Architecture and security of SCADA systems: A review

被引:79
|
作者
Yadav, Geeta [1 ]
Paul, Kolin [1 ,2 ]
机构
[1] IIT, Khosla Sch Informat Technol, Delhi, India
[2] IIT, Dept Comp Sci, Delhi, India
关键词
SCADA systems security; Critical infrastructure; Cyber-physical systems; IIoT; SCADA attacks; IDS; Testbed; INTRUSION DETECTION; MODIFICATION ATTACKS; CYBER SECURITY; METHODOLOGY; MIGRATION; LESSONS; DRIVEN; MODEL;
D O I
10.1016/j.ijcip.2021.100433
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Pipeline bursting, production lines shut down, frenzy traffic, trains confrontation, the nuclear reactor shut down, disrupted electric supply, interrupted oxygen supply in ICU - these catastrophic events could result because of an erroneous SCADA system/ Industrial Control System (ICS). SCADA systems have become an essential part of automated control and monitoring of Critical Infrastructures (CI). Modern SCADA sys-tems have evolved from standalone systems into sophisticated, complex, open systems connected to the Internet. This geographically distributed modern SCADA system is more vulnerable to threats and cyber attacks than traditional SCADA. Traditional SCADA systems were less exposed to Internet threats as they operated on isolated networks. Over the years, an increase in the number of cyber-attacks against the SCADA systems seeks security researchers' attention towards their security. In this review paper, we first review the SCADA system architectures and comparative analysis of proposed/implemented communica-tion protocols, followed by attacks on such systems to understand and highlight the evolving security needs for SCADA systems. A short investigation of the current state of intrusion detection techniques in SCADA systems is done, followed by a brief study of testbeds for SCADA systems. The cloud and Internet of things (IoT) based SCADA systems are studied by analyzing modern SCADA systems' architecture. In the end, the review paper highlights the critical research problems that need to be resolved to close the security gaps in SCADA systems. (c) 2021 Elsevier B.V. All rights reserved.
引用
收藏
页数:26
相关论文
共 50 条
  • [41] Designing security policies for complex SCADA systems management and protection
    Feltus C.
    Khadraoui D.
    Feltus, Christophe (christophe.feltus@list.lu), 1600, Inderscience Enterprises Ltd., 29, route de Pre-Bois, Case Postale 856, CH-1215 Geneva 15, CH-1215, Switzerland (15): : 313 - 332
  • [42] Towards Improving SCADA Control Systems Security with Vulnerability Analysis
    Cagalaban, Giovanni
    Kim, Seoksoo
    PARALLEL AND DISTRIBUTED COMPUTING AND NETWORKS, 2011, 137 : 27 - 32
  • [43] Security and Intrusion Detection on Critical SCADA Systems for Water Management
    Stoian, I.
    Ignat, S.
    Capatina, D.
    Ghiran, O.
    2014 IEEE INTERNATIONAL CONFERENCE ON AUTOMATION, QUALITY AND TESTING, ROBOTICS, 2014,
  • [44] Improving security in SCADA systems through firewall policy analysis
    Rysavy, Ondrej
    Rab, Jaroslav
    Sveda, Miroslav
    2013 FEDERATED CONFERENCE ON COMPUTER SCIENCE AND INFORMATION SYSTEMS (FEDCSIS), 2013, : 1435 - 1440
  • [45] Security authentication mechanism based on symmetric polynomials for SCADA systems
    Lu, Yue
    Chen, Xiuzhen
    Chen, Changsong
    2016 INTERNATIONAL CONFERENCE ON SECURITY OF SMART CITIES, INDUSTRIAL CONTROL SYSTEM AND COMMUNICATIONS (SSIC), 2016,
  • [46] Security of SCADA Systems Against Cyber-Physical Attacks
    Do, Van Long
    Fillatre, Lionel
    Nikiforov, Igor
    Willett, Peter
    IEEE AEROSPACE AND ELECTRONIC SYSTEMS MAGAZINE, 2017, 32 (05) : 28 - 45
  • [47] Host-Oriented Approach to Cyber Security for the SCADA Systems
    Lee, Jae-Myeong
    Hong, Sugwon
    2020 6TH IEEE CONGRESS ON INFORMATION SCIENCE AND TECHNOLOGY (IEEE CIST'20), 2020, : 151 - 155
  • [48] SCADA-SST: A SCADA Security Testbed
    Ghaleb, Asem
    Zhioua, Sami
    Almulhem, Ahmad
    2016 WORLD CONGRESS ON INDUSTRIAL CONTROL SYSTEMS SECURITY (WCICSS), 2016, : 34 - 39
  • [49] Cyber Security in communication of SCADA systems using IEC 61850
    Czechowski, Robert
    Wicher, Pawel
    Wiecha, Bernard
    2015 MODERN ELECTRIC POWER SYSTEMS (MEPS), 2015,
  • [50] A Survey of Security Challenges in Cloud-Based SCADA Systems
    Wali, Arwa
    Alshehry, Fatimah
    COMPUTERS, 2024, 13 (04)