Siemens has alerted customers that patch files for its Desigo CC building management system are being incorrectly identified as malware by various cybersecurity solutions, likely due to a PowerShell script included in the patches. The company is working with cybersecurity vendors to resolve these false-positive detections while confirming no malicious modifications were found in the files.
Siemens reports that patch files for its Desigo CC building management system are being incorrectly flagged as malware by various antivirus solutions due to a PowerShell script in the patch. This highlights the need for cybersecurity professionals to improve collaboration with vendors to refine heuristic detection methods, reducing false positives that can disrupt operations and security patch management.