A collection of plugins that extend MITRE Caldera™ to the Operational Technology (OT) environment.
It is built on the MITRE ATT&CK® for ICS framework.
This repository contains all the Caldera for OT plugins as git submodules. As described in each individual plugin README, it is also possible to git clone a specific protocol plugin directly into the Caldera plugins directory, following the "Installation" guidance.
To install all the Caldera for OT plugins, use the recursive flag while cloning this repository:
git clone https://github.com/mitre/caldera-ot.git --recursive
Note, that after performing the git clone, you will still need to:
- Ensure the plugin(s) of interest are moved into the
caldera/pluginsdirectory of your caldera instance - Enable the plugin(s) by adding their names to the
conf/local.ymlorconf/default.yml(if running Caldera in insecure mode)
For example,
- bacnet
- dnp3
- modbus
- profinet
- iec61850
- gems
The OT plugins can also be setup individually:
Using the IEC 61850 plugin requires the additional step of installing the plugin's payloads by following these steps:
- Download the appropriate compiled payload from the Releases section of the iec61850-payloads repository.
- Save the downloaded payload file(s) in the
caldera/plugins/iec61850/payloadsdirectory of your Caldera installation.
The Caldera for OT plugins unify and expose open-source OT protocol libraries in the form of protocol specific plugins:
bacnet- Building Automation and Control Networks protocoldnp3- Distributed Network Protocol 3 protocolmodbus- Modbus protocolprofinet- Profinet protocol (Basic Discovery and Configuration Protocol (DCP) only)iec61850- IEC 61850 series of communication protocols (Manufacturing Message Specification (MMS) only)gems- Ground Equipment Management Service protocol
Each plugin contains the following documentation:
- High-level README.md
- Source code specific README.md (located under
/src) - Caldera
fieldmanualdocumentation (located under/docs)
The Caldera for OT plugins enable adversary emulation in the OT environment, which supports traditional Caldera use cases. For example, training and testing of operators and defenses.
Also see our presentation on Emulating Adversary Actions in the Operational Environment with Caldera (TM) for OT.
To help you exercise the Caldera for OT plugins without any physical hardware, MITRE provides open-source simulators that act as software targets. Each simulates real-world process control behavior over the relevant protocol:
- Aloha Water Treatment - a simulated water treatment plant using Modbus and BACnet.
- Wildcat Dam - a simulated dam controller using Modbus.
- Grid Watch - a simulated electrical grid outstation using DNP3.
- HVACSim - a simulated HVAC control system using BACnet/IP.
These simulators let you set up an OT network protocol testing environment entirely in software, on a single computer if desired. See each protocol plugin README for protocol-specific guidance.
Please reach out to OT@mitre.org with comments, questions, and to discuss collaboration opportunities.
The Caldera for OT team can also be reached on the official Caldera Discord.