Improving Network Security Monitoring for Industrial Control Systems

被引:0
作者
Cruz, Tiago [1 ]
Barrigas, Jorge [1 ]
Proenca, Jorge [1 ]
Graziano, Antonio [2 ]
Panzieri, Stefano [3 ]
Lev, Leonid [4 ]
Simoes, Paulo [1 ]
机构
[1] Univ Coimbra, CISUC, DEI, Coimbra, Portugal
[2] Selex ES, Rome, Italy
[3] Univ Rome Tre, Dip Informat & Automaz, Rome, Italy
[4] Israel Elect Corp Ltd, Haifa, Israel
来源
PROCEEDINGS OF THE 2015 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM) | 2015年
关键词
Industrial Control Systems; Critical Infrastructure Protection; SCADA; Programmable Logic Controllers;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Programmable Logic Controller (PLC) technology plays an important role in the automation architectures of several critical infrastructures such as Industrial Control Systems (ICS), controlling equipment in contexts such as chemical processes, factory lines, power production plants or power distribution grids, just to mention a few examples. Despite their importance, PLCs constitute one of the weakest links in ICS security, frequently due to reasons such as the absence of secure communication mechanisms, authenticated access or system integrity checks. While events such as the Stuxnet worm have raised awareness for this problem, industry has slowly reacted, either due to reliability or cost concerns. This paper introduces the Shadow Security Unit, a low-cost device deployed in parallel with a PLC or Remote Terminal Unit (RTU), being capable of transparently intercepting its communications control channels and physical process I/O lines to continuously assess its security and operational status. The proposed device does not require significant changes to the existing control network, being able to work in standalone or integrated within an ICS protection framework.
引用
收藏
页码:878 / 881
页数:4
相关论文
共 50 条
  • [41] Experimental assessment of network design approaches for protecting industrial control systems
    Genge, Bela
    Graur, Flavius
    Haller, Piroska
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2015, 11 : 24 - 38
  • [42] Unsupervised Anomaly Detection for Network Data Streams in Industrial Control Systems
    Liu, Limengwei
    Hu, Modi
    Kang, Chaoqun
    Li, Xiaoyong
    INFORMATION, 2020, 11 (02)
  • [43] MODELING AND MACHINE-CHECKING BUMP-IN-THE-WIRE SECURITY FOR INDUSTRIAL CONTROL SYSTEMS
    Sabraoui, Mehdi
    Hieb, Jeffrey
    Lauf, Adrian
    Graham, James
    CRITICAL INFRASTRUCTURE PROTECTION XIII, 2019, 570 : 271 - 288
  • [44] Security measure allocation for industrial control systems: Exploiting systematic search techniques and submodularity
    Milosevic, Jezdimir
    Teixeira, Andre
    Tanaka, Takashi
    Johansson, Karl H.
    Sandberg, Henrik
    INTERNATIONAL JOURNAL OF ROBUST AND NONLINEAR CONTROL, 2020, 30 (11) : 4278 - 4302
  • [45] Generating data sets as inputs of reference for cyber security issues and industrial control systems
    Becmeur, Thomas
    Boudvin, Xavier
    Brosset, David
    Heno, Gael
    Coste, Benjamin
    Kermarrec, Yvon
    Laso, Pedro Merino
    2017 11TH INTERNATIONAL CONFERENCE ON RESEARCH CHALLENGES IN INFORMATION SCIENCE (RCIS), 2017, : 453 - 454
  • [46] ACSRA ICS: Automated Cyber Security Risk Assessment Methodology for Industrial Control Systems
    Altaleb, Haya
    Ady, Laszlo
    Varga, Peter Janos
    Rajnai, Zoltan
    ACTA POLYTECHNICA HUNGARICA, 2025, 22 (02) : 47 - 74
  • [47] Security Analysis of Cloud-connected Industrial Control Systems using Combinatorial Testing
    Tran-Jorgensen, Peter W. V.
    Kulik, Tomas
    Boudjadar, Jalil
    Larsen, Peter Gorm
    17TH ACM-IEEE INTERNATIONAL CONFERENCE ON FORMAL METHODS AND MODELS FOR SYSTEM DESIGN (MEMOCODE), 2019,
  • [48] A Safe and Reliable Bayesian Spiking Neural Network in Industrial Control Systems
    Khoei, Tala Talaei
    Kaabouch, Naima
    2024 IEEE 3RD INTERNATIONAL CONFERENCE ON COMPUTING AND MACHINE INTELLIGENCE, ICMI 2024, 2024,
  • [49] Remote Laboratory for Cybersecurity of Industrial Control Systems
    Del Canto, Carlos J.
    Prada, Miguel A.
    Fuertes, Juan J.
    Alonso, Serafin
    Dominguez, Manuel
    IFAC PAPERSONLINE, 2015, 48 (29): : 13 - 18
  • [50] Intrusion and anomaly detection for the next-generation of industrial automation and control systems
    Rosa, Luis
    Cruz, Tiago
    de Freitas, Miguel Borges
    Quiterio, Pedro
    Henriques, Joao
    Caldeira, Filipe
    Monteiro, Edmundo
    Simoes, Paulo
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2021, 119 : 50 - 67