Ransomware on cyber-physical systems: Taxonomies, case studies, security gaps, and open challenges

被引:13
作者
Benmalek M. [1 ]
机构
[1] Computer Engineering Department, College of Engineering and Architecture, Al Yamamah University, Riyadh
来源
Internet of Things and Cyber-Physical Systems | 2024年 / 4卷
关键词
Challenges; Cyber-physical systems; Industrial control systems; Ransomware; Security;
D O I
10.1016/j.iotcps.2023.12.001
中图分类号
学科分类号
摘要
Ransomware attacks have emerged as one of the most significant cyberthreats faced by organizations worldwide. In recent years, ransomware has also started to target critical infrastructure and Cyber-Physical Systems (CPS) such as industrial control systems, smart grids, and healthcare networks. The unique attack surface and safety-critical nature of CPS introduce new challenges in defending against ransomware. This paper provides a comprehensive overview of ransomware threats to CPS. We propose a dual taxonomy to classify ransomware attacks on CPS based on infection vectors, targets, objectives, and technical attributes. Through an analysis of 10 real-world incidents, we highlight attack patterns, vulnerabilities, and impacts of ransomware campaigns against critical systems and facilities. Based on the insights gained, we identify open research problems and future directions to improve ransomware resilience in CPS environments. © 2024 The Author
引用
收藏
页码:186 / 202
页数:16
相关论文
共 50 条
[21]   Cyber-Security Incidents: A Review Cases in Cyber-Physical Systems [J].
Al-Mhiqani, Mohammed Nasser ;
Ahmad, Rabiah ;
Yassin, Warusia ;
Hassan, Aslinda ;
Abidin, Zaheera Zainal ;
Ali, Nabeel Salih ;
Abdulkareem, Karrar Hameed .
INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2018, 9 (01) :499-508
[22]   Security in Cloud-based Cyber-physical Systems [J].
Puttonen, Juha ;
Afolaranmi, Samuel Olaiya ;
Moctezuma, Luis Gonzalez ;
Lobov, Andrei ;
Lastra, Jose L. Martinez .
2015 10TH INTERNATIONAL CONFERENCE ON P2P, PARALLEL, GRID, CLOUD AND INTERNET COMPUTING (3PGCIC), 2015, :671-676
[23]   A Security Analysis of Cyber-Physical Systems Architecture for Healthcare [J].
Seifert, Darren ;
Reza, Hassan .
COMPUTERS, 2016, 5 (04)
[24]   Intelligent Security Measures for Smart Cyber-Physical Systems [J].
Shafique, Muhammad ;
Khalid, Faiq ;
Rehman, Semeen .
2018 21ST EUROMICRO CONFERENCE ON DIGITAL SYSTEM DESIGN (DSD 2018), 2018, :280-287
[25]   Dependency-based security risk assessment for cyber-physical systems [J].
Akbarzadeh, Aida ;
Katsikas, Sokratis K. .
INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2023, 22 (03) :563-578
[26]   Dependency-based security risk assessment for cyber-physical systems [J].
Aida Akbarzadeh ;
Sokratis K. Katsikas .
International Journal of Information Security, 2023, 22 :563-578
[27]   Cybersecurity of Industrial Cyber-Physical Systems: A Review [J].
Kayan, Hakan ;
Nunes, Matthew ;
Rana, Omer ;
Burnap, Pete ;
Perera, Charith .
ACM COMPUTING SURVEYS, 2022, 54 (11S)
[28]   A Survey of Blockchain Enabled Cyber-Physical Systems [J].
Rathore, Heena ;
Mohamed, Amr ;
Guizani, Mohsen .
SENSORS, 2020, 20 (01)
[29]   A Survey on Concepts, Applications, and Challenges in Cyber-Physical Systems [J].
Gunes, Volkan ;
Peter, Steffen ;
Givargis, Tony ;
Vahid, Frank .
KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2014, 8 (12) :4242-4268
[30]   A Different Perspective on Cyber-Physical Systems Security [J].
Vegh, Laura .
2016 20TH INTERNATIONAL CONFERENCE ON SYSTEM THEORY, CONTROL AND COMPUTING (ICSTCC), 2016, :435-440