INTEL_REPORT
CISA Cybersecurity Advisories · published 6/25/2026, 12:00:00 PM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
Yokogawa FAST/TOOLS and CI Server View CSAF Summary Successful exploitation of this vulnerability may return a response containing the CI Server setting information. The following versions of Yokogawa FAST/TOOLS and CI Server are affected: FAST/TOOLS >=R9.01|<=R10.04 Collaborative Information Server (CI Server) >=R1.01|<=R1.04 CVSS Vendor Equipment Vulnerabilities v3 7.5 Yokogawa Yokogawa FAST/TOOLS and CI Server Cleartext Transmission of Sensitive Informat…
https://www.cisa.gov/news-events/ics-advisories/icsa-26-176-01
sha256:2edccea41f9f1cb1fa5f5bfd4c2420ccea8f4b8b844b5d408a21e63cce04655d
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.
Neighborhood from the first linked indicator.
| contact.yokogawa.com |
| Open → |
| url | https://web-material3.yokogawa.com/1/39777/files/YSAR-26-0004-E.pdf | Open → |
| url | https://contact.yokogawa.com/cs/gw?c-id=000498 | Open → |
| cve | CVE-2026-11833 | Open → |