A HOST-BASED SECURITY ASSESSMENT ARCHITECTURE FOR INDUSTRIAL CONTROL SYSTEMS

被引:0
|
作者
Rakshit, Abhishek [1 ]
Ou, Xinming [1 ]
机构
[1] Kansas State Univ, Dept Comp & Informat Sci, Manhattan, KS 66506 USA
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Computerized control systems perform vital functions across many critical infrastructures throughout the nation. These systems can be vulnerable to a variety of attacks leading to devastating consequences like loss of production, interruption in distribution of public utilities and most importantly endangering public safety. This calls for an approach to halt attacks in their tracks before being able to do any harm to these systems. Vulnerability assessment performed on these systems can identify and assess potential vulnerabilities in a control system network, before they are exploited by malicious intruders. An effective vulnerability assessment architecture should assimilate security knowledge from multiple sources to uncover all the vulnerabilities present on a host. Legitimate concerns arise since host-based security scanners typically need to run at administrative privileges, and takes input from external knowledge sources for the analysis making it imperative that the scanner be trustworthy. Intentionally or otherwise, ill-formed input may compromise the scanner and the whole system if the scanner is susceptible to, or carries one or more vulnerability itself. We have implemented the scanning architecture in the context of an enterprise-level security analyzer. The analyzer finds security vulnerabilities present on a host according to the third-party security knowledge specified in Open Vulnerability Assessment Language(OVAL). This paper presents an architecture where a host-based security scanner's code base can be minimized to an extent where its correctness can be verified by adequate vetting. Moreover, the architecture also allows for leveraging third-party security knowledge efficiently and supports various higher-level security analysis.
引用
收藏
页码:7 / 12
页数:6
相关论文
共 50 条
  • [21] HOST-BASED TOOLS EDGE OUT CONVENTIONAL DEVELOPMENT SYSTEMS
    FALK, H
    COMPUTER DESIGN, 1987, 26 (09): : 32 - &
  • [22] Lightweight Security Solution for Host-Based Mobility & Multi-Homing Protocols
    Hampel, Georg
    Kolesnikov, Vladimir
    2010 IEEE GLOBECOM WORKSHOPS, 2010, : 43 - 48
  • [23] GRIP: A reconfigurable architecture for host-based gigabit-rate packet processing
    Bellows, P
    Flidr, J
    Lehman, T
    Schott, B
    Underwood, KD
    10TH ANNUAL IEEE SYMPOSIUM ON FIELD-PROGRAMMABLE CUSTOM COMPUTING MACHINES, PROCEEDINGS, 2002, : 121 - 130
  • [24] An AutoML-based security defender for industrial control systems
    Vasan, Danish
    Alqahtani, Ebtesam Jubran S.
    Hammoudeh, Mohammad
    Ahmed, Adel F.
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2024, 47
  • [25] Feedback control applied to survivability: A host-based autonomic defense system
    Kreidl, OP
    Frazier, TM
    IEEE TRANSACTIONS ON RELIABILITY, 2004, 53 (01) : 148 - 166
  • [26] Security intelligence for industrial control systems
    Amrein, A.
    Angeletti, V.
    Beitler, A.
    Nemet, M.
    Reiser, M.
    Riccetti, S.
    Stoecklin, M. Ph
    Wespi, A.
    IBM JOURNAL OF RESEARCH AND DEVELOPMENT, 2016, 60 (04)
  • [27] Cyber Security for Industrial Control Systems
    Cunningham, Steve
    POWER ENGINEERING, 2011, 115 (11) : 142 - +
  • [28] Security Monitoring for Industrial Control Systems
    Coletta, Alessio
    Armando, Alessandro
    SECURITY OF INDUSTRIAL CONTROL SYSTEMS AND CYBER PHYSICAL SYSTEMS, 2016, 9588 : 48 - 62
  • [29] IT SECURITY ASPECTS OF INDUSTRIAL CONTROL SYSTEMS
    Holecko, P.
    Krbilova, I.
    ADVANCES IN ELECTRICAL AND ELECTRONIC ENGINEERING, 2006, 5 (01) : 136 - 139
  • [30] Survey of Industrial Control Systems Security
    Yang T.
    Zhang J.
    Huang Z.
    Chen Y.
    Huang C.
    Zhou W.
    Liu P.
    Feng T.
    Zhang Y.
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2022, 59 (05): : 1035 - 1053