On Building Automation System security

被引:0
|
作者
Morales-Gonzalez, Christopher [1 ]
Harper, Matthew [1 ]
Cash, Michael [2 ]
Luo, Lan [3 ]
Ling, Zhen [4 ]
Sun, Qun Z. [2 ]
Fu, Xinwen [1 ,2 ]
机构
[1] Univ Massachusetts Lowell, Dept Comp Sci, Lowell, MA 01854 USA
[2] Univ Cent Florida, Dept Elect & Comp Engn, Orlando, FL 32816 USA
[3] Anhui Univ Technol, Sch Comp Sci & Technol, Maanshan 243032, Peoples R China
[4] Anhui Univ Technol, Sch Comp Sci & Engn, Nanjing 211189, Peoples R China
来源
HIGH-CONFIDENCE COMPUTING | 2024年 / 4卷 / 03期
基金
美国国家科学基金会;
关键词
Building automation system; BAS protocols; Security; Attack; WAVE;
D O I
10.1016/j.hcc.2024.100236
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Building Automation Systems (BASs) are seeing increased usage in modern society due to the plethora of benefits they provide such as automation for climate control, HVAC systems, entry systems, and lighting controls. Many BASs in use are outdated and suffer from numerous vulnerabilities that stem from the design of the underlying BAS protocol. In this paper, we provide a comprehensive, up-to-date survey on BASs and attacks against seven BAS protocols including BACnet, EnOcean, KNX, LonWorks, Modbus, ZigBee, and Z-Wave. Holistic studies of secure BAS protocols are also presented, covering BACnet Secure Connect, KNX Data Secure, KNX/IP Secure, ModBus/TCP Security, EnOcean High Security and Z-Wave Plus. LonWorks and ZigBee do not have security extensions. We point out how these security protocols improve the security of the BAS and what issues remain. A case study is provided which describes a real-world BAS and showcases its vulnerabilities as well as recommendations for improving the security of it. We seek to raise awareness to those in academia and industry as well as highlight open problems within BAS security. (c) 2024 The Author(s). Published by Elsevier B.V. on behalf of Shandong University. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
引用
收藏
页数:20
相关论文
共 50 条
  • [21] Creating a quality building environment with a Building Automation System
    Sethi, S
    BUILDING FOR THE 21ST CENTURY: ENERGY & THE ENVIRONMENT, 2000, : 33 - 40
  • [22] Optimizing building automation system performance
    Plant Eng (Barrington Ill), 9 (44):
  • [23] How to select a building automation system
    Ricart, Kevin
    Lim, Melissa
    1600, Cahners Business Information (57): : 30 - 36
  • [24] A BUILDING AUTOMATION SYSTEM FOR INTELLIGENT BUILDINGS
    KUJURO, A
    JAPAN TELECOMMUNICATIONS REVIEW, 1988, 30 (03): : 51 - 58
  • [25] An information platform for Building Automation System
    Jiang, Ziyan
    2005 IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL TECHNOLOGY - (ICIT), VOLS 1 AND 2, 2005, : 1455 - 1460
  • [26] An information sharing building automation system
    Jiang, Ziyan
    Xia, Jianjun
    Jiang, Yi
    INTELLIGENT BUILDINGS INTERNATIONAL, 2009, 1 (03) : 195 - 208
  • [27] Wireless Technology in Building Automation System
    Rahmat, Mohd Khairil
    Hor, Kevin Chun Wah
    5TH INTERNATIONAL CONFERENCE ON GREEN DESIGN AND MANUFACTURE 2019 (ICONGDM 2019), 2019, 2129
  • [28] Security for Building Automation with Hardware-Based Node Authentication
    Fischer, Thomas
    Lesjak, Christian
    Hoeller, Andrea
    Steger, Christian
    2017 22ND IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2017,
  • [29] Security Experiences in IoT based applications for Building and Factory Automation
    de las Morenas, Javier
    da Silva, Carolina Miller
    Funchal, Gustavo Silva
    Melo, Victoria
    Vallim, Marcos
    Leitao, Paulo
    2020 IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL TECHNOLOGY (ICIT), 2020, : 322 - 327
  • [30] Research on the security system of power system automation network
    Song Li
    Cong Peixian
    Cai Dongfei
    Zhang Shiyu
    PROCEEDINGS OF THE 2015 5TH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCES AND AUTOMATION ENGINEERING, 2016, 42 : 254 - 258