Analyzes existing PCAP captures or live traffic. Never injects a single packet. Safe for production OT environments.
Modbus, EtherNet/IP, CIP, S7comm, DNP3, OPC-UA, BACnet, PROFINET, HART-IP, BSAP, ROCPlus, FINS, and more.
SVG topology viewer with Purdue Model zone layering, pan/zoom, node detail panels, and connection highlighting.
Automatic risk finding generation, Purdue Model violation detection, attack target prioritization with severity classification.
Beaconing analysis with jitter scoring, DNS tunnel detection via entropy analysis, high-volume exfiltration identification.
Built-in ICS/OT, IT reference, Digital Bond S4, and CTF captures for immediate exploration and testing.