YoVDO

Scarlet OT: Adversary Emulation for Industrial Control Systems - HITB 2023

Offered By: Hack In The Box Security Conference via YouTube

Tags

Industrial Cybersecurity Courses Cybersecurity Courses Vulnerability Assessment Courses Adversary Emulation Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the world of Industrial Control System (ICS) security through this 43-minute conference talk from the Hack In The Box Security Conference. Dive into the development of Scarlet OT, an open-source adversary emulation tool designed as a plugin for MITRE's Caldera. Learn how this innovative tool allows users to combine IT attacks with OT adversaries, offering a cost-effective solution for enterprises seeking to identify vulnerabilities in their ICS environments. Gain insights from the analysis of traffic from over 20 factories and 19 MITRE-defined ICS malwares, including PIPEDREAM/Incontroller. Discover the evolving trends in ICS malware, from single protocol targeting to modularized, multi-protocol support, and understand the four-stage attack flow common in these threats. Explore Scarlet OT's capabilities, supporting 10 common protocols and over 23 techniques on the MITRE ICS matrix, and its ability to reproduce over 80% of defined ICS malware actions. Witness a live demo and learn about the tool's applications in real-life industrial settings, including oil, gas, water, and electric power devices.

Syllabus

#HITB2023HKT D2T1 - Scarlet OT: OT Adversary Emulation For Fun And Profit - Sol Yang & Vic Huang


Taught by

Hack In The Box Security Conference

Related Courses

Assessing the Security Posture of ICS Infrastructure Using ISA 62443 Standard
nullcon via YouTube
Stealing PLC Intellectual Property - A Red Teaming Story
Hack In The Box Security Conference via YouTube
Think Like a Hacker, but Act Like an Engineer
Kaspersky via YouTube
The Building Blocks of Good Detection and Response Services for the ICS Environment
Kaspersky via YouTube
Cybersecurity on Rails - A Look at the Connected Train
Kaspersky via YouTube