Vulnerabilities of the Open Platform Communication Unified Architecture Protocol in Industrial Internet of Things Operation

被引:5
|
作者
Shin, Dong-Hyuk [1 ]
Kim, Ga-Yeong [1 ]
Euom, Ieck-Chae [2 ]
机构
[1] Chonnam Natl Univ, Syst Secur Res Ctr, Gwangju 61186, South Korea
[2] Chonnam Natl Univ, Dept Data Sci, Gwangju 61186, South Korea
关键词
open platform communication (OPC) unified architecture (UA); vulnerability discovery framework; vulnerability analysis; industrial control system; industrial Internet of Things;
D O I
10.3390/s22176575
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
Recently, as new threats from attackers are discovered, the damage and scale of these threats are increasing. Vulnerabilities should be identified early, and countermeasures should be implemented to solve this problem. However, there are limitations to applying the vulnerability discovery framework used in practice. Existing frameworks have limitations in terms of the analysis target. If the analysis target is abstract, it cannot be easily applied to the framework. Therefore, this study proposes a framework for vulnerability discovery and countermeasures that can be applied to any analysis target. The proposed framework includes a structural analysis to discover vulnerabilities from a scenario composition, including analysis targets. In addition, a proof of concept is conducted to derive and verify threats that can actually occur through threat modeling. In this study, the open platform communication integrated architecture used in the industrial control system and industrial Internet of Things environment was selected as an analysis target. We find 30 major threats and four vulnerabilities based on the proposed framework. As a result, the validity of malicious client attacks using certificates and DoS attack scenarios using flooding were validated, and we create countermeasures for these vulnerabilities.
引用
收藏
页数:30
相关论文
共 50 条
  • [1] OPIIoT: Design and Implementation of an Open Communication Protocol Platform for Industrial Internet of Things
    Hsiao, Chi-Hung
    Lee, Wei-Po
    [J]. INTERNET OF THINGS, 2021, 16
  • [2] Mapping Vulnerabilities in the Industrial Internet of Things Landscape
    Mourtzis, Dimitris
    Angelopoulos, Konstantinos
    Zogopoulos, Vasilios
    [J]. 29TH CIRP DESIGN CONFERENCE 2019, 2019, 84 : 265 - 270
  • [3] Vulnerabilities of the 6P protocol for the Industrial Internet of Things: Impact analysis and mitigation
    Righetti, Francesca
    Vallati, Carlo
    Tiloca, Marco
    Anastasi, Giuseppe
    [J]. COMPUTER COMMUNICATIONS, 2022, 194 : 411 - 432
  • [4] An authentication and key agreement mechanism for OPC Unified Architecture in industrial Internet of Things
    Wei, Min
    Zhang, Shuaidong
    Wang, Ping
    Kim, Keecheon
    [J]. INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2018, 14 (01):
  • [5] Protocol and Architecture to Bring Things into Internet of Things
    Asensio, Angel
    Marco, Alvaro
    Blasco, Ruben
    Casas, Roberto
    [J]. INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2014,
  • [6] A Unified Architecture for Industrial IoT Security Requirements in Open Platform Communications
    Hansch, Gerhard
    Schneider, Peter
    Fischer, Kai
    Boettinger, Konstantin
    [J]. 2019 24TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2019, : 325 - 332
  • [7] Open Ecosystem for Future Industrial Internet of Things (IIoT): Architecture and Application
    Zhang, Pinjia
    Wu, Yang
    Zhu, Hongdong
    [J]. CSEE JOURNAL OF POWER AND ENERGY SYSTEMS, 2020, 6 (01): : 1 - 11
  • [8] Emergent Communication Protocol Learning for Task Offloading in Industrial Internet of Things
    Mostafa, Salwa
    Mota, Mateus P.
    Valcarce, Alvaro
    Bennis, Mehdi
    [J]. IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, : 7055 - 7060
  • [9] Protocol Security in the Industrial Internet of Things
    Dahlmanns, Markus
    Wehrle, Klaus
    [J]. PROCEEDINGS OF 2024 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, NOMS 2024, 2024,
  • [10] An Open Architecture for Converged Internet of Things
    Zou Junwei
    Wu Yuexin
    Zhang Xiaoying
    [J]. CHINA COMMUNICATIONS, 2011, 8 (01) : 151 - 155