Use of Weak Credentials vulnerability in B&R Industrial Automation GmbH mapp Audit used in mapp Services. This issue affects mapp Audit used in mapp Services: before 6.8.0.
Casky was already ahead
This CVE exploits attack patterns that Casky's 0matched skills already investigate — long before this vulnerability was disclosed. Claude's reasoning model maps these techniques to MITRE ATT&CK, so practitioners who ran these skills have already seen the threat behaviour in their findings.
CVE-2026-79679 represents a critical authentication weakness in B&R Industrial Automation's mapp Audit component used within mapp Services. This vulnerability stems from the use of weak or insufficiently validated credentials, allowing attackers to gain unauthorized access to industrial automation systems prior to version 6.8.0. Organizations deploying mapp Services in manufacturing, process control, and critical infrastructure environments face significant risk, as compromised credentials can lead to system manipulation, data theft, or operational disruption in safety-critical environments.
While this CVE does not map to specific MITRE ATT&CK techniques, Casky's 754 mapped security skills enable Claude AI to identify the underlying attack patterns through extended reasoning across credential-based access techniques (T1078 - Valid Accounts, T1110 - Brute Force, and T1556 - Modify Authentication Process). Practitioners using Casky would observe detection findings focused on weak credential validation during authentication flows, unusual account access patterns, and configuration gaps in credential enforcement policies. The platform's AI-driven analysis would highlight that remediating to mapp Audit 6.8.0+ requires not only patching but also conducting a credential audit across all mapp Services instances and implementing compensating controls such as multi-factor authentication and network segmentation around industrial automation systems.
Composite risk scoring from EPSS, CISA KEV, Shodan, and GreyNoise — 21 security APIs correlated into a single Casky Risk Score. Coming in Casky Pro. Join early access →
Casky has 0 skills that investigate the attack patterns behind CVE-2026-79679. Run one and get CVSS-scored findings in 3 minutes.
Run the skill that detects this →© 2026 Casky.AI, Inc. · AI Security Investigation