Feasibility of Applying Moving Target Defensive Techniques in a SCADA System

被引:0
|
作者
Davidson, Cordell [1 ]
Andel, Todd [1 ]
机构
[1] Univ S Alabama, Mobile, AL 36688 USA
关键词
moving target defense; SCADA; security; network security; software vulnerability mitigation; diversity defense;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Supervisory Control and Data Acquisition (SCADA) systems monitor and control industrial systems of national importance, including but not limited to the electric power grid, oil and gas refineries, water supply and sewage systems, and gas pipelines. They are an integral part of a nation's critical infrastructure. As such, the reliability and availability of these systems are extremely important. Once SCADA systems are running reliably, changes to the hardware or software are typically avoided. As a result, many of these systems rely upon hardware and software systems that are years or even decades in age. Over time and for the purpose of cost optimization, SCADA systems have become increasingly reliant upon commercial-off-the-shelf (COTS) products. Many of these products have known vulnerabilities that are expected to be patched or replaced quite often to mitigate potential attacks. However, frequent patches and updates are often unfeasible in a SCADA system. The requirements of reliability and availability may outweigh the potential benefits. An additional security issue is that in order to enable remote system management, SCADA systems are becoming increasingly connected directly to corporate networks as well as the Internet thus making it easier for an adversary to connect to a system in order to exploit known vulnerabilities. Moving Target Defense (MTD) is a security approach used in many common computer systems to help make them less easily compromised. A MTD seeks to provide additional protection to all protected programs even if those programs have known vulnerabilities. It does not seek to fix any particular software vulnerability but, instead, seeks to make any such vulnerability more difficult to exploit. Other security solutions elaborated for our common computer systems and networks, such as frequent software patching, might not be applicable for SCADA systems due to their specific requirements and constraints. However, there has not been much academic discussion of applying Moving Target Defenses to SCADA systems. We analysed several different MTD techniques for their suitability as defense of various components of SCADA systems. Our determination is that there are several MTD approaches that are feasible for use in SCADA systems.
引用
收藏
页码:363 / 370
页数:8
相关论文
共 50 条
  • [1] Moving Target Defense for Securing SCADA Communications
    Heydari, Vahid
    IEEE ACCESS, 2018, 6 : 33329 - 33343
  • [2] The Design and Implementation of a Multicast Address Moving Target Defensive System for Internet-of-Things Applications
    Andrea, Kevin
    Gumusalan, Arda
    Simon, Robert
    Harney, Hugh
    MILCOM 2017 - 2017 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM), 2017, : 531 - 538
  • [3] Moving Target Defense Techniques: A Survey
    Lei, Cheng
    Zhang, Hong-Qi
    Tan, Jing-Lei
    Zhang, Yu-Chen
    Liu, Xiao-Hu
    SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [4] Feasibility studies of applying Kalman Filter techniques to power system dynamic state estimation
    Huang, Zhenyu
    Schneider, Kevin
    Nieplocha, Jarek
    2007 CONFERENCE PROCEEDINGS IPEC, VOLS 1-3, 2007, : 376 - 382
  • [5] Operational Cost of Deploying Moving Target Defenses Defensive Work Factors
    Van Leeuwen, Brian
    Stout, William M. S.
    Urias, Vincent
    2015 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2015), 2015, : 966 - 971
  • [6] The Feasibility Analysis of Applying NMF in SAR Target Recognition
    Cao, Zongjie
    Min, Rui
    Pi, Yiming
    Xu, Zhengwu
    2015 IEEE INTERNATIONAL CONFERENCE ON DIGITAL SIGNAL PROCESSING (DSP), 2015, : 721 - 725
  • [7] Feasibility Test of Tracking Control to Moving Target in Dual-state Trolley Control System
    Kim, Dongho
    Park, Youngjin
    Park, Youn-sik
    2012 12TH INTERNATIONAL CONFERENCE ON CONTROL, AUTOMATION AND SYSTEMS (ICCAS), 2012, : 235 - 239
  • [8] Increasing SCADA System Availability by Fault Tolerance Techniques
    Mikhail, Abrosimov
    Kamil, Iehab Abduljabbar
    Mahajan, Hemant
    2017 INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION, CONTROL AND AUTOMATION (ICCUBEA), 2017,
  • [9] A Review of Moving Target Detection Techniques Using GNSS Passive Remote Sensing System
    Gong, Jianya
    Zhang, Ce
    Shi, Shuzhu
    Wuhan Daxue Xuebao (Xinxi Kexue Ban)/Geomatics and Information Science of Wuhan University, 2024, 49 (07): : 1053 - 1069
  • [10] Applying the Technology of Moving Target Detection in Missile Training Equipment
    Zhou, Guoqing
    Wang, Xinghui
    Li, Xinrong
    INTERNATIONAL JOURNAL OF PATTERN RECOGNITION AND ARTIFICIAL INTELLIGENCE, 2017, 31 (06)