首页> 外文会议>International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment >Last Line of Defense: A Novel IDS Approach Against Advanced Threats in Industrial Control Systems
【24h】

Last Line of Defense: A Novel IDS Approach Against Advanced Threats in Industrial Control Systems

机译:最后一系列防守:一种新的IDS措施,反对工业控制系统的高级威胁

获取原文

摘要

Industrial control systems are becoming increasingly interconnected, and with it their vulnerability to malicious actors. While intrusion detection systems are suited to detect network-based attacks, they remain unable to detect more sophisticated attacks against control systems, for example a compromise of the PLCs. This paper makes the case that the evolving landscape of threats such as the Stuxnet malware requires an alternative approach to intrusion detection in industrial control systems. We argue that effective control of such advanced threats needs to happen in the last link of the control network, hence building a last line of defense. A proof of concept of this new paradigm was implemented for the control system of a dredging vessel, and we describe main lessons learned and pose open research questions we find based on these experiences for ICS intrusion detection.
机译:工业控制系统越来越多地互联,并随着对恶意演员的脆弱性。虽然入侵检测系统适于检测基于网络的攻击,但它们仍然无法检测更复杂的控制系统的攻击,例如PLC的折衷。本文使得诸如STUXNET恶意软件等威胁的演变景观需要替代方法在工业控制系统中的入侵检测。我们认为,有效地控制如此先进的威胁需要发生在控制网络的最后一个环节中,因此建立了最后的防守。这一新范式的概念证明是为疏浚船的控制系统实施的,我们描述了我们发现的主要经验教训,我们发现了我们发现的关于ICS入侵检测的经验。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号