Latest attacks overview

Think your CVE or research report should be on here? Send me a message via Linkedin.

DateAffected VendorLink to vulnerability/write-upCredits
10 September 2025SolaXLinkedin-post leading to full compromiseHumza Ahmad, ENCS/DIVD
9 august 2025Multiple, not disclosed yet.Youtube video valid credentials available online for high priv accounts with enough access to down a nationWillem Westerhof, Ralph Moonen, Yannick Fournel, Jasper Korten, Jasper Nota, Yurii Bilyk from Bureau veritas cybersecurity
9 July 2025GrowattWrite-up of vulnerability leading to full compromiseHumza Ahmad, Frank Breedijk, DIVD
11 June 2025Sungrowwrite-up of vulnerability leading to full compromiseHarm van den Brink, Frank Breedijk of ENCS/DIVD
27 march 2025SMA, Growatt, SungrowDetailed research report, multiple findings leading to full compromiseStanislav Dashevskyi, Francesco La Spina, Daniel dos Santos from Forescout
12 Jan 2025Solarman, Sunsynk, Growat, Solax, Ingecon, Foxessyoutube video Full compromise of cloud platforms + backdoorsVangelis Stykas, from Atropos
12 August 2024EnphaseWrite-up of vulnerability unauthenticated device takeoverWietse Boonstra and Hidde Smit from DIVD
7 August 2024SolarmanResearch report Full account compromiseBitdefender
9 August 2022Solarman, Ginlong Solis, Omnik, Write-up of credentials online with cloud admin privilegesJelle Ursem from DIVD

How do I estimate the impact?

Most of the vulnerabilities Outlined on these page are considered “full compromise” vulnerabilities, where effectively every system of the relevant supplier was vulnerable to the attack.

In order to calculate the estimated impact in GW of this vulnerability, It’s important to take the following into account:

  • Not every system is connected to the internet/cloud or additional protections may be in place that stop the attack.
  • Not all systems provide their peak power at the same time, due to different orientations.
  • Weather circumstances will differ across a large area making large scale attacks have a different impact in different areas.

In order to make a crude estimate of how much power was impacted by a vulnerability, simply remove 50% of the manufacturers market share data, specific to the grid you want to make the estimation for, to account for the above list of variables.

Using the above method by combining the 2018-2023 marketshare information with known vulnerabilities, it can be concluded that at the start of 2025 more than 60GW worth of PV installations in Europe were vulnerable to full compromise attacks over the internet.

Other recommend reading research: