An Open-Source Testbed to Visualise ICS Cybersecurity Weaknesses and Remediation Strategies - A Research Agenda Proposal

被引:4
|
作者
Ekisa, Conrad [1 ]
Briain, Diarmuid O. [1 ]
Kavanagh, Yvonne [1 ]
机构
[1] Inst Technol, EngCORE Res Ctr, Dept Aerosp Mech & Elect Engn, Carlow, Ireland
关键词
ICS; Cybersecurity; GRFICS; ICS Cyber Kill Chain;
D O I
10.1109/ISSC52156.2021.9467852
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Industrial Control Systems (ICS) are responsible for the control of several processes in various critical infrastructure deployments ranging from energy, power and water utilities, to manufacturing sectors such as pharmaceutical precision engineering. They ensure the smooth, safe running and High Availability of these critical infrastructure and manufacturing processes. ICS cybersecurity is of increasing concern and this is evidenced by the mounting examples of cyber threats and attacks on ICS infrastructure that are referenced both within the technical community and the public media. The barriers of entry to ICS cybersecurity are still high given the limited skills base, expensive and proprietary hardware and software, as well as the inherent dangers of manipulating real physical processes. This greatly inhibits the practical application of cybersecurity tools in ICS environments and therefore the opportunity for practitioners to gain valuable experience. Furthermore, historical ICS testbeds have not delivered a practical application of accessing and improving ICS security posture as poisited in known ICS industry standards. This project seeks to build a comprehensive opensource virtualised ICS testbed to demonstrate typical cybersecurity weaknesses in an ICS environment as well as suitable remediation strategies. This testbed shall simulate real world industrial systems as closely as possible without replicating an entire plant. This research will identify a suitable ICS testbed to visualise the stages of an ICS cyber attack with reference to the ICS cyber kill chain proposed by the SysAdmin, Audit, Network and Security Institute. With the selected ICS testbed as a reference, this project shall also demonstrate an ICS cybersecurity evaluation based on the US National Institute of Standards and Technology cybersecurity framework, detailing how defenders can identify vulnerable components in the ICS, identify potential threat vectors within the environment and develop suitable mitigations to improve the organisations overall security posture. This project contributes to growing ICS cybersecurity skills to better protect industrial processes and critical infrastructure.
引用
收藏
页数:6
相关论文
共 7 条
  • [1] VICSORT - A Virtualised ICS Open-source Research Testbed
    Ekisa, Conrad
    Briain, Diarmuid O.
    Kavanagh, Yvonne
    [J]. 2022 CYBER RESEARCH CONFERENCE - IRELAND (CYBER-RCI), 2022, : 64 - 71
  • [2] Development of an Open-Source Testbed Based on the Modbus Protocol for Cybersecurity Analysis of Nuclear Power Plants
    de Brito, Israel Barbosa
    de Sousa Jr, Rafael T.
    [J]. APPLIED SCIENCES-BASEL, 2022, 12 (15):
  • [3] Acumen: An Open-Source Testbed for Cyber-Physical Systems Research
    Taha, Walid
    Duracz, Adam
    Zeng, Yingfu
    Atkinson, Kevin
    Bartha, Ferenc A.
    Brauner, Paul
    Duracz, Jan
    Xu, Fei
    Cartwright, Robert
    Konecny, Michal
    Moggi, Eugenio
    Masood, Jawad
    Andreasson, Pererik
    Inoue, Jun
    Sant'Anna, Anita
    Philippsen, Roland
    Chapoutot, Alexandre
    O'Malley, Marcia
    Ames, Aaron
    Gaspes, Veronica
    Hvatum, Lise
    Mehta, Shyam
    Eriksson, Henrik
    Grante, Christian
    [J]. INTERNET OF THINGS: IOT INFRASTRUCTURES, PT I, 2016, 169 : 118 - 130
  • [4] Interspecies Artistic Research Strategies: Biosemiotic Methods and Open-Source Network Technologies
    Lamoncha, Fabricio
    [J]. JOURNAL OF SCIENCE AND TECHNOLOGY OF THE ARTS, 2020, 12 (01) : 27 - 32
  • [5] Building a 5G Core Network Testbed: Open-Source Solutions, Lessons Learned, and Research Directions
    Linh-An Phan
    Pesch, Dirk
    Roedig, Utz
    Sreenan, Cormac J.
    [J]. 38TH INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING, ICOIN 2024, 2024, : 641 - 646
  • [6] Bilateral Cochlear Implant Processing of Coding Strategies With CCi-MOBILE, an Open-Source Research Platform
    Ghosh, Ria
    Hansen, John H. L.
    [J]. IEEE-ACM TRANSACTIONS ON AUDIO SPEECH AND LANGUAGE PROCESSING, 2023, 31 : 1839 - 1850
  • [7] Open-source low-cost Hardware-in-the-loop simulation platform for testing control strategies for artificial pancreas research
    Fernanda Quesada, Luisa
    Rojas, Jose David
    Arrieta, Orlando
    Vilanova, Ramon
    [J]. IFAC PAPERSONLINE, 2019, 52 (01): : 275 - 280