Improving Network Security Monitoring for Industrial Control Systems

被引:0
|
作者
Cruz, Tiago [1 ]
Barrigas, Jorge [1 ]
Proenca, Jorge [1 ]
Graziano, Antonio [2 ]
Panzieri, Stefano [3 ]
Lev, Leonid [4 ]
Simoes, Paulo [1 ]
机构
[1] Univ Coimbra, CISUC, DEI, Coimbra, Portugal
[2] Selex ES, Rome, Italy
[3] Univ Rome Tre, Dip Informat & Automaz, Rome, Italy
[4] Israel Elect Corp Ltd, Haifa, Israel
关键词
Industrial Control Systems; Critical Infrastructure Protection; SCADA; Programmable Logic Controllers;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Programmable Logic Controller (PLC) technology plays an important role in the automation architectures of several critical infrastructures such as Industrial Control Systems (ICS), controlling equipment in contexts such as chemical processes, factory lines, power production plants or power distribution grids, just to mention a few examples. Despite their importance, PLCs constitute one of the weakest links in ICS security, frequently due to reasons such as the absence of secure communication mechanisms, authenticated access or system integrity checks. While events such as the Stuxnet worm have raised awareness for this problem, industry has slowly reacted, either due to reliability or cost concerns. This paper introduces the Shadow Security Unit, a low-cost device deployed in parallel with a PLC or Remote Terminal Unit (RTU), being capable of transparently intercepting its communications control channels and physical process I/O lines to continuously assess its security and operational status. The proposed device does not require significant changes to the existing control network, being able to work in standalone or integrated within an ICS protection framework.
引用
收藏
页码:878 / 881
页数:4
相关论文
共 50 条
  • [41] Runtime-Monitoring for Industrial Control Systems
    Janicke, Helge
    Nicholson, Andrew
    Webber, Stuart
    Cau, Antonio
    ELECTRONICS, 2015, 4 (04): : 995 - 1017
  • [42] SECURITY OF COMMUNICATION PROTOCOLS IN INDUSTRIAL CONTROL SYSTEMS (ICSS)
    Vlajic, Natalija
    Mirkovic, Jelena
    Noce, Robert
    IEEE COMMUNICATIONS MAGAZINE, 2023, 61 (06) : 20 - 20
  • [43] A review of security assessment methodologies in industrial control systems
    Qassim, Qais Saif
    Jamil, Norziana
    Daud, Maslina
    Patel, Ahmed
    Ja'affar, Norhamadi
    INFORMATION AND COMPUTER SECURITY, 2019, 27 (01) : 47 - 61
  • [44] Industrial Control Systems Security via Runtime Enforcement
    Lanotte, Ruggero
    Merro, Massimo
    Munteanu, Andrei
    ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2023, 26 (01)
  • [45] Towards Formal Security Analysis of Industrial Control Systems
    Rocchetto, Marco
    Tippenhauer, Nils Ole
    PROCEEDINGS OF THE 2017 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (ASIA CCS'17), 2017, : 114 - 126
  • [46] Why is security so important for industrial control systems?
    Wünsche, Markus
    Operations Engineer, 2023, 2023 (10): : 24 - 25
  • [47] Situational Awareness for Security Adaptation in Industrial Control Systems
    Evesti, Antti
    Frantti, Tapio
    2015 SEVENTH INTERNATIONAL CONFERENCE ON UBIQUITOUS AND FUTURE NETWORKS, 2015, : 1 - 6
  • [48] A Virtual Testbed for Security Management of Industrial Control Systems
    Koganti, Venkata S.
    Ashrafuzzaman, Mohammad
    Jillepalli, Ananth A.
    Sheldon, Frederick T.
    PROCEEDINGS OF THE 2017 12TH INTERNATIONAL CONFERENCE ON MALICIOUS AND UNWANTED SOFTWARE (MALWARE), 2017, : 85 - 90
  • [49] Security Assist Mechanisms for Industrial Control Systems with Authentication
    Tsou, Chia-Wei
    Ma, Yi-Wei
    Tu, Yi-Hao
    Chen, Jiann-Liang
    2023 25TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY, ICACT, 2023, : 186 - 188
  • [50] A Survey of Cyber Security and Safety in Industrial Control Systems
    Ma, Yi-Wei
    Tu, Yi-Hao
    Tsou, Chia-Wei
    Chiang, Yen-Neng
    Chen, Jiann-Liang
    JOURNAL OF INTERNET TECHNOLOGY, 2024, 25 (04): : 541 - 550