Carding
Professional
- Messages
- 2,870
- Reaction score
- 2,511
- Points
- 113
An updated version of the Caldera program pretends to be a hacker in order to test the system for strength.
MITRE, together with CISA introduced an update to the Caldera tool. The new module will be used in industrial systems to test the protection of critical objects.
Caldera is a unique open source program that allows you to simulate the actions of a potential attacker. This process is based on the well — known MITRE ATT&CK framework, a kind of reference book for understanding and responding to cyber threats.
The update will support key industrial protocols: BACnet, Modbus, and DNP3. The program will help you simulate scenarios that pose a threat specifically to production mechanisms. Detailed installation instructions are already available on GitHub.
Main tasks of Caldera:
Specialists from HSSEDI, the Institute for Systems Engineering and Development in the Field of National Security, also participated in the creation of the new version. The product was tested in CISA laboratories, where specialists were able to see how the equipment behaves during cyber attacks in practice.
Yosri Barsoom, Vice President and Director of HSSEDI, emphasizes: "Protecting our country's critical infrastructure is a critical challenge. We are excited to strengthen our collaboration with CISA by adapting Caldera systems for operational technologies."
MITRE, together with CISA introduced an update to the Caldera tool. The new module will be used in industrial systems to test the protection of critical objects.
Caldera is a unique open source program that allows you to simulate the actions of a potential attacker. This process is based on the well — known MITRE ATT&CK framework, a kind of reference book for understanding and responding to cyber threats.
The update will support key industrial protocols: BACnet, Modbus, and DNP3. The program will help you simulate scenarios that pose a threat specifically to production mechanisms. Detailed installation instructions are already available on GitHub.
Main tasks of Caldera:
- Red teaming: working out all possible scenarios and localization of vulnerabilities
- Blue teaming: thinking through security strategies
- Purple teaming: Combining the first two methods for comprehensive corporate network protection
Specialists from HSSEDI, the Institute for Systems Engineering and Development in the Field of National Security, also participated in the creation of the new version. The product was tested in CISA laboratories, where specialists were able to see how the equipment behaves during cyber attacks in practice.
Yosri Barsoom, Vice President and Director of HSSEDI, emphasizes: "Protecting our country's critical infrastructure is a critical challenge. We are excited to strengthen our collaboration with CISA by adapting Caldera systems for operational technologies."