On Practical Threat Scenario Testing in an Electric Power ICS Testbed

On Practical Threat Scenario Testing in an Electric Power ICS Testbed
复制标题

电力 ICS 测试台中的实际威胁场景测试

DOI:
--
复制
发表时间:
2018
期刊:
CPSS@AsiaCCS
影响因子:
--
通讯作者:
Binbin Chen
Binbin Chen
中科院分区:
--
文献类型:
--
作者:
Ahnaf Siddiqi;Nils Ole Tippenhauer;D. Mashima;Binbin Chen

文献摘要

被引文献

相似文献

真实的世界中的工业控制系统网络通常需要许多不同设备、协议和服务的复杂组合。不幸的是,这种实际的设置很少公开记录足够的技术细节,以允许第三方使用该系统作为其研究的参考。因此,安全研究人员经常不得不使用抽象和简化的系统假设,这可能无法很好地转化为实践。在这项工作中,我们提供了一个全面的概述,在SUTD的EPIC(电力和智能控制)系统中发现的工业设备提供的网络服务。我们提供了不同网段的详细网络拓扑,列举了主机、型号、协议和提供的服务。我们认为,这样一个详细的系统描述可以作为一个更实际的安全研究的推动者。特别是,我们讨论了如何报告的信息可以用于模拟一组不同的重要威胁的情况下,在智能电网域。此外,提供的细节允许其他研究人员建立更详细的模型或模拟。
Industrial control system networks in real world usually require a complex composition of many different devices, protocols, and services. Unfortunately, such practical setups are rarely documented publicly in sufficient technical detail to allow third parties to use the system as reference for their research. As a result, security researchers often have to work with abstract and simplified system assumptions, which might not translate well to practice. In this work, we provide a comprehensive overview of the network services provided by industrial devices found in the EPIC (Electric Power and Intelligent Control) system at SUTD. We provide a detailed network topology of the different network segments, enumerate hosts, models, protocols, and services provided. We argue that such a detailed system description can serve as an enabler for more practical security research. In particular, we discuss how the reported information can be used for emulating a diverse set of important threat scenarios in the smart grid domain. In addition, the provided details allow other researchers to build more detailed models or simulations.