首页> 外文期刊>CSI Transactions on ICT >SCADA communication protocols: vulnerabilities, attacks and possible mitigations
【24h】

SCADA communication protocols: vulnerabilities, attacks and possible mitigations

机译:SCADA通信协议:漏洞,攻击和可能的缓解措施

获取原文
获取原文并翻译 | 示例
           

摘要

Current hierarchical SCADA systems uses communication protocols which aren’t having the inbuilt security mechanism. This lack of security mechanism will help attackers to sabotage the SCADA system. However, to cripple down the SCADA systems completely coordinated communication channel attacks can be performed. IEC 60870-5-101 and IEC 60870-5-104 protocols are widely used in current SCADA systems in power utilities sector. These protocols are lacking in the application layer and the data link layer security. Application layer security is necessary to protect the SCADA systems from Spoofing and Non-Repudiation attacks. Data link layer security is necessary to protect the systems from the Sniffing, Data modification and Replay attacks. IEC 60870-5-101 & 104 communication protocol vulnerabilities and their exploitation by coordinated attacks are explained in this paper. Proposed experimental research model can be used to mitigate the attacks at application layer and data link layer by adopting the IEC 62351 standards.
机译:当前的分层SCADA系统使用的通信协议没有内置的安全机制。这种缺乏安全性的机制将帮助攻击者破坏SCADA系统。但是,为了削弱SCADA系统,可以执行完全协调的通信信道攻击。 IEC 60870-5-101和IEC 60870-5-104协议被广泛用于电力公用事业领域的当前SCADA系统中。这些协议在应用层和数据链路层中缺乏安全性。为了保护SCADA系统免受欺骗和不可抵赖攻击,应用层安全是必不可少的。数据链路层安全对于保护系统免受嗅探,数据修改和重放攻击是必不可少的。本文介绍了IEC 60870-5-101和104通信协议漏洞及其通过协同攻击的利用。建议的实验研究模型可以通过采用IEC 62351标准来减轻应用层和数据链路层的攻击。

著录项

  • 来源
    《CSI Transactions on ICT》 |2013年第2期|135-141|共7页
  • 作者单位

    Real Time Systems and Smart Grid Group Centre for Development of Advanced Computing">(1);

    Real Time Systems and Smart Grid Group Centre for Development of Advanced Computing">(1);

    Real Time Systems and Smart Grid Group Centre for Development of Advanced Computing">(1);

    Real Time Systems and Smart Grid Group Centre for Development of Advanced Computing">(1);

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    SCADA; MTU; RTU; Risk analysis; HMI;

    机译:SCADA;人类RTU;风险分析;人机界面;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号