SSV Software SystemsUnderestimated digital risk
Recent cyber attacks highlight the increased risk of sabotage in industrial applications. Two attacks are examined in more detail.
<p>Image 1: The Verifone H5000 payment terminal was tested by the BSI according to Common Criteria (CC). CC certification is actually intended to prevent the case that has now occurred. A gap analysis would be helpful to find out why the causes of the H5000 failure could not be identified during the BSI verification and validation work and whether the depth of testing according to EAL POI is sufficient.</p> © BSI

