Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2026-23010-CCSDS-Telecommand-Replay-Without-Sequence-Number — PoC simulation of a critical CCSDS telecommand replay vulnerability in satellite command systems, demonstrating missing sequence-number validation and duplicate command execution. | Kitploit
Tools/GitHubGitHub/george0papasotiriou/cve-2026-23010-ccsds-telecommand-replay-without-sequence-number
Vulnerability AnalysisExploitationAdversarial Attack
GitHubgeorge0papasotiriou/cve-2026-23010-ccsds-telecommand-replay-without-sequence-number

CVE-2026-23010-CCSDS-Telecommand-Replay-Without-Sequence-Number

PoC simulation of a critical CCSDS telecommand replay vulnerability in satellite command systems, demonstrating missing sequence-number validation and duplicate command execution.

View Repository
131 month agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2026-23010 – CCSDS Telecommand Replay Without Sequence Number

Program Code (Python satellite sim)

# satellite_sim.py - Spacecraft that executes telecommands without checking sequence number
class Satellite:
    def __init__(self):
        self.executed = set()
    def receive_tc(self, cmd_id, seq_num):
        # Vulnerability: ignores seq_num, allowing replay of same command
        self.execute(cmd_id)

def execute(cmd_id):
    print(f"Executing command {cmd_id}")

sat = Satellite()
# Legitimate command
sat.receive_tc("ORBIT_CORRECTION", 1001)
# Attacker replays the same command
sat.receive_tc("ORBIT_CORRECTION", 1001)

CVE-2026-23010 – CCSDS Telecommand Replay Without Sequence Number

Severity: Critical

Overview

A satellite command system accepts CCSDS telecommand packets but does not validate the sequence number to prevent replay. An attacker who intercepts a command can replay it, causing duplicate thruster burns or other harmful operations.

Vulnerability Details

  • Type: Replay Attack
  • Impact: Satellite loss, orbital deviation.
  • Root Cause: Missing freshness check; no tracking of processed command sequence numbers.

Exploit Demonstration

Run the simulation:

python satellite_sim.py

The same command is executed twice.

Download Tool