Hack Log

Penetration Testing Explained: How It’s Done, What to Look For, What to Expect

Penetration Testing Hub › the full series of practical guides Before you do anything Only test systems you own or have explicit written permission to test. Unauthorised access to a computer system is a criminal offence in Ireland under the Criminal Justice (Offences Relating to Information Systems) Act 2017. Every guide on this site assumes […]

Penetration Testing Explained: How It’s Done, What to Look For, What to Expect Read More »

Building Controllers on the Public Internet: What a Passive Survey of Ireland Actually Found

There is an easy version of this article. Search Shodan for a building-automation port, count the results, and publish a number with the word “exposed” next to it. It takes ten minutes and it is wrong, usually by a large factor, and anyone who checks the working will find that out. This is the other

Building Controllers on the Public Internet: What a Passive Survey of Ireland Actually Found Read More »

Auditing an Industrial Switch: The Infrastructure Everything Else Depends On

Every article in this series has quietly depended on a switch behaving correctly. Passive asset discovery assumed the mirror port copied the traffic you needed. Segmentation testing assumed VLANs separated what they claimed to separate. Detection assumed the sensor saw every packet worth alerting on. If any of those assumptions is wrong, the work built

Auditing an Industrial Switch: The Infrastructure Everything Else Depends On Read More »

Building an OT Traffic Baseline

Enterprise network detection is hard because enterprise networks are chaotic. A user opens forty tabs, a laptop joins from a hotel, a new SaaS tool appears without anyone telling security, and the traffic profile on Tuesday bears no useful resemblance to Monday’s. Anomaly detection in that environment generates alerts nobody can triage. Industrial networks are

Building an OT Traffic Baseline Read More »

Understanding Modbus/TCP Traffic: Reading Industrial Protocols in Wireshark

Modbus was published in 1979, for serial links, by a company making programmable controllers for General Motors. It has no authentication, no encryption, no session concept and no integrity checking beyond a link-layer checksum. It is also, more than four decades later, one of the most widely deployed industrial protocols in the world. That combination

Understanding Modbus/TCP Traffic: Reading Industrial Protocols in Wireshark Read More »

Passive OT Asset Discovery with Wireshark: Finding Every Device Without Sending a Packet

Ask an industrial site for its asset inventory and you will usually be handed a spreadsheet. Ask when it was last verified against the network and the answer is often a shrug, or a date that predates the last two upgrade projects. That gap matters more in operational technology than almost anywhere else. You cannot

Passive OT Asset Discovery with Wireshark: Finding Every Device Without Sending a Packet Read More »

How to Build a Safe OT Cybersecurity Lab: Network Design, Tools and Safety Controls

Most security testing advice assumes that the worst thing you can break is a web application. In operational technology, the worst thing you can break is a process – and processes move pumps, valves, conveyors and turbines. That difference is why every OT walkthrough on CyberLabs starts in a lab rather than on a live

How to Build a Safe OT Cybersecurity Lab: Network Design, Tools and Safety Controls Read More »