<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Andrey+Komarov</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Andrey+Komarov"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Andrey_Komarov"/>
		<updated>2026-05-31T13:23:44Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Scada_Security_Project&amp;diff=147260</id>
		<title>OWASP Scada Security Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Scada_Security_Project&amp;diff=147260"/>
				<updated>2013-03-09T08:24:43Z</updated>
		
		<summary type="html">&lt;p&gt;Andrey Komarov: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Main=&lt;br /&gt;
Security of SCADA is great challenge and WEB-applications play huge role in it. The Project aims to research modern SCADA security issues, related to WEB-applications security used in vendors solutions (ICS, SCADA, RTU, PLC, equipment for industrial networks and etc.). According to the statistics, one of the most popular remote attack vectors on SCADA is fingerprinting of exposed industrial devices by its front-ends and server-side components through application procols (HTTP, UPnP, SNMP, FTP, SSH, Telnet). It helps the hackers to detect critical infrastructures, as well as signatures of smart-metering devices, HVAC, medical devices. The idea os the project is to gather information about the ways of improving the security measures in modern ICS environments and to create guidelines for it's hardering. &lt;br /&gt;
&lt;br /&gt;
=Project About=&lt;br /&gt;
{{:Projects/OWASP_Scada_Security_Project}} &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;/div&gt;</summary>
		<author><name>Andrey Komarov</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Scada_Security_Project&amp;diff=147255</id>
		<title>Projects/OWASP Scada Security Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Scada_Security_Project&amp;diff=147255"/>
				<updated>2013-03-09T08:12:40Z</updated>
		
		<summary type="html">&lt;p&gt;Andrey Komarov: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:Project About&lt;br /&gt;
| project_name =OWASP Scada Security Project&lt;br /&gt;
| project_home_page =OWASP_Scada_Security_Project&lt;br /&gt;
| project_description =The primary aim of OWASP SCADA Security project is to gather information about different ICS/SCADA security threats related to WEB-applications and it’s environments, starting from reconnaissance (“foorprinting”) stage to vulnerabilities exploitation. &lt;br /&gt;
&lt;br /&gt;
Primary goals:&amp;lt;br&amp;gt;&lt;br /&gt;
-to aware ICS/SCADA developers about security vulnerabilities by providing information about found WEB-application viulnerabilities in software and firmware on famous vendors;&amp;lt;br&amp;gt;&lt;br /&gt;
-to create and publish freeware and open-source tools for ICS/SCADA security assessment written on scripting languages. &lt;br /&gt;
| project_license =Apache 2.0 License  (fewest restrictions, even allowing proprietary modifications and proprietary forks of your project)&lt;br /&gt;
| leader_name1 =Andrey Komarov&lt;br /&gt;
| leader_email1 =Andrey.Komarov@owasp.org &lt;br /&gt;
| leader_username1 =This is the wiki account for the leader&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp_scada_security_project&lt;br /&gt;
| project_road_map = https://www.owasp.org/index.php/Projects/OWASP_Scada_Security_Project/Roadmap&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Andrey Komarov</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Scada_Security_Project/Roadmap&amp;diff=147254</id>
		<title>Projects/OWASP Scada Security Project/Roadmap</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Scada_Security_Project/Roadmap&amp;diff=147254"/>
				<updated>2013-03-09T08:12:00Z</updated>
		
		<summary type="html">&lt;p&gt;Andrey Komarov: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;03.2013 – to create a “SCADA footprinting” cheetsheat;&lt;br /&gt;
&lt;br /&gt;
04.2013 – to create a “RTU &amp;amp; ICS telemetry devices footprinting” cheetsheat (Cheet Sheet will be updated);  &lt;br /&gt;
&lt;br /&gt;
07.2013 – to create open-source footprinting library or tool;&lt;br /&gt;
&lt;br /&gt;
09.2013 – to create a prototype of IDS/IPS system on WEB-application threats related to ICS/SCADA, to formalize attack patterns;&lt;br /&gt;
&lt;br /&gt;
10.2013 – to create a library of IDS/IPS or honeypot system for WEB-environments acting as honeypot on standart WEB-servers for malicious activities detection and prevention. &lt;br /&gt;
&lt;br /&gt;
12.2013 – to create Hardering Guide for the most popular WEB-applications front-ends and server-side applications written on scripting languages used in ICS/SCADA of famous technological vendors. &lt;br /&gt;
&lt;br /&gt;
01.2014 – to create cyber intelligence module for ICS/SCADA/RTUs WEB-applications detection, to improve “SCADA footprinting” and “RTU &amp;amp; ICS telemetry devices footprinting” cheetsheats.&lt;/div&gt;</summary>
		<author><name>Andrey Komarov</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Scada_Security_Project/Releases/Current&amp;diff=147246</id>
		<title>Projects/OWASP Scada Security Project/Releases/Current</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Scada_Security_Project/Releases/Current&amp;diff=147246"/>
				<updated>2013-03-09T07:47:16Z</updated>
		
		<summary type="html">&lt;p&gt;Andrey Komarov: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Scada Security Project&lt;br /&gt;
| project_home_page = OWASP Scada Security Project&lt;br /&gt;
| release_name = SCADA/RTU/PLC detection cheet sheet&lt;br /&gt;
| release_date = 09.03.2013&lt;br /&gt;
&lt;br /&gt;
| release_description = The signatures for the most popular SCADA/RTU/PLC products of famous vendors. It covers several methods of detection through the application level protocols such as HTTP, FTP, SSH. The aim of the cheet sheet is to gather information about the criteria useful for external reconnaissance stage from the hacker side. Additionally, this information will be used for the SCADA Honeypot developing within the project. The file will be regularly updated, feel free to send own signatures and methods of detection.&lt;br /&gt;
&lt;br /&gt;
'''Release Description'''&lt;br /&gt;
&lt;br /&gt;
| release_license = Apache 2.0 License (fewest restrictions, even allowing proprietary modifications and proprietary forks of your project)&lt;br /&gt;
| release_download_link = https://www.owasp.org/index.php/File:SCADA_detection_cheat_sheet_-_v.1.0.xlsx&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Andrey Komarov&lt;br /&gt;
| leader_email1 = andrey.komarov@owasp.org&lt;br /&gt;
| leader_username1 = 12837&lt;br /&gt;
&lt;br /&gt;
| release_notes = Additional Notes&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Andrey Komarov</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:SCADA_detection_cheat_sheet_-_v.1.0.xlsx&amp;diff=147126</id>
		<title>File:SCADA detection cheat sheet - v.1.0.xlsx</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:SCADA_detection_cheat_sheet_-_v.1.0.xlsx&amp;diff=147126"/>
				<updated>2013-03-08T21:11:54Z</updated>
		
		<summary type="html">&lt;p&gt;Andrey Komarov: The signatures for the most popular SCADA/RTU/PLC products of famous vendors. It covers several methods of detection through the application level protocols such as HTTP, FTP, SSH. The aim of the cheet sheet is to gather information about the criteria use&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;The signatures for the most popular SCADA/RTU/PLC products of famous vendors. It covers several methods of detection through the application level protocols such as HTTP, FTP, SSH. The aim of the cheet sheet is to gather information about the criteria useful for external reconnaissance stage from the hacker side. Additionally, this information will be used for the SCADA Honeypot developing within the project. The file will be regularly updated, feel free to send own signatures and methods of detection.&lt;/div&gt;</summary>
		<author><name>Andrey Komarov</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Scada_Security_Project&amp;diff=147125</id>
		<title>Projects/OWASP Scada Security Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Scada_Security_Project&amp;diff=147125"/>
				<updated>2013-03-08T20:52:17Z</updated>
		
		<summary type="html">&lt;p&gt;Andrey Komarov: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:Project About&lt;br /&gt;
| project_name =OWASP Scada Security Project&lt;br /&gt;
| project_home_page =OWASP_Scada_Security_Project&lt;br /&gt;
| project_description =The primary aim of OWASP SCADA Security project is to gather information about different ICS/SCADA security threats related to WEB-applications and it’s environments., starting from econnaissance (“foorprinting”) stage to vulnerabilities exploitation. &lt;br /&gt;
&lt;br /&gt;
Primary goals:&amp;lt;br&amp;gt;&lt;br /&gt;
-to aware ICS/SCADA developers about security vulnerabilities by providing information about found WEB-application viulnerabilities in software and firmware on famous vendors;&amp;lt;br&amp;gt;&lt;br /&gt;
-to create and publish freeware and open-source tools for ICS/SCADA security assessment written on scripting languages. &lt;br /&gt;
| project_license =Apache 2.0 License  (fewest restrictions, even allowing proprietary modifications and proprietary forks of your project)&lt;br /&gt;
| leader_name1 =Andrey Komarov&lt;br /&gt;
| leader_email1 =Andrey.Komarov@owasp.org &lt;br /&gt;
| leader_username1 =This is the wiki account for the leader&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp_scada_security_project&lt;br /&gt;
| project_road_map = https://www.owasp.org/index.php/Projects/OWASP_Scada_Security_Project/Roadmap&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Andrey Komarov</name></author>	</entry>

	</feed>