arn-c0de / arn-c0de/ESP32-LABs

Content: New Industrial SCADA Lab – ESP32

Open
#4 1 comment 0 reactions 1 assignee Claimed by @arn-c0de View on GitHub
enhancement
Dominant language
C++
Stars
8
Forks
0
PR merge metrics
No merged PRs in 30d

Description

**Red-Team Focused | Version 2.0**

Realistic mini-SCADA on ESP32 – students learn by **attacking** and **defending** it
4 production lines • 20+ sensors/actuators • physically plausible behavior

**6 main exploit paths** (can be toggled independently):
1. IDOR (unauthorized object access)
2. Command / Parameter Injection
3. Race Condition
4. Physics / process anomaly exploitation
5. Forensics (log & state reconstruction)
6. Weak credentials / credential leakage

**Learning style**
Attack → understand → adapt
Discovery-based, not spoon-fed

**Difficulty levels**
- EASY: lots of hints, almost no defense
- NORMAL: hints on request, moderate incidents
- HARD: almost no help, active defense, cascading failures

**Highlights**
- Nice live P&ID-style dashboard
- Real-time trends + alarms
- Dynamic incidents (stuck valve → temp rise → overload …)
- Leaderboard (exploits found + time)
- Teacher controls via serial: IP block, rate-limit, session kill

**Target audience**
- ICS/OT security beginners to advanced
- Pentesters who want to understand industrial systems

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.