Ransomware on cyber-physical systems: Taxonomies, case studies, security gaps, and open challenges

被引:9
作者
Benmalek M. [1 ]
机构
[1] Computer Engineering Department, College of Engineering and Architecture, Al Yamamah University, Riyadh
来源
Internet of Things and Cyber-Physical Systems | 2024年 / 4卷
关键词
Challenges; Cyber-physical systems; Industrial control systems; Ransomware; Security;
D O I
10.1016/j.iotcps.2023.12.001
中图分类号
学科分类号
摘要
Ransomware attacks have emerged as one of the most significant cyberthreats faced by organizations worldwide. In recent years, ransomware has also started to target critical infrastructure and Cyber-Physical Systems (CPS) such as industrial control systems, smart grids, and healthcare networks. The unique attack surface and safety-critical nature of CPS introduce new challenges in defending against ransomware. This paper provides a comprehensive overview of ransomware threats to CPS. We propose a dual taxonomy to classify ransomware attacks on CPS based on infection vectors, targets, objectives, and technical attributes. Through an analysis of 10 real-world incidents, we highlight attack patterns, vulnerabilities, and impacts of ransomware campaigns against critical systems and facilities. Based on the insights gained, we identify open research problems and future directions to improve ransomware resilience in CPS environments. © 2024 The Author
引用
收藏
页码:186 / 202
页数:16
相关论文
共 50 条
  • [1] Security Challenges and Methods for Protecting Critical Infrastructure Cyber-Physical Systems
    Taylor, James M., Jr.
    Sharif, Hamid R.
    2017 INTERNATIONAL CONFERENCE ON SELECTED TOPICS IN MOBILE AND WIRELESS NETWORKING (MOWNET), 2017, : 125 - 130
  • [2] Security and Privacy of Things: Regulatory Challenges and Gaps for the Secure Integration of Cyber-Physical Systems
    Lee, Geraldine
    Epiphaniou, Gregory
    Al-Khateeb, Haider
    Maple, Carsten
    THIRD INTERNATIONAL CONGRESS ON INFORMATION AND COMMUNICATION TECHNOLOGY, 2019, 797 : 1 - 12
  • [3] Cyber-physical systems security: A systematic review
    Harkat, Houda
    Camarinha-Matos, Luis M.
    Goes, Joao
    Ahmed, Hasmath F. T.
    COMPUTERS & INDUSTRIAL ENGINEERING, 2024, 188
  • [4] A Survey on Cyber-Physical Systems Security
    Yu, Zhenhua
    Gao, Hongxia
    Cong, Xuya
    Wu, Naiqi
    Song, Houbing Herbert
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (24) : 21670 - 21686
  • [5] A survey on the security of cyber-physical systems
    Wu G.
    Sun J.
    Chen J.
    Control Theory and Technology, 2016, 14 (1) : 2 - 10
  • [6] Cyber-Physical Energy Systems Security: Threat Modeling, Risk Assessment, Resources, Metrics, and Case Studies
    Zografopoulos, Ioannis
    Ospina, Juan
    Liu, Xiaorui
    Konstantinou, Charalambos
    IEEE ACCESS, 2021, 9 : 29775 - 29818
  • [7] Security in Cyber-Physical Systems
    Dsouza, Joanita
    Elezabeth, Laura
    Mishra, Ved Prakash
    Jain, Rachna
    PROCEEDINGS 2019 AMITY INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE (AICAI), 2019, : 840 - 844
  • [8] Designed-in Security for Cyber-Physical Systems
    Peisert, Sean
    Margulies, Jonathan
    Nicol, David M.
    Khurana, Himanshu
    Sawall, Chris
    IEEE SECURITY & PRIVACY, 2014, 12 (05) : 9 - 12
  • [9] Cyber-Physical Systems Security-A Survey
    Humayed, Abdulmalik
    Lin, Jingqiang
    Li, Fengjun
    Luo, Bo
    IEEE INTERNET OF THINGS JOURNAL, 2017, 4 (06): : 1802 - 1831
  • [10] Incremental Security Enforcement for Cyber-Physical Systems
    Panda, Abhinandan
    Baird, Alex
    Pinisetty, Srinivas
    Roop, Partha
    IEEE ACCESS, 2023, 11 : 18475 - 18498