🩸
Pentesting Notes
Ctrlk
  • ㊙️r3dcl1ff
    • 🔬Enumeration
    • 🧨Exploitation (deprecated node)
    • 🈲Privesc
    • 🖥️CLI-Fu
    • 🎯OSINT
    • 🛠️Tools
    • 🟦Active Directory
    • 🪓Sysadmin
    • 🗒️Pentesting Checklist(s)
    • 🕷️WebApp Pentest
    • 🌩️Cloud
    • 🧠Threat Intel
    • 📟IoT / IIoT
    • 🏭ICS/OT - SCADA
      • Active Enumeration
        • Cisco-Torch
        • Nmap
          • HVAC 80
          • Siemens S7 102
          • DICOM 104
          • ATG 443
          • Modbus - Schneider 502
          • MQTT 1883
          • NiagaraFox 1911
          • PCWorx 1962
          • CSPv4 2222
          • IEC 2404
          • Mitsubishi Electric MELSEC PLC 5006
          • Omron 9600
          • DNP3 20000 (TCP-UDP)
          • Knx-gateway 3671
          • ProConOS 20547
          • Rockwell Automation Allen-Bradley 44818
          • Bacnet 47808
        • OSINT
        • Passwords and creds
        • Metasploit
      • Passive Enumeration
      • Hardware / Lab setup
      • Github repos and resources
    • 🩻Private Templates
    • 🐞BBP
    • 📱Mobile
  • Daily Syncs
    • Design Standups
  • Weekly Syncs
    • Company Weeklies
  • Other Regulars
    • Company Weeklies
Powered by GitBook
On this page
  1. ㊙️r3dcl1ff
  2. 🏭ICS/OT - SCADA
  3. Active Enumeration

Nmap

nmap scripts and related shodan dorks

HVAC 80Siemens S7 102DICOM 104ATG 443Modbus - Schneider 502MQTT 1883NiagaraFox 1911PCWorx 1962CSPv4 2222IEC 2404Mitsubishi Electric MELSEC PLC 5006Omron 9600DNP3 20000 (TCP-UDP)Knx-gateway 3671ProConOS 20547Rockwell Automation Allen-Bradley 44818Bacnet 47808
PreviousCisco-TorchNextHVAC 80

Last updated 2 years ago