Use for authorized OT/ICS security assessment covering Purdue model zoning, PLC/SCADA exposure, industrial protocol discovery, and safe passive-first evaluation.
Run in your terminal
AI-first code editor with Composer
Before installing skills in Cursor, ensure your development environment meets these requirements:
node --versionot-icsExecute the skills CLI command in your project's root directory to begin installation:
Package manager
npx skills install zhaoxuya520/reverse-skill/skills/ot-icsFetches ot-ics from zhaoxuya520/reverse-skill and configures it for Cursor.
The CLI shows a list of agents. Use arrow keys and space to select Cursor:
Confirm successful installation by checking the skill directory location:
Restart Cursor to activate ot-ics. Access via /ot-icsin your agent's command palette.
We perform automated surface-level scans (Gen AI Scanner, Socket, Snyk) during installation. These checks detect common vulnerabilities but do not guarantee complete security. Always review skill source code and verify the publisher's reputation before production use.
Skills execute code in your environment. Always review source, verify the publisher, and test in isolation before production.
Submit your Claude Code skill and start earning
Automate repetitive workflows and reduce manual effort
Example
Generate reports, summarize documents, draft communications
Save 3-5 hours per week on routine tasks
Learn new skills, understand complex topics, get expert guidance
Example
Explain concepts, provide examples, suggest learning resources
Accelerate learning and skill development by 2x
Enhance output quality through reviews, suggestions, and refinements
Example
Review drafts, suggest improvements, catch errors
Improve work quality by 30-40% with less effort
Package manager
npx skills install zhaoxuya520/reverse-skill/skills/ot-icsWorks with
0
total installs
0
this week
10.9K
GitHub stars
0
upvotes
| name | ot-ics |
| description | Use for authorized OT/ICS security assessment covering Purdue model zoning, PLC/SCADA exposure, industrial protocol discovery, and safe passive-first evaluation. |
NOW: 读取 ../field-journal/precedent-pentest.md — 工控环境误操作可致物理危害NOW: 书面授权必须写清:站点、网段、是否允许主动扫描/写寄存器NOW: case-init;默认 passive-first;ready_for_act 前禁止对 PLC 写操作NEXT: tool-index;多数工控工具需手动与隔离实验网ACT: 资产与分区识别 → 暴露面 → 只读验证MUST NOT 在未明确允许时:
- 对 PLC 写线圈/寄存器
- 全网高速率扫描生产 OT
- 中断安全仪表系统(SIS)相关路径
优先:只读识别、流量镜像、离线固件/配置分析
□ Purdue L0–L5 草图:现场设备 → 控制 → 监督 → 站点 DMZ → 企业
□ 资产清单:PLC/RTU/HMI/工程师站/历史库/Jump host
□ 协议与端口基线(仅授权网段)
□ SPAN/镜像 PCAP → protocol-reverse / Wireshark 工控解析器
□ 配置与工程文件离线审计(TIA/RSLogix 导出等)
□ 默认口令与明文协议(Modbus 无认证)记录为 Finding,不写盘改值
□ 低速识别,维护窗口
□ 只读功能码优先
□ 每步 Evidence;异常立即停止并通报
□ 控制器固件版本 → CVE 映射(不盲刷固件)
□ 联合 firmware-pentest 做离线镜像分析
| 工具 | 用途 | 注意 |
|---|---|---|
| Wireshark 工控 dissectors | 被动解析 | 镜像流量 |
| Nmap NSE(受限) | 识别 | 速率与时间窗 |
| Claroty/Nozomi 等 | 资产发现 | 商业/现场 |
| PLC 厂商工程软件 | 配置审计 | 离线优先 |
| binwalk / Ghidra | 固件 | 离线 |
references/ot-safe-assessment.md../firmware-pentest/ ../protocol-reverse/ ../network via pentest-tools上游: MASTER R28
下游: 固件深挖 firmware-pentest;协议 protocol-reverse;IT 横向 windows-ad/attack-chain
同级: 不要用普通 Web 扫默认参数打 OT
Prerequisites
Time Estimate
15-45 minutes depending on use case complexity
Steps
Common Pitfalls
✓ Do
✗ Don't
💡 Pro Tips
✓ Use when
Use when skill capabilities match your task, clear ROI on time saved, and you can validate outputs. Best for repetitive tasks, learning, and quality improvement.
✗ Avoid when
Avoid when task requires deep expertise you can't validate, involves sensitive decisions, or when learning process is more valuable than speed of completion.
Keeps context tight: ot-ics is the kind of skill you can hand to a new teammate without a long onboarding doc.
We added ot-ics from the explainx registry; install was straightforward and the SKILL.md answered most questions upfront.
ot-ics has been reliable in day-to-day use. Documentation quality is above average for community skills.
ot-ics reduced setup friction for our internal harness; good balance of opinion and flexibility.
ot-ics has been reliable in day-to-day use. Documentation quality is above average for community skills.
Solid pick for teams standardizing on skills: ot-ics is focused, and the summary matches what you get after install.
Registry listing for ot-ics matched our evaluation — installs cleanly and behaves as described in the markdown.
Solid pick for teams standardizing on skills: ot-ics is focused, and the summary matches what you get after install.
We added ot-ics from the explainx registry; install was straightforward and the SKILL.md answered most questions upfront.
Keeps context tight: ot-ics is the kind of skill you can hand to a new teammate without a long onboarding doc.
showing 1-10 of 26