Cyberlium

ICS/SCADA › Module 10 › Lesson 1

BeginnerModule 10Lesson 1/5

Checklist

Capstone checklist literacy names all Topic 38 artifacts across modules on YOUR OT lab on YOUR $OT_LAB — defensive OT literacy only; no real-plant attacks, unauthorized OT scans, or exploit cookbooks.

15 min+40 XP3 quiz
Module progress1 of 5

Visual · t38_checklist

Checklist literacy. $OT_LAB only. Original Cyberlium.

Opening

Capstone starts with a checklist — verify every module artifact exists on YOUR OT lab before claiming topic completion.

Topic 38 capstone checklist verifies M1 setup, M2 ICS fundamentals, M3 OT/IT pack, M4 protocols, M5 threats, M6 segmentation diagram, M7 monitoring, M8 hardening, and M9 incident pack — all on OT lab with NEVER boundaries respected. Cyberlium Topic 38 practices on $OT_LAB — YOUR fictional OT templates, zone diagrams, and labeled checklists under $HOME/cyberlium-lab/t38-ot/ no real-plant attacks, unauthorized OT scans, or exploit cookbooks. Next: Lab Path.

1. What Checklist covers (named)

Checklist literacy: module artifact paths, chmod 600 confirmation, NEVER list reviewed, LAB-OT-001 label present. Mark each module pack complete before capstone lab. On $OT_LAB, document literacy rows on fictional LAB-OT-001 — never live plant IPs, credentials, or exploit steps.

Write capstone checklist file with bracket items for modules 1–9. Fictional plant scope only. On $OT_LAB, document literacy rows on fictional LAB-OT-001 — never live plant IPs, credentials, or exploit steps.

Command guide

Try these commands — What Checklist covers (named)

═══ TOOLS & WEBSITES ═══ Browse / read these (authorized learning only — stay in YOUR lab / program scope)

CISA ICS — https://www.cisa.gov/topics/industrial-control-systems NIST SP 800-82 — https://csrc.nist.gov/publications/detail/sp/800-82/rev-3/final

═══ INSTALL ═══

Linux (Debian/Ubuntu):

Command — copy this

sudo apt install python3

macOS:

Command — copy this

brew install python3

Windows: Download https://python.org/downloads/

═══ LINUX / macOS ═══

Command — copy this

export OT_LAB=${OT_LAB:-$HOME/cyberlium-lab/t38-ot}
cat > "$OT_LAB/notes/capstone-checklist.txt" <<'EOF'
[ ] lab.env + LAB-OT-001/ zones assets protocols threats monitoring hardening incident
[ ] roe.txt + no-plant-attacks.txt reviewed
[ ] M2: ICS fundamentals notes
[ ] M3: OT/IT pack
[ ] M4: protocols (defensive Modbus literacy only)
[ ] M5: threats history+defense (Stuxnet lessons, no replication)
[ ] M6: zone map + firewall stub + remote access hygiene
[ ] M7: visibility + anomaly + asset inventory
[ ] M8: patch + hardening + vendor hygiene
[ ] M9: OT IR + reporting + lessons learned
[ ] never: Modbus exploit cookbooks / PLC attacks on live plants / unauthorized OT scans
EOF

Command — copy this

grep '\[ \]' "$OT_LAB/notes/capstone-checklist.txt"

Primary tools to practice this lesson: grep, python3. Reference sites: CISA ICS (https://www.cisa.gov/topics/industrial-control-systems); NIST SP 800-82 (https://csrc.nist.gov/publications/detail/sp/800-82/rev-3/final). Run every command in the box — install first, then the usage lines — only on YOUR lab / program scope.

2. Why Checklist matters for defenders

Checklists prevent gap-filled capstone submissions. Mentors grade integrity — not attack skill. On $OT_LAB, document literacy rows on fictional LAB-OT-001 — never live plant IPs, credentials, or exploit steps.

Students maintain checklist on lab notes. Production programs use similar maturity assessments. On $OT_LAB, document literacy rows on fictional LAB-OT-001 — never live plant IPs, credentials, or exploit steps.

3. $OT_LAB boundary

Forbidden: checkbox complete without artifacts on disk. Allowed: capstone checklist on OT lab. On $OT_LAB, document literacy rows on fictional LAB-OT-001 — never live plant IPs, credentials, or exploit steps.

Ship: capstone checklist. Next: Lab Path.

4. What you ship: checklist card for $OT_LAB

Capstone checklist literacy names all Topic 38 artifacts across modules on YOUR OT lab. $OT_LAB named. NEVER real-plant attack steps. chmod 600.

5. What you record before the next lesson

Date (UTC). Checklist card. $OT_LAB named. File t38-m10-l01-checklist.txt chmod 600.

6. Wrong vs right: plant attacks vs YOUR OT lab sims

Worked failure — same MSF word, opposite target. Right never needs a café Wi-Fi or classmate laptop.

  • Wrong

    Mark all modules complete with empty lab folder.

  • Right

    Write checklist card for YOUR $OT_LAB. Next: Lab Path.

Mission: document Checklist on YOUR OT lab

1) Name literacy rows on $OT_LAB. 2) Write NEVER list (no real-plant attacks, unauthorized OT scans, or exploit cookbooks). 3) chmod 600. Never scan or exploit real industrial networks.

Stuck? Ask Cyberlium AI Mentor

Ask Mentor: literacy on $OT_LAB — not attack recipes against live plants.

Knowledge Check

1

APPLY: Checklist on Cyberlium means:

Multiple choice

Knowledge Check

2

APPLY: True or False: Topic 38 includes ICS attack cookbooks against real plants.

True or False

Knowledge Check

3

APPLY: Checklist literacy on Cyberlium uses:

Multiple choice

← Previous

Answer all 3 knowledge checks to continue. (0/3 answered)