Offensive OT security
Penetration Testing, Adversary Simulation and Red Teaming grounded in the behavior of industrial systems.
OT / ICS SECURITY · INDUSTRIAL ROOTS
I’m Omar Morando. I research how industrial systems fail, build the tools to test them, and turn that knowledge into stronger defenses.
Co-Founder & CTO · BlackFox
Creator & Lead Developer · SCADAsploit
Understand the system. Challenge its defenses.
01 / BACKGROUND
My path into security started with the systems that run industry.
SCADA software, PLCs, industrial networks and embedded systems came first. Offensive security followed. That engineering background shapes how I investigate vulnerabilities: from the code and the protocol to what happens in the physical process.
Across more than 20 years in industrial automation and OT/ICS, I’ve combined software development, security research and technology leadership. Today, I bring those disciplines together in offensive assessments, SCADAsploit and practical training.
Industrial automation → Software & embedded → Offensive OT security → Research & technology leadership
02 / EXPERTISE
Offensive OT security at the core. IT expertise where industrial systems and enterprise networks meet.
Penetration Testing, Adversary Simulation and Red Teaming grounded in the behavior of industrial systems.
PLC, SCADA, remote I/O, IIoT and industrial protocols. From device internals to network architecture.
Vulnerability research, protocol analysis, network and binary exploitation, and exploit/tool development.
Segmentation, monitoring and detection, secure industrial architectures and IEC 62443.
Industrial software, real-time systems and robotics. Engineering the tools that support security research.
Cybersecurity for connected vehicles and embedded ECUs, informed by ISO/SAE 21434 and UNECE requirements.
TECHNICAL STACK
C / C++ Python Go C# Qt / QML PyQt ROS
Embedded & real-time: FreeRTOS · ChibiOS/RT · Linux/RT. Security: reverse engineering · malware analysis · tool development.
03 / FEATURED RESEARCH
Offensive Security Framework for IT/OT Adversary Simulation
I created SCADAsploit to bring an industrial perspective to offensive security. The framework supports OT/ICS penetration testing, Red Teaming and security validation across converging IT and OT environments.
A remote C2 architecture and graphical commander connect asset discovery, pre- and post-exploitation, OT-oriented modules and IT/OT pivoting. Its industrial focus includes Schneider Electric, Siemens, Rockwell Automation and ABB systems.
Explore SCADAsploit
04 / WORKSHOPS & ADVANCED TRAINING
Practical OT cybersecurity training. Understand the systems, investigate attack techniques and build the skills to protect them.
Advanced · OT foundations required
Develop a practical approach to protecting industrial devices and networks, from security fundamentals to incident response.
FORSystem designers, PLC/SCADA programmers, industrial network specialists and OT security teams.
Advanced · PLC programming required
Apply security by design to PLC software. Build more resilient PLC/HMI/SCADA applications and diagnose cyber impacts on program execution.
FORPLC programmers, maintenance technicians, system integrators, machine builders and automation engineers.
Advanced · Hands-on
Explore industrial attacks to understand both offense and defense. Discover vulnerabilities, develop tools and evaluate hardening measures.
FOROT security professionals and engineers familiar with ICS, programming and basic penetration testing tools.
05 / EXPERIENCE
A selected career timeline, from SCADA development to offensive security and technology strategy.
Current
Co-Founder & CTO
Technology strategy, OT/IT security, offensive research and proprietary tool development.
Appointment: February 2025
Director of OT Cybersecurity
OT security across governance, infrastructure, monitoring and training; SCADAsploit development leadership.
2021 — 2025
OT & offensive security leadership
Head of OT Cybersecurity (2023–Jan 2025); CTO (Apr–Dec 2022); Adversary Cybersecurity Director (Dec 2021–Apr 2022).
2020 — 2022
Automotive Cybersecurity Specialist · External consultant
Hardware and software cybersecurity for connected-vehicle ECUs and telematics, with ISO/SAE 21434 and UNECE R155.
2010 — 2021
OT Cybersecurity Expert
Offensive OT research, penetration testing and real-time embedded software. UAV R&D with DigiSky on CPSwarm (2017–2019).
2008 — 2010
International Business Development · SCADA
2005 — 2008
Business Development
1990 — 2005
Software Engineer → Product Manager → Group Product Manager
1987 — 1990
Software Engineer · SCADA development
06 / SELECTED CONFERENCES
Technical talks and live demonstrations at international security events.
Talk titles are shown in their original English.
SCADAsploit: a C2 for OT. How to break an ICS system
SCADAsploit: a C2 for OT. How to break an ICS system
SCADAsploit: a C2 for OT. How to break an ICS system
SCADAsploit · Framework presentation
How to break the Modbus protocol and cause a PLC DoS
Cybersecurity of EV systems
How to break the Modbus protocol and cause a PLC DoS
07 / CONTACT
Offensive assessments, OT Adversary Simulation, research collaborations, speaking and hands-on workshops.
For encrypted communication
F1A4 6BD1 24EC 0C28 8CAC
5B44 62A0 1F15 04EE 4EDF