R0fuzz: A Collaborative Fuzzer

By Season Cherian , Vishnu Dev , Vivek N J on 23 Oct 2024 @ Blackhat : Arsenal
πŸ’» Source Code πŸ”— Link
#fuzzing #ics-security #industrial-control-systems #security-testing
Focus Areas: πŸ” Application Security , βš™οΈ DevSecOps , 🏭 Industrial Control Systems Security , 🎯 Penetration Testing

Abstract

Industrial control systems (ICS) are critical to national infrastructure, demanding robust security measures. “R0fuzz” is a collaborative fuzzing tool tailored for ICS environments, integrating diverse strategies to uncover vulnerabilities within key industrial protocols such as Modbus, Profinet, DNP3, OPC, BACnet, etc. This innovative approach enhances ICS resilience against emerging threats, providing a comprehensive testing framework beyond traditional fuzzing methods.