Oops I Did it Again: Further Adventures in the Land of ICS Security Testbeds

被引:20
作者
Gardiner, Joseph [1 ]
Craggs, Barnaby [1 ]
Green, Benjamin [2 ]
Rashid, Awais [1 ]
机构
[1] Univ Bristol, Bristol Cyber Secur Grp, Bristol, Avon, England
[2] Univ Lancaster, Secur Lancaster Inst, Lancaster, England
来源
CPS-SPC'19: PROCEEDINGS OF THE ACM WORKSHOP ON CYBER-PHYSICAL SYSTEMS SECURITY & PRIVACY | 2019年
基金
英国工程与自然科学研究理事会;
关键词
Industrial Control Systems; ICS; SCADA; Operational Technology; OT; IIoT; CPS; Cyber Security; Testbeds;
D O I
10.1145/3338499.3357355
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Research efforts in the security of Industrial Control Systems (ICS) have dramatically increased over the past few years. However, there is a limiting factor when work cannot be evaluated on real-world systems due to safety and operational reasons. This has led to multiple deployments of ICS testbeds covering multiple sectors including water treatment, power distribution and transportation networks. Over the last five years, we have designed and constructed ICS testbeds to support cyber security research. Our prior work in building testbeds culminated in a set of design principles and lessons learnt, formulated to support other researchers in designing and building their own ICS testbeds. In the last two years we have taken these lessons and used them to guide our own greenfield large-scale, complex and process-diverse security testbed affording a rare opportunity to design and build from the ground up - one in which we have been able to look back and validate those past lessons and principles. In this work we describe the process of building our new ICS and Industrial Internet of Things (IIoT) testbed, and give an overview of its architecture. We then reflect on our past lessons, and contribute five previously unrecognised additional lessons based on this experience.
引用
收藏
页码:75 / 86
页数:12
相关论文
共 21 条
[1]  
[Anonymous], 2019, Technical report
[2]  
[Anonymous], 2010, 2010 ECRIME RES SUMM, DOI DOI 10.1109/ECRIME.2010.5706699
[3]  
[Anonymous], 2015, Tech. Rep. 8089
[4]  
Antrobus R., 2016, BCS
[5]  
Centre for the Protection of National Infrastructure, 2017, CRIT NAT INFR
[6]  
Craggs B., 2019, 2019 IEEE ACM 5 INT
[7]  
Craggs B., 2018, 2 C LIV INT THINGS 2, V12
[8]   Smart Cyber-Physical Systems: Beyond Usable Security to Security Ergonomics by Design [J].
Craggs, Barnaby ;
Rashid, Awais .
2017 IEEE/ACM 3RD INTERNATIONAL WORKSHOP ON SOFTWARE ENGINEERING FOR SMART CYBER-PHYSICAL SYSTEMS (SESCPS 2017), 2017, :22-25
[9]   SCADA cyber security testbed development [J].
Davis, C. M. ;
Tate, J. E. ;
Okhravi, H. ;
Grier, C. ;
Overbye, T. J. ;
Nicol, D. .
2006 38TH ANNUAL NORTH AMERICAN POWER SYMPOSIUM, NAPS-2006 PROCEEDINGS, 2006, :483-+
[10]   A cyber-physical experimentation environment for the security analysis of networked industrial control systems [J].
Genge, Bela ;
Siaterlis, Christos ;
Fovino, Igor Nai ;
Masera, Marcelo .
COMPUTERS & ELECTRICAL ENGINEERING, 2012, 38 (05) :1146-1161