Ransomware on cyber-physical systems: Taxonomies, case studies, security gaps, and open challenges

被引:15
作者
Benmalek M. [1 ]
机构
[1] Computer Engineering Department, College of Engineering and Architecture, Al Yamamah University, Riyadh
来源
Internet of Things and Cyber-Physical Systems | 2024年 / 4卷
关键词
Challenges; Cyber-physical systems; Industrial control systems; Ransomware; Security;
D O I
10.1016/j.iotcps.2023.12.001
中图分类号
学科分类号
摘要
Ransomware attacks have emerged as one of the most significant cyberthreats faced by organizations worldwide. In recent years, ransomware has also started to target critical infrastructure and Cyber-Physical Systems (CPS) such as industrial control systems, smart grids, and healthcare networks. The unique attack surface and safety-critical nature of CPS introduce new challenges in defending against ransomware. This paper provides a comprehensive overview of ransomware threats to CPS. We propose a dual taxonomy to classify ransomware attacks on CPS based on infection vectors, targets, objectives, and technical attributes. Through an analysis of 10 real-world incidents, we highlight attack patterns, vulnerabilities, and impacts of ransomware campaigns against critical systems and facilities. Based on the insights gained, we identify open research problems and future directions to improve ransomware resilience in CPS environments. © 2024 The Author
引用
收藏
页码:186 / 202
页数:16
相关论文
共 50 条
[31]   A Benchmark of Security Metrics in Cyber-Physical Systems [J].
Aigner, Andreas ;
Khelil, Abdelmajid .
2020 IEEE INTERNATIONAL CONFERENCE ON SENSING, COMMUNICATION AND NETWORKING (SECONWORKSHOPS), 2020,
[32]   Resilient Security of Medical Cyber-Physical Systems [J].
Rao, Aakarsh ;
Carreon, Nadir ;
Lysecky, Roman ;
Rozenblit, Jerzy ;
Sametinger, Johannes .
DATABASE AND EXPERT SYSTEMS APPLICATIONS (DEXA 2019), 2019, 1062 :95-100
[33]   Integrating artificial intelligence in cyber security for cyber-physical systems [J].
Alowaidi, Majed ;
Sharma, Sunil Kumar ;
AlEnizi, Abdullah ;
Bhardwaj, Shivam .
ELECTRONIC RESEARCH ARCHIVE, 2023, 31 (04) :1876-1896
[34]   Cyber Security Based on Artificial Intelligence for Cyber-Physical Systems [J].
Sedjelmaci, Hichem ;
Guenab, Fateh ;
Senouci, Sidi-Mohammed ;
Moustafa, Hassnaa ;
Liu, Jiajia ;
Han, Shuai .
IEEE NETWORK, 2020, 34 (03) :6-7
[35]   On modeling of electrical cyber-physical systems considering cyber security [J].
Wang, Yi-nan ;
Lin, Zhi-yun ;
Liang, Xiao ;
Xu, Wen-yuan ;
Yang, Qiang ;
Yan, Gang-feng .
FRONTIERS OF INFORMATION TECHNOLOGY & ELECTRONIC ENGINEERING, 2016, 17 (05) :465-478
[36]   On modeling of electrical cyber-physical systems considering cyber security [J].
Yinan WANG ;
Zhiyun LIN ;
Xiao LIANG ;
Wenyuan XU ;
Qiang YANG ;
Gangfeng YAN .
FrontiersofInformationTechnology&ElectronicEngineering, 2016, 17 (05) :465-478
[37]   On modeling of electrical cyber-physical systems considering cyber security [J].
Yi-nan Wang ;
Zhi-yun Lin ;
Xiao Liang ;
Wen-yuan Xu ;
Qiang Yang ;
Gang-feng Yan .
Frontiers of Information Technology & Electronic Engineering, 2016, 17 :465-478
[38]   Security Against Communication Network Attacks of Cyber-Physical Systems [J].
Públio Macedo Lima ;
Marcos Vinícius Silva Alves ;
Lilian Kawakami Carvalho ;
Marcos Vicente Moreira .
Journal of Control, Automation and Electrical Systems, 2019, 30 :125-135
[39]   Detectable and Undetectable Network Attack Security of Cyber-physical Systems [J].
Lima, Public M. ;
Carvalho, Lilian K. ;
Moreira, Marcos V. .
IFAC PAPERSONLINE, 2018, 51 (07) :179-185
[40]   On the Role of Latent Design Conditions in Cyber-Physical Systems Security [J].
Frey, Sylvain ;
Rashid, Awais ;
Zanutto, Alberto ;
Busby, Jerry ;
Follis, Karolina .
2016 IEEE/ACM 2ND INTERNATIONAL WORKSHOP ON SOFTWARE ENGINEERING FOR SMART CYBER-PHYSICAL SYSTEMS (SESCPS), 2016, :43-46