SCADA Vulnerabilities

Analyze industrial control systems for protocol and PLC logic vulnerabilities.

Updated Aug 6, 2026
One-click install
npx skills add https://github.com/alicangnll/Spectra --skill scada-vulnerabilities
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: SCADA Vulnerabilities
Source: https://github.com/alicangnll/Spectra/tree/main/spectra/skills/builtins/scada-vuln
Command: npx skills add https://github.com/alicangnll/Spectra --skill scada-vulnerabilities

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill requires nmap, pymodbus, pyserial, and includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill helps identify and analyze vulnerabilities within industrial control systems (ICS) and SCADA environments, focusing on protocols, PLC logic, sensor/actuator controls, and critical infrastructure components.

Core Features & Use Cases

  • Protocol Analysis: Detects vulnerabilities in Modbus, DNP3, IEC 104, Ethernet/IP, and PLC protocols.
  • PLC Memory Exploitation: Analyzes PLC memory layout and potential for logic injection.
  • Control Logic Manipulation: Identifies vulnerabilities in HMI/SCADA servers and historian databases.
  • Sensor/Actuator Attacks: Checks for sensor spoofing and actuator manipulation vulnerabilities.
  • Protocol-Specific Vulnerabilities: Provides analysis for Modbus, DNP3, IEC 104, and Ethernet/IP.

Quick Start

Use the SCADA Vulnerabilities skill to analyze the Modbus protocol on the target system at IP address '192.168.1.100'.

Frequently Asked Questions about SCADA Vulnerabilities

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I scan industrial control systems for Modbus and DNP3 protocol vulnerabilities?

To scan industrial control systems for Modbus and DNP3 protocol vulnerabilities, use this Skill to perform protocol-specific analysis and control system vulnerability scanning on your target IP addresses.

What is PLC memory layout analysis and how does it detect logic injection threats?

PLC memory layout analysis is the process of mapping memory structures to detect potential logic injection threats, performed by this Skill to identify control logic manipulation vulnerabilities in SCADA servers.

Does this SCADA vulnerability analysis tool support Ethernet/IP and IEC 104 protocols?

Yes, this SCADA vulnerability analysis tool supports Ethernet/IP and IEC 104 protocols, detecting protocol-specific vulnerabilities and checking for sensor spoofing and actuator manipulation vulnerabilities.

Do I need nmap and pymodbus installed to test SCADA systems for vulnerabilities?

Yes, you need nmap, pymodbus, and pyserial installed to test SCADA systems for vulnerabilities, as these dependencies provide the required network scanning and Modbus communication capabilities.

Can I use this to check HMI servers and historian databases for control logic manipulation?

Yes, you can use this to check HMI servers and historian databases for control logic manipulation, as it identifies vulnerabilities in HMI/SCADA servers and critical infrastructure components.