
CVE-2021-31630-OpenPLC-3-Authenticated-RCE
OpenPLC 3 WebServer Authenticated Remote Code Execution.

OpenPLC 3 WebServer Authenticated Remote Code Execution.

CVE-2023-30765 / ZDI-23-905 - Delta Electronics Infrasuite Device Master Privilege Escalation

Low Interaction Mobile Honeypot

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

Proof-of-concept exploit for CVE-2021-26828 enabling authenticated remote code execution on ScadaBR SCADA systems via JSP file upload. Supports…

An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

Exploit for Authenticated Remote Code Execution on OpenPLC v3 Webserver

Modbus Packet Injection on Advantech WISE 4060LAN / IoT Gateway for door control

There is a path injection vulnerability in OpenPLC-v3, which arises from the program not performing any validity checks on the file path parameters…

Paracosme is a zero-click remote memory corruption exploit that compromises ICONICS Genesis64 which was demonstrated successfully on stage during the…

ISF(Industrial Control System Exploitation Framework),a exploitation framework based on Python

Description and exploit of CVE-2023-33831 affecting FUXA web-based Process Visualization (SCADA/HMI/Dashboard) software.

CVE-2023-30459

Instrumented fuzzer for PLC-based ICS control applications, targeting Codesys runtime on Wago controllers to uncover memory corruption and…

proof of Concept (PoC) exploit for CVE-2021-31630, targeting the OpenPLC service running on the WifineticTwo box on the Hack The Box platform.

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Tools, tips, tricks, and more for exploring ICS Security.

Detect Tactics, Techniques & Combat Threats