首页> 外文OA文献 >Poisoned GOOSE : exploiting the GOOSE protocol
【2h】

Poisoned GOOSE : exploiting the GOOSE protocol

机译:中毒的GOOSE:利用GOOSE协议

摘要

This paper presents a vulnerability within the generic object oriented substation event (GOOSE) communication protocol. It describes an exploit of the vulnerability and proposes a number of attack variants. The attacks sends GOOSE frames containing higher status numbers to the receiving intelligent electronic device (IED). This prevents legitimate GOOSE frames from being processed and effectively causes a hijacking of the communication channel, which can be used to implement a denial–of–service (DoS) or manipulate the subscriber (unless a status number roll-over occurs). The authors refer to this attack as a poisoning of the subscriber. A number of GOOSE poisoning attacks are evaluated experimentally on a test bed and demonstrated to be successful.
机译:本文介绍了通用的面向对象变电站事件(GOOSE)通信协议中的漏洞。它描述了该漏洞的利用,并提出了多种攻击方式。攻击会将包含更高状态编号的GOOSE帧发送到接收智能电子设备(IED)。这样可以防止合法的GOOSE帧被处理,并有效地导致通信信道被劫持,该劫持可用于实施拒绝服务(DoS)或操纵订户(除非发生状态号翻转)。作者称这种攻击是订户的中毒。在测试床上通过实验评估了许多GOOSE中毒发作,并证明是成功的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号