SCADA (Supervisory Control and Data Acquisition) systems: Vulnerability assessment and security recommendations

被引:110
作者
Upadhyay, Darshana [1 ]
Sampalli, Srinivas [1 ]
机构
[1] Dalhousie Univ, Fac Comp Sci, Halifax, NS B3H 1W5, Canada
基金
加拿大自然科学与工程研究理事会;
关键词
SCADA vulnerability; Firewalls; Critical infrastructure; Security mitigations; SCADA incidents; CYBER SECURITY; INTERNET;
D O I
10.1016/j.cose.2019.101666
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Growing dependency and remote accessibility of automated industrial automation systems have transformed SCADA (Supervisory Control and Data Acquisition) networks from strictly isolated to highly interconnected networks. This increase in interconnectivity between systems raises operational efficiency due to the ease of controlling and monitoring of processes, however, this inevitable transformation also exposes the control system to the outside world. As a result, effective security strategies are required as any vulnerability of the SCADA system could generate severe financial and/or safety implications. The primary task when identifying holes in the system is to have proper awareness of the SCADA vulnerabilities and threats. This approach will help to identify potential breaches or aspects in the system where a breach may occur. This paper describes various types of potential SCADA vulnerabilities by taking real incidents reported in standard vulnerability databases. A comprehensive review of each type of vulnerability has been discussed along with recommendations for the improvement of SCADA security systems. (C) 2019 Elsevier Ltd. All rights reserved.
引用
收藏
页数:18
相关论文
共 86 条
[31]  
[Anonymous], P IEEE INT C INT SEC
[32]  
[Anonymous], SEC GUID EL SECT PHY
[33]  
[Anonymous], 21 STEPS IMPR CYB SE
[34]  
[Anonymous], NCCIC ICS CERT FY 20
[35]  
[Anonymous], CIP STAND
[36]  
[Anonymous], GARCIA MORCHON REQUE
[37]  
[Anonymous], SLAMMER WORM DAVID B
[38]  
[Anonymous], SEC GUID EL SECT PAT
[39]  
[Anonymous], OUT CONTROL DEMONSTR
[40]  
[Anonymous], SEC MAN N AM EL SUBS