In my previous article, I wrote about ICS Metasploit modules. The Modules that are related to ICS hardware or software that can be used as tools for vulnerability assessment. I tried to assemble a list of keywords that could help you find ICS modules in Metasploit. After I published the article, I got a suggestion from a friend of mine to do the same for the Exploit Database. So I decided that Im’ not going to start from scratch, but instead I would build my list based on my Metasploit keywords. The results that I got from the Exploit-db were bigger and in the process, I discovered more keywords. There are more search options in the Exploit-db than Metasploit, that enable you to do customized digging in the advanced mode. For example, you can type a generic ICS term like “SCADA” in the title box and specify the vendor name “Siemens” in the content box. There are also other options that can help you narrow your results. Another observation I noticed was that not all ICS vendors were in the database, which could indicate many interesting points. It could be a lack of vulnerability research from the community side due to shortages of resources such as software or hardware. As you know, most of these resources are proprietary, expensive and not for the average use. One last thing , you can experiment with the keywords by placing them either in the topic or content area or both , or by combining them all together as you see fit. The results form this database vary, not all of them are exploits, some of them are reports or magazines. I have aded this list to my Giuthub, for future updates.

- 7-Technologies
- advantech
- allen-bradley
- automation
- bacnet
- beckhoff
- broadWin
- certec edv atvise
- circarlife
- citectscada
- clearscada
- codesys
- control system
- daqfactory
- datac
- dnp3
- electric
- ethernet/ip
- factorylink
- fatek automation
- furukawa
- genesis32
- hmi
- hmi/scada
- homeautomation
- honeywell
- iconics
- igss
- industrial
- instanthmi
- its scada
- kingscada
- kingview
- laquis
- measuresoft
- microscada
- mitsubishi
- modbus
- modicon
- movicon
- myscadapro
- myscada
- omron
- opc
- open proficy
- phoenix contact
- plc
- pnpscada
- powerhmi
- powerlogic
- proconos
- procyon
- proficyscada
- realwin
- rockwell
- ruggedCom
- scada
- scada server
- scada/hmi
- scadaapp
- scadaphone
- scadapro
- scadatec
- schneider
- seig
- sielco sistemi
- siemens
- smartrtu
- soitec smartenergy
- start/stop
- sunway force control
- teechart
- tri-plc nano
- twincat
- unitronics
- viap automation
- wago
- webhmi
- webscada
- yokogawa
- zigbee
- zscada