Stuxnet Vulnerabilities Analysis of SCADA Systems

被引:0
|
作者
Wang, Yong [1 ]
Gu, Dawu [2 ]
Peng, DaoGang [1 ]
Chen, Shuai [1 ]
Yang, Heng [1 ]
机构
[1] Shanghai Univ Elect Power, Dept Comp Sci & Technol, 2103 Pingliang Rd, Shanghai 200090, Yangpu District, Peoples R China
[2] Shanghai Jiao Tong Univ, Dept Comp Sci & Engn, Shanghai 200240, Peoples R China
基金
上海市自然科学基金;
关键词
Stuxnet; Vulnerability; CVE; SCADA;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Stuxnet virus is a first discovered malware to damage nuclear power station in June 2010 and targets only Siemens supervisory control and data acquisition (SCADA) system via vulnerabilities. Through the static reverse and dynamic analysis of Stuxnet malware tiles, we researched on MS10-046 (CVE-2010-2772) shortcut vulnerability, MS10-061 (CVE-2010-2729) in print spooler service vulnerability and MS10-073 (CVE-2010-2743) keyboard layout elevation of privilege vulnerability. The paper illustrated internal details and the Stuxnet implemented methods.
引用
收藏
页码:640 / +
页数:2
相关论文
共 50 条
  • [41] SCADA systems and their applications
    Dickinson, M
    MEASUREMENT & CONTROL, 2002, 35 (03): : 68 - 68
  • [42] PLCS AND SCADA SYSTEMS
    DEWINTER, FA
    BENKE, LM
    INTECH, 1987, 34 (02) : 31 - 34
  • [43] Securing SCADA systems
    Patel, Sandip C.
    Sanyal, Pritimoy
    Information Management and Computer Security, 2008, 16 (04): : 398 - 414
  • [44] SCADA/Mes systems
    Bailey, J
    CONTROL AND INSTRUMENTATION, 1997, 29 (07): : 37 - 40
  • [45] INTEGRATING SCADA SYSTEMS
    BIRCUMSHAW, B
    CONTROL AND INSTRUMENTATION, 1994, 26 (10): : 35 - &
  • [46] A Systems Theoretic Approach to the Security Threats in Cyber Physical Systems Applied to Stuxnet
    Nourian, Arash
    Madnick, Stuart
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2018, 15 (01) : 2 - 13
  • [47] Intrusion Detection in SCADA Systems by Traffic Periodicity and Telemetry Analysis
    Zhang, Jiexin
    Gan, Shaoduo
    Liu, Xiaoxue
    Zhu, Peidong
    2016 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATION (ISCC), 2016, : 318 - 325
  • [48] Towards Improving SCADA Control Systems Security with Vulnerability Analysis
    Cagalaban, Giovanni
    Kim, Seoksoo
    PARALLEL AND DISTRIBUTED COMPUTING AND NETWORKS, 2011, 137 : 27 - 32
  • [49] A Multidimensional Critical State Analysis for Detecting Intrusions in SCADA Systems
    Carcano, A.
    Coletta, A.
    Guglielmi, M.
    Masera, M.
    Fovino, I. Nai
    Trombetta, A.
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2011, 7 (02) : 179 - 186
  • [50] Improving security in SCADA systems through firewall policy analysis
    Rysavy, Ondrej
    Rab, Jaroslav
    Sveda, Miroslav
    2013 FEDERATED CONFERENCE ON COMPUTER SCIENCE AND INFORMATION SYSTEMS (FEDCSIS), 2013, : 1435 - 1440