For Scada

Hi there,

For Scada scanning, how and where do I place the Wireshark to observe the traffic between the master and slave.

You just need to scan everything and apply filters depending on which protocol between OPC, ICCP and Modbus. Modbus has RTU, ASCII, TCP/IP/, TCP (mbtcp), Modbus over TCP, Modbus Plus. Last one is DNP3. Good things to know about SCADA

  • TFTPfuzz

  • Autodafe

  • Capture from SampleCaptures or Pcapr for Modbus using function code 06 packet with Wireshark

That’s pretty much all I have to offer… Good luck!