
Dejavu
DejaVU - Open Source Deception Framework

DejaVU - Open Source Deception Framework

A curated list of resources related to Industrial Control System (ICS) security.


Nmap NSE scripts for ICS/SCADA discovery and enumeration—BACnet, EtherNet/IP, CoDeSys, Fox, Modicon, Omron, S7—using protocol queries for security…


CVE-2018-11517 | mySCADA myPRO v7.0.46 has another vulnerability to discover all projects in the system.

Ultimate Internet of Things/Industrial Control Systems reconnaissance tool.

Field-validated offensive security skill pack with 169 techniques for reconnaissance and penetration testing. Covers CORS, SSRF, subdomain takeover,…

ISF(Industrial Control System Exploitation Framework),a exploitation framework based on Python

Small script to retrieve passwords from many types of Moxa device, including NPort, OnCell, MGate, etc.

AsyncIO Scanner & Exploitation Framework for CVE-2026-24061 (Telnet NEW_ENVIRON Auth Bypass). Features high-concurrency discovery, passive…

ScadaFlare Authenticated RCE Exploit Framework for ScadaBR (CVE-2021-26828) OpenPLC ScadaBR

Python scripts for security assessment of industrial PLCs: scanning, enumeration, control, and exploitation of Beckhoff, Siemens, Schneider,…

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

IoT and Operational Technology Honeypot


BOF (Boiboite Opener Framework) is a testing framework for industrial protocols implementations and devices.

Proof-of-concept exploit for authentication bypass via capture-replay in Dingtian DT-R002 relay, allowing unauthorized control of relays through HTTP…