Company Details
iconics
237
8,181
5112
iconics.com
0
ICO_1171974
In-progress
ICONICS Company CyberSecurity Posture
iconics.comFounded in 1986, ICONICS is an award-winning global software provider offering real-time visualization, HMI/SCADA, energy management, fault detection, manufacturing intelligence, IoT, and a suite of analytics solutions for building automation and operational excellence. ICONICS solutions are installed in 70% of Global 500 companies around the world, helping customers to be more profitable, agile, efficient, and sustainable. ICONICS promotes an international culture of innovation, creativity and excellence in product design, development, technical support, training, sales and consulting services for end users, system integrators, OEMs and channel partners. ICONICS has over 375,000 applications installed in multiple industries worldwide. #AutomatingtheWorld #MaketheInvisibleVisible #AutomationSoftware #Technology #SmartSolutions
Company Details
iconics
237
8,181
5112
iconics.com
0
ICO_1171974
In-progress
Between 750 and 799
ICONICS Global Score (TPRM)XXXX
Description: ICONICS Suite SCADA servers, used across various critical sectors, suffered from vulnerabilities that remained unpatched for an extended period. Despite available patches, these high-severity flaws—especially CVE-2024-7587, CVE-2024-1182, CVE-2024-8299, CVE-2024-8300, and CVE-2024-9852—posed risks such as escalation of privileges, denial of service (DoS), and potentially full system compromise. These issues, identified by Palo Alto Networks' Unit 42, could allow attackers to conduct phantom DLL hijacking and enable lateral movement, evading endpoint detection and response systems in industrial control systems, threatening the integrity of crucial services provided by governmental, military, and private sector entities.


No incidents recorded for ICONICS in 2025.
No incidents recorded for ICONICS in 2025.
No incidents recorded for ICONICS in 2025.
ICONICS cyber incidents detection timeline including parent company and subsidiaries

Founded in 1986, ICONICS is an award-winning global software provider offering real-time visualization, HMI/SCADA, energy management, fault detection, manufacturing intelligence, IoT, and a suite of analytics solutions for building automation and operational excellence. ICONICS solutions are installed in 70% of Global 500 companies around the world, helping customers to be more profitable, agile, efficient, and sustainable. ICONICS promotes an international culture of innovation, creativity and excellence in product design, development, technical support, training, sales and consulting services for end users, system integrators, OEMs and channel partners. ICONICS has over 375,000 applications installed in multiple industries worldwide. #AutomatingtheWorld #MaketheInvisibleVisible #AutomationSoftware #Technology #SmartSolutions


The first business of Alibaba Group, Alibaba.com (www.alibaba.com) is the leading platform for global wholesale trade serving millions of buyers and suppliers around the world. Through Alibaba.com, small businesses can sell their products to companies in other countries. Sellers on Alibaba.com are t

We help organizations of all sizes digitally transform using software, hardware and services from the Siemens Xcelerator business platform. Our software and the comprehensive digital twin enable companies to optimize their design, engineering and manufacturing processes to turn today's ideas into th
SAP is the leading enterprise application and business AI company. We stand at the intersection of business and technology, where our innovations are designed to directly address real business challenges and produce real-world impacts. Our solutions are the backbone for the world’s most complex and
PhonePe Group is India’s leading fintech company, proudly recognized as India’s #1 Trusted Digital Payments* Brand for three consecutive years. Our flagship product, the PhonePe app was launched in August 2016, has rapidly become the preferred consumer payments app in India. In just eight years, Pho

Xiaomi Corporation was founded in April 2010 and listed on the Main Board of the Hong Kong Stock Exchange on July 9, 2018 (1810.HK). Xiaomi is a consumer electronics and smart manufacturing company with smartphones and smart hardware connected by an IoT platform at its core. Embracing our vision
Catalyzing the era of pervasive intelligence, Synopsys delivers trusted and comprehensive silicon to systems design solutions, from electronic design automation to silicon IP and system verification and validation. We partner closely with semiconductor and systems customers across a wide range of

DiDi Global Inc. is a leading mobility technology platform. It offers a wide range of app-based services across Asia Pacific, Latin America, and other global markets, including ride hailing, taxi hailing, designated driving, hitch and other forms of shared mobility as well as certain energy and vehi
Baidu is a leading AI company with strong Internet foundation, driven by our mission to “make the complicated world simpler through technology”. Founded in 2000 as a search engine platform, we were an early adopter of artificial intelligence in 2010. Since then, we have established a full AI stack,

The Facebook company is now Meta. Meta builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps like Messenger, Instagram and WhatsApp further empowered billions around the world. Now, Meta is moving
.png)
India News: India mourns the loss of advertising legend Piyush Pandey, who passed away at 70. Renowned for crafting unforgettable campaigns...
A DEPARTMENT store customers' details have been stolen in an IT systems breach.The luxury retailer has warned that the data was taken from...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) published five ICS (industrial control systems) advisories on Thursday,...
CLIMATEWIRE | By the end of the century, rising sea levels could push powerful seasonal waves into Easter Island's 15 iconic moai statues,...
The operator of Titanic Belfast has announced a strategic partnership with Antrim's Outsource Group to deliver a comprehensive digital transformation and cyber...
Luxury department store Harrods has become the latest UK retailer to face a cyberattack, joining Marks & Spencer (M&S) and the Co-op in a wave of incidents.
Discover how Darktrace helped Dreamworld enhance cybersecurity and protect its digital infrastructure from cyber threats.CopilotHere's a 25-word summary for...
Find the best online university in Nigeria! Discover accredited institutions, course offerings, and what makes them ideal for your...
Researchers at Palo Alto Networks have uncovered multiple vulnerabilities within a Supervisory Control and Data Acquisition (SCADA) system,...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of ICONICS is https://iconics.com.
According to Rankiteo, ICONICS’s AI-generated cybersecurity score is 753, reflecting their Fair security posture.
According to Rankiteo, ICONICS currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, ICONICS is not certified under SOC 2 Type 1.
According to Rankiteo, ICONICS does not hold a SOC 2 Type 2 certification.
According to Rankiteo, ICONICS is not listed as GDPR compliant.
According to Rankiteo, ICONICS does not currently maintain PCI DSS compliance.
According to Rankiteo, ICONICS is not compliant with HIPAA regulations.
According to Rankiteo,ICONICS is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
ICONICS operates primarily in the Software Development industry.
ICONICS employs approximately 237 people worldwide.
ICONICS presently has no subsidiaries across any sectors.
ICONICS’s official LinkedIn profile has approximately 8,181 followers.
ICONICS is classified under the NAICS code 5112, which corresponds to Software Publishers.
No, ICONICS does not have a profile on Crunchbase.
Yes, ICONICS maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/iconics.
As of December 25, 2025, Rankiteo reports that ICONICS has experienced 1 cybersecurity incidents.
ICONICS has an estimated 27,869 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Vulnerability.
Title: Vulnerabilities in ICONICS Suite SCADA Servers
Description: ICONICS Suite SCADA servers, used across various critical sectors, suffered from vulnerabilities that remained unpatched for an extended period. Despite available patches, these high-severity flaws—especially CVE-2024-7587, CVE-2024-1182, CVE-2024-8299, CVE-2024-8300, and CVE-2024-9852—posed risks such as escalation of privileges, denial of service (DoS), and potentially full system compromise. These issues, identified by Palo Alto Networks' Unit 42, could allow attackers to conduct phantom DLL hijacking and enable lateral movement, evading endpoint detection and response systems in industrial control systems, threatening the integrity of crucial services provided by governmental, military, and private sector entities.
Type: Vulnerabilities in SCADA Systems
Attack Vector: Phantom DLL HijackingLateral Movement
Vulnerability Exploited: CVE-2024-7587CVE-2024-1182CVE-2024-8299CVE-2024-8300CVE-2024-9852
Common Attack Types: The most common types of attacks the company has faced is Vulnerability.

Systems Affected: ICONICS Suite SCADA servers

Entity Name: ICONICS
Entity Type: Organization
Industry: Software

Source: Palo Alto Networks' Unit 42
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Palo Alto Networks' Unit 42.
Most Recent Source: The most recent source of information about an incident is Palo Alto Networks' Unit 42.
.png)
A vulnerability was determined in itsourcecode Online Frozen Foods Ordering System 1.0. This affects an unknown part of the file /contact_us.php. This manipulation of the argument Name causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
C-Kermit (aka ckermit) through 10.0 Beta.12 (aka 416-beta12) before 244644d allows a remote Kermit system to overwrite files on the local system, or retrieve arbitrary files from the local system.
Telenium Online Web Application is vulnerable due to a Perl script that is called to load the login page. Due to improper input validation, an attacker can inject arbitrary Perl code through a crafted HTTP request, leading to remote code execution on the server.
Fujitsu / Fsas Technologies ETERNUS SF ACM/SC/Express (DX / AF Management Software) before 16.8-16.9.1 PA 2025-12, when collected maintenance data is accessible by a principal/authority other than ETERNUS SF Admin, allows an attacker to potentially affect system confidentiality, integrity, and availability.
ONLYOFFICE Docs before 9.2.1 allows XSS in the textarea of the comment editing form. This is related to DocumentServer.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.