Loading...
Cyber-Physical Security covers the tools that protect the systems where software meets the physical world: operational technology, industrial control systems, IoT and embedded devices, and the critical infrastructure they run. You reach for it once your risk surface stops being data and starts being a turbine, a PLC, a building automation controller, or an infusion pump, where the wrong packet can halt a process line or hurt someone. The space breaks into distinct problems. OT Asset Discovery and OT Network Segmentation give you the inventory and the boundaries that IT tooling cannot, because an IT scanner would crash a fragile controller on contact. Industrial Control System Security, SCADA Security, and OT Vulnerability Management handle plant-floor protocols and the patch-cycle reality of equipment that runs for twenty years. CPS Protection frames the broader cross-domain risk, while IoT Security, Firmware and Embedded Security, and Medical Device Security each address a fleet of connected devices with their own constraints. Most security leaders assemble coverage across several of these, because the OT environment, the connected-device estate, and the firmware supply chain rarely answer to one platform.
We cover 268 Cyber-Physical Security tools, 19 free and 249 commercial.
Accuracy and depth improve over time. Last reviewed Aug 2026. Is something off? Reach out.
Secures medical devices with visibility, risk assessment, and policy enforcement
Unified platform for protecting cyber-physical systems across OT, IT, and IoT
ICS/OT network security solution with IPS, firewall, and segmentation
XIoT security platform providing visibility and protection for IoT/OT assets
Industrial security gateway for OT environments with ruggedized hardware
Industrial data platform for streaming operational data using MQTT protocol
Remote privileged access solution for OT/ICS and cyber-physical systems
OT/IoT/IT asset discovery & threat detection platform for cyber-physical systems
OT zero trust security platform for industrial control systems
Platform for vulnerability detection in firmware, binaries, and SBOMs
AVEVA is an industrial software provider offering engineering, operations, and data management solutions for operational technology environments across various industrial sectors.
A PowerShell security assessment script that evaluates Siemens SIMATIC PCS 7 industrial control systems for security misconfigurations and vulnerabilities.
ICSREF is a modular framework that automates reverse engineering of CODESYS industrial control system binaries to identify functions, library calls, and program structures.
Java MODBUS simulator with scriptable functions and dynamic resource creation.
Ultimate Internet of Things/Industrial Control Systems reconnaissance tool powered by Shodan.
Simple perl script for making Modbus transactions from the command line.
Passively maps and visually displays ICS/SCADA network topology for network security
Python exploitation tool for gaining root access to Sixnet RTUs in SCADA networks by exploiting application-level vulnerabilities.
PLC-side fuzzing tool for uncovering vulnerabilities in ICS control applications.
A customized Kali Linux distribution for ICS/SCADA pentesting professionals
A tool for scanning networks, enumerating Siemens PLCs, and gathering detailed information about them.
Repository of pcap traces for evaluating Network Intrusion Detection Systems in HVAC systems.
Developing APIs to access memory on industrial control system devices.
A Digital Bond research project to enumerate ICS applications and devices
268 tools across 9 specializations · 19 free, 249 commercial
ICS Security
Industrial Control System (ICS) security for PLCs, DCS, and industrial automation in plants and manufacturing.
CPS Protection
Cross-domain cyber-physical systems protection platforms spanning healthcare devices, building management systems, and broad IoT/OT asset protection.
OT Network Segmentation
OT network segmentation tools for isolating operational technology networks from IT networks and external threats.
Common questions about Cyber-Physical Security tools, selection guides, pricing, and comparisons.
Cyber-Physical Security is the practice and tooling for protecting systems where software controls physical processes: operational technology, industrial control systems, SCADA, IoT and embedded devices, and the critical infrastructure they run. It covers asset discovery, network segmentation, vulnerability management, and firmware analysis for equipment that traditional IT security cannot safely touch. The aim is to keep these environments visible, monitored, and resilient without disrupting the process they control.
IT security optimizes for confidentiality and can patch and reboot on a schedule. Cyber-physical systems optimize for availability and safety, run for decades on fragile protocols, and often cannot be patched or actively scanned without risking the process. The stakes shift from data loss to physical harm and downtime, which is why this category leans on passive monitoring, segmentation, and compensating controls rather than the agent-and-scan model IT tools assume.
Start with visibility. OT Asset Discovery tells you what is actually on the network, which nearly every program finds is more than the documentation claims. From there, OT Network Segmentation and ICS or SCADA Security let you contain and monitor the environment, while OT Vulnerability Management prioritizes what little you can realistically fix. If your exposure is a connected-device estate or medical equipment, IoT Security and Medical Device Security come first instead.
IoT Security is one subcategory inside the broader cyber-physical space, focused on the connected-device estate: cameras, sensors, building systems, and consumer-grade gear bridging into the network. Cyber-Physical Security also spans industrial control and SCADA on the plant floor, firmware and embedded analysis at the chip and bootloader level, and medical devices in clinical settings. The threats and constraints differ enough that most teams need coverage across several, not a single IoT tool.
Your IT stack covers the corporate network around these systems but not the systems themselves. Endpoint agents will not install on a PLC, IT vulnerability scanners can crash a controller, and your SIEM does not parse industrial protocols. Dedicated cyber-physical tooling fills that gap with passive discovery, protocol-aware monitoring, and OT-safe vulnerability management, then feeds the results back into the SOC workflow you already run.
Ranked by real community upvotes and saves — never for sale. Featured placement is always labeled.
OT Asset Discovery
OT asset discovery tools for identifying and inventorying industrial control systems, IoT devices, and operational technology assets.