
fapro
Multi-protocol honeypot simulator supporting 50+ network services with deep interaction, TCP/UDP/ICMP logging, JA3 fingerprinting, and virtual…

Multi-protocol honeypot simulator supporting 50+ network services with deep interaction, TCP/UDP/ICMP logging, JA3 fingerprinting, and virtual…

Open-source IoT Platform - Device management, data collection, processing and visualization.

Cybersecurity Evaluation Tool

Field-validated offensive security skill pack with 169 techniques for reconnaissance and penetration testing. Covers CORS, SSRF, subdomain takeover,…

ISF(Industrial Control System Exploitation Framework),a exploitation framework based on Python

Ultimate Internet of Things/Industrial Control Systems reconnaissance tool.

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

Python scripts for security assessment of industrial PLCs: scanning, enumeration, control, and exploitation of Beckhoff, Siemens, Schneider,…

Repository that tracks public exploits, vulnerabilities and advisories that I [co-]discovered or [co-]authored.

Paracosme is a zero-click remote memory corruption exploit that compromises ICONICS Genesis64 which was demonstrated successfully on stage during the…


Real world and CTFs exploiting web/binary POCs.

BOF (Boiboite Opener Framework) is a testing framework for industrial protocols implementations and devices.

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

Automated Security Risk Identification Using AutomationML-based Engineering Data

PoC C&C for the Industroyer malware

Description and exploit of CVE-2023-33831 affecting FUXA web-based Process Visualization (SCADA/HMI/Dashboard) software.
