Improving Network Security Monitoring for Industrial Control Systems

被引:0
|
作者
Cruz, Tiago [1 ]
Barrigas, Jorge [1 ]
Proenca, Jorge [1 ]
Graziano, Antonio [2 ]
Panzieri, Stefano [3 ]
Lev, Leonid [4 ]
Simoes, Paulo [1 ]
机构
[1] Univ Coimbra, CISUC, DEI, Coimbra, Portugal
[2] Selex ES, Rome, Italy
[3] Univ Rome Tre, Dip Informat & Automaz, Rome, Italy
[4] Israel Elect Corp Ltd, Haifa, Israel
关键词
Industrial Control Systems; Critical Infrastructure Protection; SCADA; Programmable Logic Controllers;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Programmable Logic Controller (PLC) technology plays an important role in the automation architectures of several critical infrastructures such as Industrial Control Systems (ICS), controlling equipment in contexts such as chemical processes, factory lines, power production plants or power distribution grids, just to mention a few examples. Despite their importance, PLCs constitute one of the weakest links in ICS security, frequently due to reasons such as the absence of secure communication mechanisms, authenticated access or system integrity checks. While events such as the Stuxnet worm have raised awareness for this problem, industry has slowly reacted, either due to reliability or cost concerns. This paper introduces the Shadow Security Unit, a low-cost device deployed in parallel with a PLC or Remote Terminal Unit (RTU), being capable of transparently intercepting its communications control channels and physical process I/O lines to continuously assess its security and operational status. The proposed device does not require significant changes to the existing control network, being able to work in standalone or integrated within an ICS protection framework.
引用
收藏
页码:878 / 881
页数:4
相关论文
共 50 条
  • [1] Security Monitoring for Industrial Control Systems
    Coletta, Alessio
    Armando, Alessandro
    SECURITY OF INDUSTRIAL CONTROL SYSTEMS AND CYBER PHYSICAL SYSTEMS, 2016, 9588 : 48 - 62
  • [2] Network Monitoring of Industrial Control Systems: the Lessons of SecurityMatters
    Etalle, Sandro
    CPS-SPC'19: PROCEEDINGS OF THE ACM WORKSHOP ON CYBER-PHYSICAL SYSTEMS SECURITY & PRIVACY, 2019, : 1 - 1
  • [3] Industrial control systems (ics) security in power transmission network
    Tschroub, Abdelghani
    PROCEEDINGS OF 2019 ALGERIAN LARGE ELECTRICAL NETWORK CONFERENCE (CAGRE), 2019, : 17 - 20
  • [4] Cyber-Security-Aware Network Design of Industrial Control Systems
    Genge, Bela
    Haller, Piroska
    Kiss, Istvan
    IEEE SYSTEMS JOURNAL, 2017, 11 (03): : 1373 - 1384
  • [5] Improving Cyber-Security Awareness on Industrial Control Systems: The CockpitCI Approach
    Cruz, Tiago
    Proenca, Jorge
    Simoes, Paulo
    Aubigny, Matthieu
    Ouedraogo, Moussa
    Graziano, Antonio
    Yasakhetu, Lasith
    PROCEEDINGS OF THE 13TH EUROPEAN CONFERENCE ON CYBER WARFARE AND SECURITY (ECCWS-2014), 2014, : 59 - 69
  • [6] Security intelligence for industrial control systems
    Amrein, A.
    Angeletti, V.
    Beitler, A.
    Nemet, M.
    Reiser, M.
    Riccetti, S.
    Stoecklin, M. Ph
    Wespi, A.
    IBM JOURNAL OF RESEARCH AND DEVELOPMENT, 2016, 60 (04)
  • [7] Cyber Security for Industrial Control Systems
    Cunningham, Steve
    POWER ENGINEERING, 2011, 115 (11) : 142 - +
  • [8] IT SECURITY ASPECTS OF INDUSTRIAL CONTROL SYSTEMS
    Holecko, P.
    Krbilova, I.
    ADVANCES IN ELECTRICAL AND ELECTRONIC ENGINEERING, 2006, 5 (01) : 136 - 139
  • [9] Survey of Industrial Control Systems Security
    Yang T.
    Zhang J.
    Huang Z.
    Chen Y.
    Huang C.
    Zhou W.
    Liu P.
    Feng T.
    Zhang Y.
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2022, 59 (05): : 1035 - 1053
  • [10] A Survey on Network Security Monitoring Systems
    Ghafir, Ibrahim
    Prenosil, Vaclav
    Svoboda, Jakub
    Hammoudeh, Mohammad
    2016 IEEE 4TH INTERNATIONAL CONFERENCE ON FUTURE INTERNET OF THINGS AND CLOUD WORKSHOPS (FICLOUDW), 2016, : 77 - 82