
thingsboard
Open-source IoT Platform - Device management, data collection, processing and visualization.

Open-source IoT Platform - Device management, data collection, processing and visualization.

DejaVU - Open Source Deception Framework

Real world and CTFs exploiting web/binary POCs.

Small script to retrieve passwords from many types of Moxa device, including NPort, OnCell, MGate, etc.

proof of Concept (PoC) exploit for CVE-2021-31630, targeting the OpenPLC service running on the WifineticTwo box on the Hack The Box platform.

Analyzing and Reproducing the Command Injection Vulnerability (CVE-2023-0861) in NetModule Routers

Purdue Model for Industrial Control System (ICS) Environments (Turkish)

Modbus Slave缓冲区溢出漏洞CVE-2022-1068分析与复现

Active Scanning and Information Gathering in ICS/SCADA Networks using Network Mapper (NMAP) (Turkish)

This repository includes the code and files needed to test and execute a PoC for CVE-2025-41656

An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

Authenticated users can upload arbitrary files (e.g. .html, .svg) as profile images in OpenPLC Runtime. These files are publicly accessible without…

Benign proof-of-concept for CVE-2026-36226, a cross-site scripting vulnerability in Advantech WebAccess/SCADA 8.0-2015.08.16 Admin Dashboard Create…

POC Exploit for CVE-2021-31630 written in Python3 and using C reverse shell with non-blocking mode

Security Vulnerability - Kardex Mlog MCC

POC exploit for CVE-2026-25895 FUXA Unauthenticated Path Traversal -> Arbitrary File Write -> RCE

Technical vulnerability analysis and CVE briefing for CVE-2026-9645 affecting ScadaBR.