False data injection attacks and the insider threat in smart systems

被引:14
作者
Gonen, Serkan [1 ]
Sayan, H. Huseyin [2 ]
Yilmaz, Ercan Nurcan [2 ]
Ustunsoy, Furkan [2 ]
Karacayilmaz, Gokce [3 ]
机构
[1] Istanbul Gelisim Univ, Fac Engn & Architecture, TR-34310 Istanbul, Turkey
[2] Gazi Univ, Fac Technol, TR-06500 Ankara, Turkey
[3] Hacettepe Univ, Forens Sci, TR-06680 Ankara, Turkey
关键词
Cyber security; Industrial control systems; PLC security; FDI; Data manipulation; INFORMATION;
D O I
10.1016/j.cose.2020.101955
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Smart networks and smart city systems, which are increasing in use with new approaches every day, are now in the investment plan of each state. At many points, these two concepts combine. Industrial Control Systems (ICS), which constitute the infrastructure of these systems, have opened to external networks due to the requirements of the era. Once smart grids are integrated with smart cities, ICS left its isolated structure. This process has emerged more security vulnerabilities. In this study, False Data Injection (FDI) attack was carried out to change the memory address values of Programmable Logic Controller (PLC)s which is an important component of ICS. Initially, the feasibility of the attack was examined. Thereafter, in the event of an attack, the effect on the systems was revealed. Eventually, important software and hardware solution suggestions to prevent the attack are mentioned. Thus, in the possible cyber attacks that may occur, it is aimed to recover critical systems with minimum damage and make them to be operational as soon as possible. It is considered that this study will make important contributions to other studies regarding ICS security. (c) 2020 Elsevier Ltd. All rights reserved.
引用
收藏
页数:9
相关论文
共 31 条
[1]   Assessing the Effectiveness of Attack Detection at a Hackfest on Industrial Control Systems [J].
Adepu, Sridhar ;
Mathur, Aditya .
IEEE TRANSACTIONS ON SUSTAINABLE COMPUTING, 2021, 6 (02) :231-244
[2]   Distributed Attack Detection in a Water Treatment Plant: Method and Case Study [J].
Adepu, Sridhar ;
Mathur, Aditya .
IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2021, 18 (01) :86-99
[3]   OpenPLC: An IEC 61,131-3 compliant open source industrial controller for cyber security research [J].
Alves, Thiago ;
Morris, Thomas .
COMPUTERS & SECURITY, 2018, 78 :364-379
[4]  
[Anonymous], 2018, LECT NOTES ARTIFICIA
[5]   Identification of vulnerable node clusters against false data injection attack in an AMI based Smart Grid [J].
Anwar, Adnan ;
Mahmood, Abdun Naser ;
Tari, Zahir .
INFORMATION SYSTEMS, 2015, 53 :201-212
[6]  
Bencsath B., 2011, V093 CRYSYS LAB, V14, P1
[7]  
Bunn M., 2016, Preventing Nuclear Terrorism/ Continuous Improvement or Dangerous Decline ?
[8]   A Survey on Smart Grid Cyber-Physical System Testbeds [J].
Cintuglu, Mehmet Hazar ;
Mohammed, Osama A. ;
Akkaya, Kemal ;
Uluagac, A. Selcuk .
IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2017, 19 (01) :446-464
[9]   Secure Model against APT in m-Connected SCADA Network [J].
Kim, Si-Jung ;
Cho, Do-Eun ;
Yeo, Sang-Soo .
INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2014,
[10]   Malicious Data Attacks on the Smart Grid [J].
Kosut, Oliver ;
Jia, Liyan ;
Thomas, Robert J. ;
Tong, Lang .
IEEE TRANSACTIONS ON SMART GRID, 2011, 2 (04) :645-658