Opportunities for Early Detection and Prediction of Ransomware Attacks against Industrial Control Systems

被引:15
|
作者
Gazzan, Mazen [1 ,2 ]
Sheldon, Frederick T. [1 ]
机构
[1] Univ Idaho, Coll Engn, Dept Comp Sci, Moscow, ID 83844 USA
[2] Najran Univ, Coll Comp Sci & Informat Syst, POB 1988, Najran, Saudi Arabia
来源
FUTURE INTERNET | 2023年 / 15卷 / 04期
关键词
ransomware; industrial control systems; SCADA; ransomware detection and prevention; attack likelihood prediction; situation awareness; security assessment;
D O I
10.3390/fi15040144
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Industrial control systems (ICS) and supervisory control and data acquisition (SCADA) systems, which control critical infrastructure such as power plants and water treatment facilities, have unique characteristics that make them vulnerable to ransomware attacks. These systems are often outdated and run on proprietary software, making them difficult to protect with traditional cybersecurity measures. The limited visibility into these systems and the lack of effective threat intelligence pose significant challenges to the early detection and prediction of ransomware attacks. Ransomware attacks on ICS and SCADA systems have become a growing concern in recent years. These attacks can cause significant disruptions to critical infrastructure and result in significant financial losses. Despite the increasing threat, the prediction of ransomware attacks on ICS remains a significant challenge for the cybersecurity community. This is due to the unique characteristics of these systems, including the use of proprietary software and limited visibility into their operations. In this review paper, we will examine the challenges associated with predicting ransomware attacks on industrial systems and the existing approaches for mitigating these risks. We will also discuss the need for a multi-disciplinary approach that involves a close collaboration between the cybersecurity and ICS communities. We aim to provide a comprehensive overview of the current state of ransomware prediction on industrial systems and to identify opportunities for future research and development in this area.
引用
收藏
页数:18
相关论文
共 50 条
  • [21] CNN based method for the development of cyber-attacks detection algorithms in industrial control systems
    Nedeljkovic, Dusan
    Jakovljevic, Zivana
    COMPUTERS & SECURITY, 2022, 114
  • [22] Attack detection/prevention system against cyber attack in industrial control systems
    Yilmaz, Ercan Nurcan
    Gonen, Serkan
    COMPUTERS & SECURITY, 2018, 77 : 94 - 105
  • [23] Network-based Ransomware - A New Threat Demonstrated on the Example of Industrial Control Systems
    Altschaffel, Robert
    Dittmann, Jana
    Lamshoeft, Kevin
    Toplu, Emirkan
    4TH INTERDISCIPLINARY CONFERENCE ON ELECTRICS AND COMPUTER, INTCEC 2024, 2024,
  • [24] Framework for Detecting Control CommandInjection Attacks on Industrial Control Systems(ICS)
    Rasapour, Farhad
    Serra, Edoardo
    Mehrpouyan, Hoda
    2019 SEVENTH INTERNATIONAL SYMPOSIUM ON COMPUTING AND NETWORKING (CANDAR 2019), 2019, : 211 - 217
  • [25] Detection of Man-in-the-Middle Attacks on Industrial Control Networks
    Eigner, Oliver
    Kreimel, Philipp
    Tavolato, Paul
    PROCEEDINGS OF 2016 INTERNATIONAL CONFERENCE ON SOFTWARE SECURITY AND ASSURANCE (ICSSA), 2016, : 64 - 69
  • [26] Poisoning Attacks on Cyber Attack Detectors for Industrial Control Systems
    Kravchik, Moshe
    Biggio, Battista
    Shabtai, Asaf
    36TH ANNUAL ACM SYMPOSIUM ON APPLIED COMPUTING, SAC 2021, 2021, : 116 - 125
  • [27] Forensic readiness of industrial control systems under stealthy attacks
    Azzam, Mazen
    Pasquale, Liliana
    Provan, Gregory
    Nuseibeh, Bashar
    COMPUTERS & SECURITY, 2023, 125
  • [28] Spatial-temporal security stability analysis and regulation against different types of attacks on industrial control systems
    Feng, Zhaowen
    Cao, Guoyan
    Grigoriadis, Karolos M.
    Pan, Quan
    INTERNATIONAL JOURNAL OF ROBUST AND NONLINEAR CONTROL, 2023, 33 (18) : 11392 - 11410
  • [29] ANALYZING CYBER-PHYSICAL ATTACKS ON NETWORKED INDUSTRIAL CONTROL SYSTEMS
    Genge, Bela
    Fovino, Igor Nai
    Siaterlis, Christos
    Masera, Marcelo
    CRITICAL INFRASTRUCTURE PROTECTION V, 2011, 367 : 167 - 183
  • [30] Anomaly detection for early ransomware and spyware warning in nuclear power plant systems based on FusionGuard
    Almoqbil, Abdullah Hamad N.
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2024, 23 (03) : 2377 - 2394