article

Vulnerabilities on the wire: Mitigations for insecure ICS device communication

  • Cyber security.
  • Henry Stewart Publications
Research footprint

At a glance

Citations
3
References
0
Comments
0
Paper overview

Öz

Modbus transmission control protocol (TCP) and other legacy ICS protocols ported over from serial communications are widely used in many ICS verticals. Due to extended operational industrial control system (ICS) component life, these protocols will be used for many years to come. Insecure ICS protocols allow attackers to potentially manipulate programmable logic controller (PLC) code and logic values that could lead to disrupted critical system operations. These protocols are susceptible to replay attacks and unauthenticated command execution.1 This paper examines the viability of deploying PLC configuration modifications, programming best practices and network security controls to demonstrate that it is possible to increase the difficulty for attackers to maliciously abuse ICS devices and mitigate the effects of attacks based on insecure ICS protocols. Student kits provided in SANS ICS515 and ICS612 courses form the backdrop for testing and evaluating ICS protocols and device configurations.

Record transparency

Publication details

DOI
10.69554/rqmz6288
OpenAlex
W4400993003
Document type
article
Language
EN
Source
Cyber security.
Last metadata update
Community

Comments

Oturum Açın to join the discussion.

  1. No comments yet. Start the discussion.