首页> 外文会议>Biennial Symposium on Communications >Analysis of SCADA Security Using Penetration Testing: A Case Study on Modbus TCP Protocol
【24h】

Analysis of SCADA Security Using Penetration Testing: A Case Study on Modbus TCP Protocol

机译:使用渗透测试分析SCADA安全 - Modbus TCP协议的案例研究

获取原文

摘要

This paper presents an insight into attacks on Supervisory Control and Data Acquisition (SCADA) systems specifically focusing on systems that use the Modbus TCP protocol. A penetration testing approach is adopted using a novel penetration testing tool to (i) test the effectiveness and efficiency of the tool, (ii) examine the insider threat as well as the external threat through internal and external penetration testing respectively and (iii) rate the vulnerabilities identified through the penetration tests according to the Common Vulnerability Scoring System. The study also examines and tests the existing security countermeasures that are unique to SCADA systems and outlines some recommendations that may improve security in SCADA systems. The experimental results show that some of the attacks may severely impact integrity and availability.
机译:本文介绍了对监管控制和数据采集(SCADA)系统的攻击攻击专注于使用Modbus TCP协议的系统。使用新型渗透测试工具采用渗透测试方法来测试工具的有效性和效率,(ii)通过分别通过内部和外部穿透测试和(iii)率来检查内部和外部渗透测试的内部威胁根据常见漏洞评分系统通过渗透测试确定的漏洞。该研究还审查并测试了对SCADA系统独有的现有安全对策,并概述了可能改善SCADA系统中安全性的一些建议。实验结果表明,一些攻击可能严重影响完整性和可用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号