BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//bsides-ot-uk-2025//talk//8XA8QV
BEGIN:VTIMEZONE
TZID:GMT
BEGIN:STANDARD
DTSTART:20001029T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10
TZNAME:GMT
TZOFFSETFROM:+0100
TZOFFSETTO:+0000
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000326T020000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=3
TZNAME:BST
TZOFFSETFROM:+0000
TZOFFSETTO:+0100
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-bsides-ot-uk-2025-8XA8QV@pretalx.com
DTSTART;TZID=GMT:20260410T120000
DTEND;TZID=GMT:20260410T124000
DESCRIPTION:The talk will cover the basics of windfarms and their operation
 s\, I’ll briefly discuss prior research in this area\, noting that those
  findings are still valid today. Then the core of this talk will focus on 
 identified security threats and their mitigations based on real life asses
 sments. The impact these threats can have both in terms of windfarm operat
 ion and the physical damage that can be caused. I will show how physical a
 nd remote access to the windfarm can be gained\, and by investigating the 
 vulnerabilities found\, I will show that there is an over-reliance on secu
 rity boxes and buzzword solutions that has left general\, basic\, security
  hygiene lacking. So much so that that in some cases\, not only have syste
 ms not been patched\, but they were installed insecurely in the first plac
 e. I will then discuss the recent 2019 UK outage and the part played by wi
 ndfarms in that\, from the initial outage to their impact on restoration a
 s a result of how micro generation is modelled within control systems.\n\n
 There will be two key takeaways from this talk. Firstly\, I will be bustin
 g the myth that ‘cutting off the supply’ is the most interesting attac
 k that can be performed. It is the most likely\, and one of the simplest a
 ttacks\, but it is not the most interesting. Secondly\, I will cover a poi
 nt often glossed over in other talks. When an attacker ‘takes control’
  it is often simply left at that\, as if taking control was the ‘win con
 dition’. This talk will cover some of the more interesting cyber physica
 l attacks that can be performed on a wind farm and look at some of the way
 s that actual physical damage could be caused.
DTSTAMP:20260501T121855Z
LOCATION:Track 1
SUMMARY:Acme Windpharm - Colin Cassidy
URL:https://pretalx.com/bsides-ot-uk-2025/talk/8XA8QV/
END:VEVENT
END:VCALENDAR
