ICSREF
ICSREF is a modular framework that automates reverse engineering of CODESYS industrial control system binaries to identify functions, library calls, and program structures.

ICSREF
ICSREF is a modular framework that automates reverse engineering of CODESYS industrial control system binaries to identify functions, library calls, and program structures.
ICSREF Description
ICSREF is a modular framework for automated reverse engineering of industrial control systems binaries, with specific focus on CODESYS binaries compiled using the CODESYS v2 compiler. The framework provides automated analysis capabilities for PRG programs through several core functions: - Binary blob delimitation to identify functions and routines within compiled code - Detection and identification of calls to dynamic libraries used by industrial control systems - Recognition of calls to static libraries while excluding CODESYS-specific libraries The tool targets the CODESYS platform, which is widely deployed in programmable logic controllers (PLCs) and industrial automation systems. By automating the reverse engineering process, ICSREF reduces the manual effort typically required to analyze industrial control system binaries. The framework was developed by Tasos Keliris and documented in academic research presented at the Network and Distributed System Security Symposium (NDSS) in 2019.
ICSREF FAQ
Common questions about ICSREF including features, pricing, alternatives, and user reviews.
ICSREF is ICSREF is a modular framework that automates reverse engineering of CODESYS industrial control system binaries to identify functions, library calls, and program structures.. It is a OT Security solution designed to help security teams with Reverse Engineering, Automation, Binary Analysis.
FEATURED
Password manager with end-to-end encryption and identity protection features
VPN service providing encrypted internet connections and privacy protection
Fractional CISO services for B2B companies to accelerate sales and compliance
Stay Updated with Mandos Brief
Get the latest cybersecurity updates in your inbox
TRENDING CATEGORIES
POPULAR
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
Security platform that provides protection, monitoring and governance for enterprise generative AI applications and LLMs against various threats including prompt injection and data poisoning.
OSINTLeak is a tool for discovering and analyzing leaked sensitive information across various online sources to identify potential security risks.
Weekly cybersecurity newsletter for security leaders and professionals