VTG (Lab) Bundle

Modbus - VTG Ch5 (ICS005)


Description

Lab: 2 CPE


In this advanced level module, take a deep dive into the Modbus traffic of a simulated chemical plant to understand how to attack and harden one of the most common ICS protocols in use. After completing this chapter you will be able to


  • Run advanced nmap scripts to enumerate Modbus devices
    • Use Python Scapy scripts to perform detailed Modbus device enumeration
    • Scan and scrape data from a Modbus server
    • Send Modbus commands to control a process
    • Fuzz Modbus servers to check for vulnerabilities
    • Write IDS rules to detect suspicious Modbus activity
    • Set up a basic Modbus honeypot to study attacker behavior

      The Fortiphyd Virtual Training Grounds series equips you with the practical experience needed to secure ICS networks. Practice launching real attacks, see their physical consequences, and learn how to defend against them all in realistic 3D simulated plants.
Content
  • LAB ENVIRONMENT
  • Introduction to Modbus
  • Intro
  • Modbus Background Review
  • Initial Chemical Plant Reconnaissance
  • Modbus Man-in-the-Middle
  • Man-In-The-Middle Background
  • Man-In-The-Middle Exercise
  • Man-In-The-Middle Review
  • Modbus Device Enumeration
  • Enumeration Background
  • Enumeration Exercise
  • Enumeration Review
  • Modbus Data Scraping
  • Data Scraping Background
  • Data Scraping Exercise
  • Data Scraping Review
  • Modbus Command Injection
  • Command Injection Background
  • Command Injection Exercise
  • Command Injection Review
  • Modbus Fuzzing
  • Fuzzing Background
  • Fuzzing Exercise
  • Fuzzing Review
  • Modbus Intrusion Detection
  • Intrusion Detection Background
  • Intrusion Detection Exercise
  • Intrusion Detection Review
  • Modbus HoneyPot
  • Honeypot Background
  • Honeypot Exercise
  • Honeypot Review
  • Discussion and Q&A
  • Feedback
Completion rules
  • All units must be completed
  • Leads to a certificate with a duration: 3 years