ICSSIM-A framework for building industrial control systems security testbeds

被引:8
|
作者
Dehlaghi-Ghadim, Alireza [1 ,2 ]
Balador, Ali [2 ]
Moghadam, Mahshid Helali [2 ]
Hansson, Hans [1 ,2 ]
Conti, Mauro [3 ]
机构
[1] RISE Res Inst Sweden, Vasteras, Sweden
[2] Malardalen Univ, Vasteras, Sweden
[3] Univ Padua, Padua, Italy
关键词
Cybersecurity; Industrial control system; Testbed; Network emulation; Cyberattack;
D O I
10.1016/j.compind.2023.103906
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
With the advent of the smart industry, Industrial Control Systems (ICS) moved from isolated environments to connected platforms to meet Industry 4.0 targets. The inherent connectivity in these services exposes such systems to increased cybersecurity risks. To protect ICSs against cyberattacks, intrusion detection systems (IDS) empowered by machine learning are used to detect abnormal behavior of the systems. Operational ICSs are not safe environments to research IDSs due to the possibility of catastrophic risks. Therefore, realistic ICS testbeds enable researchers to analyze and validate their IDSs in a controlled environment. Although various ICS testbeds have been developed, researchers' access to a low-cost, extendable, and customizable testbed that can accurately simulate ICSs and suits security research is still an important issue.In this paper, we present ICSSIM, a framework for building customized virtual ICS security testbeds in which various cyber threats and network attacks can be effectively and efficiently investigated. This framework contains base classes to simulate control system components and communications. Simulated components are deployable on actual hardware such as Raspberry Pis, containerized environments like Docker, and simulation environments such as GNS-3. ICSSIM also offers physical process modeling using software and hardware in the loop simulation. This framework reduces the time for developing ICS components and aims to produce extendable, versatile, reproducible, low-cost, and comprehensive ICS testbeds with realistic details and high fidelity. We demonstrate ICSSIM by creating a testbed and validating its functionality by showing how different cyberattacks can be applied.
引用
收藏
页数:14
相关论文
共 50 条
  • [1] Design Considerations for Building Credible Security Testbeds: Perspectives from Industrial Control System Use Cases
    Ani, Uchenna P. Daniel
    Watson, Jeremy M.
    Green, Benjamin
    Craggs, Barnaby
    Nurse, Jason R. C.
    [J]. Journal of Cyber Security Technology, 2021, 5 (02) : 71 - 119
  • [2] A Survey on Industrial Control System Testbeds and Datasets for Security Research
    Conti, Mauro
    Donadel, Denis
    Turrin, Federico
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2021, 23 (04): : 2248 - 2294
  • [3] Design and Implementation of a Security Framework for Industrial Control Systems
    Harshe, Omkar A.
    Chiluvuri, N. Teja
    Patterson, Cameron D.
    Baumann, William T.
    [J]. 2015 INTERNATIONAL CONFERENCE ON INDUSTRIAL INSTRUMENTATION AND CONTROL (ICIC), 2015, : 127 - 132
  • [4] A logic-based framework for the security analysis of Industrial Control Systems
    Lemaire L.
    Vossaert J.
    Jansen J.
    Naessens V.
    [J]. Automatic Control and Computer Sciences, 2017, 51 (2) : 114 - 123
  • [5] A new safety and security risk analysis framework for industrial control systems
    Kriaa, Siwar
    Bouissou, Marc
    Laarouchi, Youssef
    [J]. PROCEEDINGS OF THE INSTITUTION OF MECHANICAL ENGINEERS PART O-JOURNAL OF RISK AND RELIABILITY, 2019, 233 (02) : 151 - 174
  • [6] A Framework for Security Monitoring of Real IoT Testbeds
    La, Vinh
    de Oca, Edgardo Montes
    Mallouli, Wissam
    Cavalli, Ana
    [J]. PROCEEDINGS OF THE 16TH INTERNATIONAL CONFERENCE ON SOFTWARE TECHNOLOGIES (ICSOFT), 2021, : 645 - 652
  • [7] Taxonomy of SCADA systems security testbeds
    Di Pietro, Antonio
    Panzieri, Stefano
    [J]. INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURES, 2014, 10 (3-4) : 288 - 306
  • [8] A Survey of Industrial Control System Testbeds
    Holm, Hannes
    Karresand, Martin
    Vidstrom, Arne
    Westring, Erik
    [J]. SECURE IT SYSTEMS, NORDSEC 2015, 2015, 9417 : 11 - 26
  • [9] Towards a Modular Security Testing Framework for Industrial Automation and Control Systems: ISuTest
    Pfrang, Steffen
    Meier, David
    Kautz, Valentin
    [J]. 2017 22ND IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2017,
  • [10] Industrial Control System Security Framework for Ethiopia
    Berhe, Abraham Belay
    Tizazu, Gebere Akele
    Kim, Ki-Hyung
    [J]. 2017 NINTH INTERNATIONAL CONFERENCE ON UBIQUITOUS AND FUTURE NETWORKS (ICUFN 2017), 2017, : 814 - 817