RFI
[Top] [All Lists]

Re: [RFI] Rogue backdoors found in solar inverters made in China

To: rfi@contesting.com
Subject: Re: [RFI] Rogue backdoors found in solar inverters made in China
From: Steve Dyer W1SRD via RFI <rfi@contesting.com>
Reply-to: Steve Dyer W1SRD <w1srd@yahoo.com>
Date: Fri, 16 May 2025 09:54:03 -0700
List-post: <mailto:rfi@contesting.com>
Jim,
Don't be so logical and analytical!
Blaming the Chinese bogeyman is so very di regueur with the in crowd.
As you point out, software security flaws in ABB et al industrial control gear make it plenty easy for hackers if they can get access to the device. No need for mysterious "back door" hysteria.
Steve
W1SRD


On 5/16/2025 5:15 AM, AA5CT via RFI wrote:
  Without further clarification, this could range from anything the 
'researchers' noted from a JTAG (Boundary Scan) 'port' to an RS-232 / serial 
data port that's active during boot-up of the uProcessor ... who knows what 
triggered their 'call' on an undocumented comms feature.

The Enphase series of panel mounted inverters have built-in wireless comms 
capability - why wouldn't the competition have something similar?  Without 
specificity I'm having trouble accepting this on face value. And I'm saying this as 
an engineer who has done product design/development with such comms capability 15 
yrs back now.
I just reviewed a video the other day where an ABB made industrial VFD used in 
the field (application was irrigation out in a literal field on the plains) 
used a wireless connection to a smartphone to convey realtime operational 
parameters useful during troubleshooting w/o having to be glued to the local 
control and interface panel (which had limited display real estate for display 
of data). Don't know if the 'air interface' was ZigBee, Bluetooth, WiFi or 4G 
LTE data, but the interface to the smartphone was wireless ...

de Jim AA5CT



     On Thursday, May 15, 2025, 4:38:10 PM GMT-5, Rob Atkinson 
<ranchorobbo@gmail.com> wrote:
Reuters reports that solar power inverters made in China have in some
cases, contained undocumented devices for communications.  Do you
have, or are installing any solar power panels?  Do a check for
anything that doesn't seem to belong amongst the circuitry.

https://www.reuters.com/sustainability/climate-energy/ghost-machine-rogue-communication-devices-found-chinese-inverters-2025-05-14/

This isn't without precedent.  Dock cranes many of which are made in
China have also been found to contain similar undocumented
communication/control devices.

73

Rob
K5UJ

_______________________________________________
RFI mailing list
RFI@contesting.com
http://lists.contesting.com/mailman/listinfo/rfi
_______________________________________________
RFI mailing list
RFI@contesting.com
http://lists.contesting.com/mailman/listinfo/rfi


_______________________________________________
RFI mailing list
RFI@contesting.com
http://lists.contesting.com/mailman/listinfo/rfi
<Prev in Thread] Current Thread [Next in Thread>