Opportunities for Early Detection and Prediction of Ransomware Attacks against Industrial Control Systems

被引:14
|
作者
Gazzan, Mazen [1 ,2 ]
Sheldon, Frederick T. [1 ]
机构
[1] Univ Idaho, Coll Engn, Dept Comp Sci, Moscow, ID 83844 USA
[2] Najran Univ, Coll Comp Sci & Informat Syst, POB 1988, Najran, Saudi Arabia
来源
FUTURE INTERNET | 2023年 / 15卷 / 04期
关键词
ransomware; industrial control systems; SCADA; ransomware detection and prevention; attack likelihood prediction; situation awareness; security assessment;
D O I
10.3390/fi15040144
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Industrial control systems (ICS) and supervisory control and data acquisition (SCADA) systems, which control critical infrastructure such as power plants and water treatment facilities, have unique characteristics that make them vulnerable to ransomware attacks. These systems are often outdated and run on proprietary software, making them difficult to protect with traditional cybersecurity measures. The limited visibility into these systems and the lack of effective threat intelligence pose significant challenges to the early detection and prediction of ransomware attacks. Ransomware attacks on ICS and SCADA systems have become a growing concern in recent years. These attacks can cause significant disruptions to critical infrastructure and result in significant financial losses. Despite the increasing threat, the prediction of ransomware attacks on ICS remains a significant challenge for the cybersecurity community. This is due to the unique characteristics of these systems, including the use of proprietary software and limited visibility into their operations. In this review paper, we will examine the challenges associated with predicting ransomware attacks on industrial systems and the existing approaches for mitigating these risks. We will also discuss the need for a multi-disciplinary approach that involves a close collaboration between the cybersecurity and ICS communities. We aim to provide a comprehensive overview of the current state of ransomware prediction on industrial systems and to identify opportunities for future research and development in this area.
引用
收藏
页数:18
相关论文
共 50 条
  • [41] A Data-Driven Framework for Verified Detection of Replay Attacks on Industrial Control Systems
    Gargoum, Sara
    Yassaie, Negar
    Al-Dabbagh, Ahmad W.
    Feng, Chen
    IEEE TRANSACTIONS ON AUTOMATION SCIENCE AND ENGINEERING, 2024, : 1 - 0
  • [42] Understanding Indicators of Compromise against Cyber-attacks in Industrial Control Systems: A Security Perspective
    Asiri, Mohammed
    Saxena, Neetesh
    Gjomemo, Rigel
    Burnap, Pete
    ACM TRANSACTIONS ON CYBER-PHYSICAL SYSTEMS, 2023, 7 (02)
  • [43] Cyber Security in Industrial Control Systems: Analysis of DoS Attacks against PLCs and the Insider Effect
    Ylmaz, Ercan Nurcan
    Ciylan, Bunyamin
    Gonen, Serkan
    Sindiren, Erhan
    Karacayilmaz, Gokce
    2018 6TH INTERNATIONAL ISTANBUL SMART GRIDS AND CITIES CONGRESS AND FAIR (ICSG ISTANBUL 2018), 2018, : 81 - 85
  • [44] Constrained Concealment Attacks against Reconstruction-based Anomaly Detectors in Industrial Control Systems
    Erba, Alessandro
    Taormina, Riccardo
    Galelli, Stefano
    Pogliani, Marcello
    Carminati, Michele
    Zanero, Stefano
    Tippenhauer, Nils Ole
    36TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE (ACSAC 2020), 2020, : 480 - 495
  • [45] A Weighted Minimum Redundancy Maximum Relevance Technique for Ransomware Early Detection in Industrial IoT
    Ahmed, Yahye Abukar
    Huda, Shamsul
    Al-rimy, Bander Ali Saleh
    Alharbi, Nouf
    Saeed, Faisal
    Ghaleb, Fuad A.
    Ali, Ismail Mohamed
    SUSTAINABILITY, 2022, 14 (03)
  • [46] Confidentiality attacks against encrypted control systems
    Naseri A.M.
    Lucia W.
    Youssef A.
    Cyber-Physical Systems, 2023, 9 (03) : 224 - 243
  • [47] Jamming Attacks Against Control Systems: A Survey
    Dong, Yanbo
    Zhou, Peng
    INTELLIGENT COMPUTING, NETWORKED CONTROL, AND THEIR ENGINEERING APPLICATIONS, PT II, 2017, 762 : 566 - 574
  • [48] Modeling cyber-attacks on Industrial Control Systems
    Paliath, Vivin
    Shakarian, Paulo
    IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS: CYBERSECURITY AND BIG DATA, 2016, : 316 - 318
  • [49] Mitigation of sensor attacks on legacy industrial control systems
    Combita, Luis F.
    Cardenas, Alvaro A.
    Quijano, Nicanor
    2017 IEEE 3RD COLOMBIAN CONFERENCE ON AUTOMATIC CONTROL (CCAC), 2017,
  • [50] Denial of Engineering Operations Attacks in Industrial Control Systems
    Senthivel, Saranyan
    Dhungana, Shrey
    Yoo, Hyunguk
    Ahmed, Irfan
    Roussev, Vassil
    PROCEEDINGS OF THE EIGHTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY'18), 2018, : 319 - 329