Improving Network Security Monitoring for Industrial Control Systems

被引:0
|
作者
Cruz, Tiago [1 ]
Barrigas, Jorge [1 ]
Proenca, Jorge [1 ]
Graziano, Antonio [2 ]
Panzieri, Stefano [3 ]
Lev, Leonid [4 ]
Simoes, Paulo [1 ]
机构
[1] Univ Coimbra, CISUC, DEI, Coimbra, Portugal
[2] Selex ES, Rome, Italy
[3] Univ Rome Tre, Dip Informat & Automaz, Rome, Italy
[4] Israel Elect Corp Ltd, Haifa, Israel
关键词
Industrial Control Systems; Critical Infrastructure Protection; SCADA; Programmable Logic Controllers;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Programmable Logic Controller (PLC) technology plays an important role in the automation architectures of several critical infrastructures such as Industrial Control Systems (ICS), controlling equipment in contexts such as chemical processes, factory lines, power production plants or power distribution grids, just to mention a few examples. Despite their importance, PLCs constitute one of the weakest links in ICS security, frequently due to reasons such as the absence of secure communication mechanisms, authenticated access or system integrity checks. While events such as the Stuxnet worm have raised awareness for this problem, industry has slowly reacted, either due to reliability or cost concerns. This paper introduces the Shadow Security Unit, a low-cost device deployed in parallel with a PLC or Remote Terminal Unit (RTU), being capable of transparently intercepting its communications control channels and physical process I/O lines to continuously assess its security and operational status. The proposed device does not require significant changes to the existing control network, being able to work in standalone or integrated within an ICS protection framework.
引用
收藏
页码:878 / 881
页数:4
相关论文
共 50 条
  • [11] A NETWORK MONITORING AND CONTROL SECURITY ARCHITECTURE
    SEVCIK, PJ
    KORN, LK
    INTEGRATED NETWORK MANAGEMENT, 1, 1989, : 257 - 268
  • [12] Scrutinizing Security in Industrial Control Systems: An Architectural Vulnerabilities and Communication Network Perspective
    Aslam, Muhammad Muzamil
    Tufail, Ali
    Apong, Rosyzie Anna Awg Haji Mohd
    De Silva, Liyanage Chandratilak
    Raza, Muhammad Taqi
    IEEE ACCESS, 2024, 12 : 67537 - 67573
  • [13] Improving security for SCADA control systems
    Hentea, Mariana
    Interdisciplinary Journal of Information, Knowledge, and Management, 2008, 3 : 73 - 86
  • [14] Improving Cybersecurity for Industrial Control Systems
    Graham, James
    Hieb, Jeffrey
    Naber, John
    PROCEEDINGS 2016 IEEE 25TH INTERNATIONAL SYMPOSIUM ON INDUSTRIAL ELECTRONICS (ISIE), 2016, : 618 - 623
  • [15] A security model based on security zone for industrial control network
    Wang, Hao
    Tang, Yuanlin
    Ying, Zhou
    WAVELET ACTIVE MEDIA TECHNOLOGY AND INFORMATION PROCESSING, VOL 1 AND 2, 2006, : 961 - +
  • [16] A Machine Learning Test Data Set for Continuous Security Monitoring of Industrial Control Systems
    Francia, Guillermo A., III
    2017 IEEE 7TH ANNUAL INTERNATIONAL CONFERENCE ON CYBER TECHNOLOGY IN AUTOMATION, CONTROL, AND INTELLIGENT SYSTEMS (CYBER), 2017, : 1043 - 1048
  • [17] Summary of Research on IT Network and Industrial Control Network Security Assessment
    Hu, Lei
    Li, Hailong
    Wei, Zhenhua
    Dong, Siqi
    Zhang, Zhao
    PROCEEDINGS OF 2019 IEEE 3RD INFORMATION TECHNOLOGY, NETWORKING, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (ITNEC 2019), 2019, : 1203 - 1210
  • [18] Cyber Attack Scenario Generation Method for Improving the Efficient of Security Measures in Industrial Control Systems
    Ogura T.
    Fujita J.
    Matsumoto N.
    IEEJ Transactions on Electronics, Information and Systems, 2024, 144 (01) : 35 - 42
  • [19] Monitoring and control of industrial power systems
    Kennedy, Robert A.
    Rickey, Donald N.
    IEEE Computer Applications in Power, 1989, 2 (04): : 42 - 46
  • [20] Cyber Security Provision for Industrial Control Systems
    Amanowicz, Marek
    Jarmakiewicz, Jacek
    TRENDS IN ADVANCED INTELLIGENT CONTROL, OPTIMIZATION AND AUTOMATION, 2017, 577 : 611 - 620