It seems every week lately I get a question about the security of Building Automation Systems.
But, the problem is the folks are asking the wrong questions.
Yes, it is scary that the average BAS technician doesn't have an IT background.
It does keep me up at night that most implementations of BACnet are insecure and that with YABE you can pretend you're a BBMD and connect to exposed BAS's to change setpoints.