
CVE-2021-31630
OpenPLC 3 WebServer Authenticated Remote Code Execution.

OpenPLC 3 WebServer Authenticated Remote Code Execution.

Tools, tips, tricks, and more for exploring ICS Security.

Open-source IoT Platform - Device management, data collection, processing and visualization.

Java-based mission control framework with YAML configuration, supporting telemetry, commanding, and simulation for spacecraft operations. Includes…


A curated list of resources related to Industrial Control System (ICS) security.

Description and exploit of CVE-2023-33831 affecting FUXA web-based Process Visualization (SCADA/HMI/Dashboard) software.

ISAF aims to be a framework that provides the necessary tools for the correct security audit of industrial (OT) environments.

Modbus Slave缓冲区溢出漏洞CVE-2022-1068分析与复现

OpenPLC 3 WebServer Authenticated Remote Code Execution.

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

Low Interaction Mobile Honeypot

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

Proof-of-concept SQL injection exploit for FUXA SCADA software (<=1.1.12) via HTTP POST JSON id parameter, enabling extraction of SQLite database…

Detect Tactics, Techniques & Combat Threats

IoT and Operational Technology Honeypot

Proof-of-concept exploit for authentication bypass via capture-replay in Dingtian DT-R002 relay, allowing unauthorized control of relays through HTTP…

PoC Modbus TCP exploit demonstrating spoofed writes to read-only coils in simulated PLCs, highlighting SCADA/ICS access control flaws.