correlated Entities
50x
organisation
Identified Entity
CVSS
entity
21x
vulnerability
Exploited CVE
CVE-2026-104629
cve
8x
infrastructure
Software Version
2.9.477
version
8x
attribution
Attributing Entity
CISA
authority
5x
timeline
Temporal Reference
2.9.477
date
5x
tactic
MITRE ATT&CK Technique
T1588.006 - Vulnerabilities
technique
5x
industry
Targeted Sector
Manufacturing
sector
5x
tactic
Cyber Operation Type
Social Engineering
tactic
5x
general metric
Products Protection Alliance
3
products protection alliance
2x
general metric
Initial Publication
8
initial publication
Contextual Telemetry
Context Block
6 METRICS
target region
Target Country
United States
country
general metric
Protection Alliance
10
protection alliance
general metric
Openpdc Vulnerabilities Deserialization
5
openpdc vulnerabilities deserialization
infrastructure
Affected Product
Windows
software
general metric
Summary Publication Legal Notice
10
summary publication legal notice
infrastructure
Tip-12
146
tip-12
Click on any entity below to view its context in the main text!
Selective Unpublish
Selecciona las redes de las que quieres eliminar esta publicación. El sistema intentará borrar el post real de la API y limpiará la base de datos para que puedas volver a lanzarlo.
By navigating this website, you accept the use of strictly necessary technical cookies for session security and basic platform functionality. We do not use tracking or advertising cookies.
Read our Privacy Policy.