Accurate claim
These tools help identify exposure candidates via TCP connect checks. An open port is a lead for investigation—not proof of a confirmed exploit or active compromise.
Critical infrastructure · open source · MIT
Defensive OT/SCADA exposure discovery across water, energy, building automation, and rail. PowerShell and Bash scanners for authorized networks: TCP reachability checks, sector port catalogs, and analyst-ready JSON reports.
Former standalone repos are archived. Development continues here.
These tools help identify exposure candidates via TCP connect checks. An open port is a lead for investigation—not proof of a confirmed exploit or active compromise.
No credential testing, no exploit payloads, no config changes, no IPv6 scanning, and no substitute for a full penetration test or continuous monitoring product.
For hiring managers evaluating OT/ICS or security-automation candidates, this repo shows end-to-end delivery: sector research, scripting, shared libraries, tests/CI, and clear safety documentation.
Built and maintained by SpinfoSecurity. Authorized defensive use only.