Dead Man's PLC: Towards Viable Cyber Extortion for Operational Technology

被引:0
|
作者
Derbyshire, Richard [1 ]
Green, Benjamin [2 ]
van der Walt, Charl [1 ,3 ]
Hutchison, David [2 ]
机构
[1] Orange Cyberdefense, Lancaster, England
[2] Univ Lancaster, Lancaster, England
[3] Orange Cyberdefense, Cape Town, South Africa
来源
DIGITAL THREATS: RESEARCH AND PRACTICE | 2024年 / 5卷 / 03期
关键词
OT; ICS; CPS; cybercrime; cyber extortion; ransomware;
D O I
10.1145/3670695
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
For decades, operational technology (OT) has enjoyed the luxury of being suitably inaccessible, and thus has experienced directly targeted cyber attacks from only the most advanced and well-resourced adversaries. However, security via obscurity cannot last forever, and indeed a shift is happening whereby less advanced adversaries are showing an appetite for targeting OT. With this shift in adversary demographics, there will likely also be a shift in attack goals, from clandestine process degradation and espionage to overt cyber extortion (Cy-X). Even if encryption-based Cy-X techniques were launched against OT assets, typical recovery practices designed for engineering processes would provide adequate resilience. In response, this article introduces Dead Man's PLC (DM-PLC), a pragmatic step towards viable OT Cy-X that acknowledges and weaponises the resilience processes typically encountered in any OT environment. Using only existing functionality, DM-PLC considers an entire environment as the entity under ransom, whereby all assets constantly send one another heartbeats to ensure the attack remains untampered with, treating any deviations as a detonation trigger akin to a DM switch. A proof of concept of DM-PLC is implemented and evaluated on a peer reviewed and industry validated OT testbed to demonstrate its malicious potential.
引用
收藏
页数:24
相关论文
共 2 条
  • [1] Re-inventing mythologies: arguments towards cultural identity in Medea and Rain in a Dead Man's Footprints
    Halligey, Alex
    SOUTH AFRICAN THEATRE JOURNAL, 2005, 19 (01) : 208 - 222
  • [2] Towards Net Zero Resilience: A Futuristic Architectural Strategy for Cyber-Attack Defence in Industrial Control Systems (ICS) and Operational Technology (OT)
    Ramachandran, Hariharan
    Smith, Richard
    David, Kenny Awuson
    Al-Hadhrami, Tawfik
    Acharya, Parag
    CMC-COMPUTERS MATERIALS & CONTINUA, 2025, 82 (02): : 3619 - 3641