Stuxnet Vulnerabilities Analysis of SCADA Systems

被引:0
|
作者
Wang, Yong [1 ]
Gu, Dawu [2 ]
Peng, DaoGang [1 ]
Chen, Shuai [1 ]
Yang, Heng [1 ]
机构
[1] Shanghai Univ Elect Power, Dept Comp Sci & Technol, 2103 Pingliang Rd, Shanghai 200090, Yangpu District, Peoples R China
[2] Shanghai Jiao Tong Univ, Dept Comp Sci & Engn, Shanghai 200240, Peoples R China
基金
上海市自然科学基金;
关键词
Stuxnet; Vulnerability; CVE; SCADA;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Stuxnet virus is a first discovered malware to damage nuclear power station in June 2010 and targets only Siemens supervisory control and data acquisition (SCADA) system via vulnerabilities. Through the static reverse and dynamic analysis of Stuxnet malware tiles, we researched on MS10-046 (CVE-2010-2772) shortcut vulnerability, MS10-061 (CVE-2010-2729) in print spooler service vulnerability and MS10-073 (CVE-2010-2743) keyboard layout elevation of privilege vulnerability. The paper illustrated internal details and the Stuxnet implemented methods.
引用
收藏
页码:640 / +
页数:2
相关论文
共 50 条
  • [1] SCADA Systems in South Africa and Their Vulnerabilities
    Chileshe, Grace
    van Heerden, Renier
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON INFORMATION WARFARE AND SECURITY, 2012, : 90 - 97
  • [2] Vulnerabilities in SCADA and Critical Infrastructure Systems
    Robles, Rosslin John
    Choi, Min-kyu
    Cho, Eun-suk
    Kim, Seok-soo
    Park, Gil-cheol
    Yeo, Sang-Soo
    INTERNATIONAL JOURNAL OF FUTURE GENERATION COMMUNICATION AND NETWORKING, 2008, 1 (01): : 99 - 104
  • [3] Identifying SCADA Systems and Their Vulnerabilities on the Internet of Things
    Samtani, Sagar
    Yu, Shuo
    Zhu, Hongyi
    Patton, Mark
    Matherly, John
    Chen, Hsinchun
    IEEE INTELLIGENT SYSTEMS, 2018, 33 (02) : 63 - 73
  • [4] Assessment of the Vulnerabilities of SCADA, Control Systems and Critical Infrastructure Systems
    Robles, Rosslin John
    Choi, Min-kyu
    INTERNATIONAL JOURNAL OF GRID AND DISTRIBUTED COMPUTING, 2009, 2 (02): : 27 - 34
  • [5] Analysis of SCADA System Vulnerabilities to DDoS Attacks
    Markovic-Petrovic, Jasna D.
    Stojanovic, Mirjana D.
    2013 11TH INTERNATIONAL CONFERENCE ON TELECOMMUNICATIONS IN MODERN SATELLITE, CABLE AND BROADCASTING SERVICES (TELSIKS), VOLS 1 AND 2, 2013, : 591 - 594
  • [6] CYBERSECURITY VULNERABILITIES AND THREATS OF SCADA SYSTEMS IN CRITICAL INFRASTRUCTURES
    Savin, Vlad Daniel
    Serban, Costel
    PROCEEDINGS OF THE 13TH INTERNATIONAL MANAGEMENT CONFERENCE: MANAGEMENT STRATEGIES FOR HIGH PERFORMANCE (IMC 2019), 2019, : 234 - 237
  • [7] IDENTIFYING VULNERABILITIES IN SCADA SYSTEMS VIA FUZZ-TESTING
    Shapiro, Rebecca
    Bratus, Sergey
    Rogers, Edmond
    Smith, Sean
    CRITICAL INFRASTRUCTURE PROTECTION V, 2011, 367 : 57 - +
  • [8] Assessment of SCADA System Vulnerabilities
    Yadav, Geeta
    Paul, Kolin
    2019 24TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2019, : 1737 - 1744
  • [9] SCADA system vulnerabilities ... response
    Flannigan, Stephen
    CONTROL ENGINEERING, 2008, 55 (10) : 13 - 13
  • [10] Exploring ICS/SCADA Network Vulnerabilities
    Strohmier, Hala
    Londhe, Aaryan R.
    Clark, Chris A.
    Pawar, Ronit
    Kram, Brian
    HCI FOR CYBERSECURITY, PRIVACY AND TRUST, PT II, HCI-CPT 2024, 2024, 14729 : 215 - 233