Cybersecurity in industrial control systems: Issues, technologies, and challenges

被引:59
|
作者
Asghar, Muhammad Rizwan [1 ]
Hu, Qinwen [1 ]
Zeadally, Sherali [2 ]
机构
[1] Univ Auckland, Sch Comp Sci, Auckland, New Zealand
[2] Univ Kentucky, Coll Commun & Informat, Lexington, KY 40506 USA
关键词
Cybersecurity in ICS; Industrial control system; Risk management strategies; Threat detection and prevention; Vulnerability assessment; CYBER-PHYSICAL SYSTEM; SECURITY ISSUES; RISK-ASSESSMENT; DESIGN; ATTACKS; MODEL;
D O I
10.1016/j.comnet.2019.106946
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Industrial Control Systems (ICSs) play an important role in today's industry by providing process automation, distributed control, and process monitoring. ICS was designed to be used in an isolated area or connected to other systems via specialised communication mechanisms or protocols. This setup allows manufacturers to manage their production processes with great flexibility and safety. However, this design does not meet today's business requirements to work with state-of-the-art technologies such as Internet-of-Things (IoT) and big data analytics. In order to fulfil industry requirements, many ICSs have been connected to enterprise networks that allow business users to access real-time data generated by power plants. At the same time, this new design opens up several cybersecurity challenges for ICSs. We review possible cyber attacks on ICSs, identify typical threats and vulnerabilities, and we discuss unresolved security issues with existing ICS cybersecurity solutions. Then, we discuss how to secure ICSs (e.g., using risk assessment methodologies) and other protection measures. We also identify open security research challenges for ICSs, and we present a classification of existing security solutions along with their strengths and weaknesses. Finally, we provide future research directions in ICS security. (C) 2019 Elsevier B.V. All rights reserved.
引用
收藏
页数:16
相关论文
共 50 条
  • [1] Cybersecurity issues in industrial control systems
    Szabo, Zsolt
    [J]. 2018 IEEE 16TH INTERNATIONAL SYMPOSIUM ON INTELLIGENT SYSTEMS AND INFORMATICS (SISY 2018), 2018, : 231 - 234
  • [2] Cybersecurity Challenges in Large Industrial IoT Systems
    Leander, Bjorn
    Causevic, Aida
    Hansson, Hans
    [J]. 2019 24TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2019, : 1035 - 1042
  • [3] Cybersecurity for industrial automation and control systems
    Haas, Christian
    Bretthauer, Georg
    Beyerer, Jurgen
    [J]. AT-AUTOMATISIERUNGSTECHNIK, 2023, 71 (09) : 723 - 725
  • [4] Cybersecurity for industrial control systems: A survey
    Bhamare, Deval
    Zolanvari, Maede
    Erbad, Aiman
    Jain, Raj
    Khan, Khaled
    Meskin, Nader
    [J]. COMPUTERS & SECURITY, 2020, 89
  • [5] The Cybersecurity Landscape in Industrial Control Systems
    McLaughlin, Stephen
    Konstantinou, Charalambos
    Wang, Xueyang
    Davi, Lucas
    Sadeghi, Ahmad-Reza
    Maniatakos, Michail
    Karri, Ramesh
    [J]. PROCEEDINGS OF THE IEEE, 2016, 104 (05) : 1039 - 1057
  • [6] Improving Cybersecurity for Industrial Control Systems
    Graham, James
    Hieb, Jeffrey
    Naber, John
    [J]. PROCEEDINGS 2016 IEEE 25TH INTERNATIONAL SYMPOSIUM ON INDUSTRIAL ELECTRONICS (ISIE), 2016, : 618 - 623
  • [7] Cybersecurity Defense for Industrial Process - Control Systems
    Baldi, Mike
    [J]. CHEMICAL ENGINEERING, 2016, 123 (07) : 36 - 41
  • [8] Remote training in cybersecurity for industrial control systems
    Dominguez, Manuel
    Perez, Daniel
    Moran, Antonio
    Alonso, Serafin
    Prada, Miguel A.
    Fuertes, Juan J.
    [J]. IFAC PAPERSONLINE, 2022, 55 (17): : 320 - 325
  • [9] Remote Laboratory for Cybersecurity of Industrial Control Systems
    Del Canto, Carlos J.
    Prada, Miguel A.
    Fuertes, Juan J.
    Alonso, Serafin
    Dominguez, Manuel
    [J]. IFAC PAPERSONLINE, 2015, 48 (29): : 13 - 18
  • [10] Explainable Autonomic Cybersecurity For Industrial Control Systems
    Manoj, Valeti
    Wenda, Shao
    Sihan, Niu
    Rouff, Christopher
    Watkins, Lanier
    Rubin, Aviel
    [J]. 2023 IEEE 13TH ANNUAL COMPUTING AND COMMUNICATION WORKSHOP AND CONFERENCE, CCWC, 2023, : 900 - 906