首页> 外文OA文献 >Incident Analysis & Digital Forensics in SCADA and Industrial Control Systems
【2h】

Incident Analysis & Digital Forensics in SCADA and Industrial Control Systems

机译:SCADA和工业控制系统中的事件分析和数字取证

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

SCADA and industrial control systems have been traditionally isolated in physically protected environments. However, developments such as standardisation of data exchange protocols and increased use of IP, emerging wireless sensor networks and machine-to-machine communication mean that in the near future related threat vectors will require consideration too outside the scope of traditional SCADA security and incident response. In the light of the significance of SCADA for the resilience of critical infrastructures and the related targeted incidents against them (e.g. the development of stuxnet), cyber security and digital forensics emerge as priority areas. In this paper we focus on the latter, exploring the current capability of SCADA operators to analyse security incidents and develop situational awareness based on a robust digital evidence perspective. We look at the logging capabilities of a typical SCADA architecture and the analytical techniques and investigative tools that may help develop forensic readiness to the level of the current threat environment requirements. We also provide recommendations for data capture and retention.
机译:传统上,SCADA和工业控制系统是在物理保护环境中隔离的。但是,诸如数据交换协议的标准化和IP使用的增加,新兴的无线传感器网络和机器对机器通信等发展意味着,在不久的将来,相关威胁向量也将需要超出传统SCADA安全性和事件响应的范围来考虑。 。鉴于SCADA对于关键基础设施的弹性以及针对它们的相关针对性事件(例如stuxnet的开发)的重要性,网络安全和数字取证已成为重点领域。在本文中,我们将重点放在后者上,基于强大的数字证据观点,探索SCADA运营商当前分析安全事件和发展态势感知的能力。我们着眼于典型的SCADA架构的日志记录功能以及分析技术和调查工具,这些工具可能有助于使法证准备工作达到当前威胁环境要求的水平。我们还提供有关数据捕获和保留的建议。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号