PacketViper launches command control for semiconductor fab equipment
PacketViper said July 10 that it has added SECS/GEM command control to its OT protocol security platform, giving semiconductor fabs inline control over recipe and remote-command traffic. The agentless feature is available now and is designed to help protect legacy equipment that cannot meet SEMI E187 and E188 requirements on its own.
Why it matters: - Semiconductor fabs depend on SECS/GEM over HSMS for host and manufacturing execution system communication. - PacketViper’s new control layer is designed to block or flag unauthorized recipe downloads, remote commands, and equipment constant changes before they reach a tool. - A single bad recipe or tampered command can scrap wafer lots and damage tooling. - The feature is positioned as a compensating control for equipment that cannot natively meet modern cybersecurity requirements.
What happened: - PacketViper announced SECS/GEM command control for semiconductor manufacturing equipment. - The capability is generally available now. - The system inspects SECS/GEM traffic down to the individual command and decides which commands are allowed, from which sources, and at what rate. - The platform runs inline as a transparent, agentless bridge in front of equipment. - Existing customers can enable the feature per tool in observation mode and move to enforcement on their own schedule.
The details: - SECS/GEM was built for reliable communication on a trusted network, not for authenticating commands. - If a message reaches a tool and speaks the protocol, the tool obeys. - PacketViper separates routine data collection from command types that can change how a tool behaves. - Fabs can set which sources may download a recipe, issue a remote command, or change an equipment constant. - The system is fail open on the capture path, so protection is designed not to stop production if capture fails. - PacketViper records each governed command with its source, target, operation, and outcome. - The audit trail is generated as part of operating the system. - PacketViper says the capability aligns with SEMI E187 and E188 cybersecurity requirements. - The feature is one layer of PacketViper’s patented Automated Moving Target Defense platform. - The same appliance also provides deception, sensors, asset discovery, and command-level control across industrial protocols.
Between the lines: - The release targets legacy fab tools, where retrofit security controls are harder to deploy and agent-based software is often impractical. - Inline command governance shifts security from monitoring alone to enforcing what a tool can do. - The audit trail angle suggests the product is aimed not just at prevention, but also at helping fabs prove control. - CEO and Founder Francesco Trama said the platform puts unauthorized recipes or remote commands under governance without touching the equipment.
What's next: - PacketViper said customers can begin in observation mode and narrow to enforcement when ready. - The company is likely to position the feature as part of broader OT protection for critical manufacturing environments. - The platform remains available as a single appliance across IT and OT environments.
The bottom line: - PacketViper is betting that fabs need command-level enforcement, not just visibility, to protect high-value tools and legacy semiconductor equipment.
Disclaimer: This article was produced by AGP Wire with the assistance of artificial intelligence based on original source content and has been refined to improve clarity, structure, and readability. This content is provided on an “as is” basis. While care has been taken in its preparation, it may contain inaccuracies or omissions, and readers should consult the original source and independently verify key information where appropriate. This content is for informational purposes only and does not constitute legal, financial, investment, or other professional advice.
Sign up for:
Today in Cooking
The daily local news briefing you can trust. Every day. Subscribe now.
Check Your Email!
We sent a one-time activation link to: .
Confirm it's you by clicking the email link.
If the email is not in your inbox, check spam or try again.
Welcome back!
is already signed up. Check your inbox for updates.