This interesting paper from Lancaster Research Center shed light on a methodology to create a vulnerability scanner for Industrial Control Systems . The authors leveraged the power of vFeed database correlation, amongst other free utilities, to release a tool called SimaticScan to scan Siemens PLCs vulnerabilities.
vFeed Database was recently leveraged in a SANS Institute infosec reading room paper called “Applying Data Analytics on Vulnerability Data” for GIAC GCIH Gold Certification. The main purpose was to enrich a Nessus based vulnerability scan results with information extracted from vFeed. The paper shows how powerful was vFeed when it comes to vulnerability correlation. […]