Detail publikačního výsledku

Developing Battery of Vulnerability Tests for Industrial Control Systems

FUJDIAK, R.; BLAŽEK, P.; MLÝNEK, P.; MIŠUREC, J.

Originální název

Developing Battery of Vulnerability Tests for Industrial Control Systems

Anglický název

Developing Battery of Vulnerability Tests for Industrial Control Systems

Druh

Stať ve sborníku v databázi WoS či Scopus

Originální abstrakt

Nowadays, the industrial control systems (ICS) face many challenges, where security is becoming one of the most crucial. This fact is caused by new connected environment, which brings among new possibilities also new vulnerabilities, threats, or possible attacks. The criminal acts in the ICS area increased over the past years exponentially, which caused the loss of billions of dollars. This also caused classical Intrusion Detection Systems and Intrusion Prevention Systems to evolve in order to protect among IT also ICS networks. However, these systems need sufficient data such as traffic logs, protocol information, attack patterns, anomaly behavior marks and many others. To provide such data, the requirements for the test environment are summarized in this paper. Moreover, we also introduce more than twenty common vulnerabilities across the ICS together with information about possible risk, attack vector (point), possible detection methods and communication layer occurrence. Therefore, the paper might be used as a base-ground for building sufficient data generator for machine learning and artificial intelligence algorithms often used in ICS/IDS systems.

Anglický abstrakt

Nowadays, the industrial control systems (ICS) face many challenges, where security is becoming one of the most crucial. This fact is caused by new connected environment, which brings among new possibilities also new vulnerabilities, threats, or possible attacks. The criminal acts in the ICS area increased over the past years exponentially, which caused the loss of billions of dollars. This also caused classical Intrusion Detection Systems and Intrusion Prevention Systems to evolve in order to protect among IT also ICS networks. However, these systems need sufficient data such as traffic logs, protocol information, attack patterns, anomaly behavior marks and many others. To provide such data, the requirements for the test environment are summarized in this paper. Moreover, we also introduce more than twenty common vulnerabilities across the ICS together with information about possible risk, attack vector (point), possible detection methods and communication layer occurrence. Therefore, the paper might be used as a base-ground for building sufficient data generator for machine learning and artificial intelligence algorithms often used in ICS/IDS systems.

Klíčová slova

Security;Information security;Intrusion detection;Industrial control;Industrial communication

Klíčová slova v angličtině

Security;Information security;Intrusion detection;Industrial control;Industrial communication

Autoři

FUJDIAK, R.; BLAŽEK, P.; MLÝNEK, P.; MIŠUREC, J.

Rok RIV

2020

Vydáno

24.06.2019

ISBN

978-1-7281-1542-9

Kniha

2019 10th IFIP International Conference on New Technologies, Mobility and Security (NTMS)

Strany od

1

Strany do

5

Strany počet

5

URL

Plný text v Digitální knihovně

BibTex

@inproceedings{BUT158752,
  author="Radek {Fujdiak} and Petr {Blažek} and Petr {Mlýnek} and Jiří {Mišurec}",
  title="Developing Battery of Vulnerability Tests for Industrial Control Systems",
  booktitle="2019 10th IFIP International Conference on New Technologies, Mobility and Security (NTMS)",
  year="2019",
  pages="1--5",
  doi="10.1109/NTMS.2019.8763810",
  isbn="978-1-7281-1542-9",
  url="https://ieeexplore.ieee.org/document/8763810"
}