🩸
Pentesting Notes
search
⌘Ctrlk
🩸
Pentesting Notes
  • ㊙️r3dcl1ff
    • 🔬Enumeration
    • 🧨Exploitation (deprecated node)
    • 🈲Privesc
    • 🖥️CLI-Fu
    • 🎯OSINT
    • 🛠️Tools
    • 🟦Active Directory
    • 🪓Sysadmin
    • 🗒️Pentesting Checklist(s)
    • 🕷️WebApp Pentest
    • 🌩️Cloud
    • 🧠Threat Intel
    • 📟IoT / IIoT
    • 🏭ICS/OT - SCADA
      • Active Enumeration
        • Cisco-Torch
        • Nmap
          • HVAC 80
          • Siemens S7 102
          • DICOM 104
          • ATG 443
          • Modbus - Schneider 502
          • MQTT 1883
          • NiagaraFox 1911
          • PCWorx 1962
          • CSPv4 2222
          • IEC 2404
          • Mitsubishi Electric MELSEC PLC 5006
          • Omron 9600
          • DNP3 20000 (TCP-UDP)
          • Knx-gateway 3671
          • ProConOS 20547
          • Rockwell Automation Allen-Bradley 44818
          • Bacnet 47808
        • OSINT
        • Passwords and creds
        • Metasploit
      • Passive Enumeration
      • Hardware / Lab setup
      • Github repos and resources
    • 🩻Private Templates
    • 🐞BBP
    • 📱Mobile
  • Daily Syncs
    • Design Standups
  • Weekly Syncs
    • Company Weeklies
  • Other Regulars
    • Company Weeklies
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. ㊙️r3dcl1ffchevron-right
  2. 🏭ICS/OT - SCADAchevron-right
  3. Active Enumeration

Nmap

nmap scripts and related shodan dorks

HVAC 80chevron-rightSiemens S7 102chevron-rightDICOM 104chevron-rightATG 443chevron-rightModbus - Schneider 502chevron-rightMQTT 1883chevron-rightNiagaraFox 1911chevron-rightPCWorx 1962chevron-rightCSPv4 2222chevron-rightIEC 2404chevron-rightMitsubishi Electric MELSEC PLC 5006chevron-rightOmron 9600chevron-rightDNP3 20000 (TCP-UDP)chevron-rightKnx-gateway 3671chevron-rightProConOS 20547chevron-rightRockwell Automation Allen-Bradley 44818chevron-rightBacnet 47808chevron-right
PreviousCisco-Torchchevron-leftNextHVAC 80chevron-right

Last updated 2 years ago