Hands-On ICS Security – Using GRFICS for Practical Experience

Reposting a post from Manjunath Hiregange from GE Vernova (thanks Manjunath!).

Are you interested in learning more about industrial control system (ICS) security, but struggling to find practical training opportunities?

Look no further than GRFICS (Graphical Realism Framework for Industrial Control Simulations) – free and open-source framework.

𝐖𝐢𝐭𝐡 𝐆𝐑𝐅𝐈𝐂𝐒, 𝐲𝐨𝐮 𝐜𝐚𝐧 𝐯𝐢𝐫𝐭𝐮𝐚𝐥𝐢𝐳𝐞 𝐞𝐧𝐭𝐢𝐫𝐞 𝐈𝐂𝐒 𝐧𝐞𝐭𝐰𝐨𝐫𝐤𝐬 𝐚𝐧𝐝 𝐩𝐫𝐚𝐜𝐭𝐢𝐜𝐞 𝐞𝐱𝐩𝐥𝐨𝐢𝐭𝐢𝐧𝐠 𝐯𝐮𝐥𝐧𝐞𝐫𝐚𝐛𝐢𝐥𝐢𝐭𝐢𝐞𝐬 𝐰𝐡𝐢𝐥𝐞 𝐬𝐞𝐞𝐢𝐧𝐠 𝐭𝐡𝐞 𝐩𝐡𝐲𝐬𝐢𝐜𝐚𝐥 𝐢𝐦𝐩𝐚𝐜𝐭 𝐢𝐧 𝐚 3𝐃 𝐠𝐚𝐦𝐞 𝐞𝐧𝐠𝐢𝐧𝐞.

The GRFICS framework is designed to virtualize entire ICS networks, including realistic 𝐩𝐡𝐲𝐬𝐢𝐜𝐚𝐥 𝐩𝐫𝐨𝐜𝐞𝐬𝐬 𝐬𝐢𝐦𝐮𝐥𝐚𝐭𝐢𝐨𝐧𝐬. While the initial version of GRFICS virtualizes a chemical process control network with a flat, un-segmented network architecture, the framework is modular and can be customized and expanded to include other types of ICS networks.

Here is a link to the 5 VMs: https://github.com/Fortiphyd/GRFICSv2
5 VirtualBox VMs (𝐚 3𝐃 𝐬𝐢𝐦𝐮𝐥𝐚𝐭𝐢𝐨𝐧, 𝐚 𝐬𝐨𝐟𝐭 𝐏𝐋𝐂, 𝐚𝐧 𝐇𝐌𝐈, 𝐚 𝐩𝐟𝐬𝐞𝐧𝐬𝐞 𝐟𝐢𝐫𝐞𝐰𝐚𝐥𝐥, 𝐚𝐧𝐝 𝐚 𝐰𝐨𝐫𝐤𝐬𝐭𝐚𝐭𝐢𝐨𝐧) communicating with each other on host-only virtual networks.

A video series walking through VM setup and example attacks is available on the Fortiphyd YouTube channel at https://www.youtube.com/playlist?list=PL2RSrzaDx0R670yPlYPqM51guk3bQjFG5

Comments are closed.