Tags: modbus tcp forensics network wireshark 


While managing some of our thermal systems, we noticed unusual behavior. We collected the network traffic, see if you can find anything unusual.

Developed by: Dan D



Follow TCP Stream --> Stream 1 --> Hex Dump

Some bytes left out --> all the bytes after the "}" are filled into the missing byte places in sequential order.


Original writeup (https://nightxade.github.io/ctf-writeups/writeups/2024/Jersey-CTF-IV-2024/forensics/vibrations.html).