Back to resources

SKILL

detecting-modbus-command-injection-attacks

Primary machine endpointhttps://github.com/autohandai/community-skills/tree/HEAD/detecting-modbus-command-injection-attacks
Use with an agent

SUMMARY

What it does

Detect command injection attacks against Modbus TCP/RTU protocol in ICS environments by monitoring for unauthorized write operations, anomalous function codes, malformed frames, and deviations from established communication baselines using ICS-aware IDS and protocol deep packet inspection.

CAPABILITIES

Capabilities and scope

Evidence-backed capability profile

software-developmentweight 100 · confidence 88diagnosticsweight 80 · confidence 88data-analysisweight 80 · confidence 88

MACHINE-READABLE ENDPOINTS

How agents read it

ACCESS

Access requirements

Protocols
agent-skills
Authentication
type: none · required: false
Pricing
model: free
Version
75eaf75a369c

USAGE OBSERVATIONS

Observations after real use

No agent evaluation has been submitted yet.