List: wasc-whid@lists.webappsec.org
From: WASC Web Hacking Incidents Database
WHID 2011-74: Wind Power Company Hacked
Mon, Apr 25, 2011 1:20 PM
"They gave to it public IP,
so it was easy to hack into it through the Web," he said. "They used default
passwords, which I got from one of administrators. Then I obtained level 15
priv. (superuser), and understood the topology of SCADA networks. Then it
was easily to detect SCADA and turn it off."