PCaaD: Towards automated determination and exploitation of industrial systems

被引:9
|
作者
Green, Benjamin [1 ]
Derbyshire, Richard [1 ]
Krotofil, Marina [2 ]
Knowles, William [1 ]
Prince, Daniel [1 ]
Suri, Neeraj [1 ]
机构
[1] Univ Lancaster, Sch Comp & Commun, Lancaster, England
[2] Hamburg Univ Technol, Hamburg, Germany
基金
英国工程与自然科学研究理事会; 欧盟地平线“2020”;
关键词
PLC Programming Practices; Reconnaissance; Process Comprehension; C2; ICS; SCADA; OT;
D O I
10.1016/j.cose.2021.102424
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Over the last decade, Programmable Logic Controllers (PLCs) have been increasingly targeted by attackers to obtain control over industrial processes that support critical services. Such targeted attacks typically require detailed knowledge of system-specific attributes, includ-ing hardware configurations, adopted protocols, and PLC control-logic, i.e., process compre-hension. The consensus from both academics and practitioners suggests stealthy process comprehension obtained from a PLC alone, to execute targeted attacks, is impractical. In contrast, we assert that current PLC programming practices open the door to a new vulner-ability class, affording attackers an increased level of process comprehension. To support this, we propose the concept of Process Comprehension at a Distance (PCaaD), as a novel methodological and automatable approach towards the system-agnostic identification of PLC library functions. This leads to the targeted exfiltration of operational data, manipula-tion of control-logic behavior, and establishment of covert command and control channels through unused memory. We validate PCaaD on widely used PLCs through its practical ap-plication. (c) 2021 Elsevier Ltd. All rights reserved.
引用
收藏
页数:19
相关论文
共 50 条
  • [1] INDUSTRIAL EXPLOITATION OF AUTOMATED DOCUMENTARY INFORMATION-SYSTEMS
    PUSHKARSKAYA, RI
    [J]. NAUCHNO-TEKHNICHESKAYA INFORMATSIYA SERIYA 1-ORGANIZATSIYA I METODIKA INFORMATSIONNOI RABOTY, 1983, (08): : 18 - &
  • [2] Towards Industrial Exploitation of Innovative and Harmonized Production Systems
    Cala, A.
    Foehr, M.
    Rohrmus, D.
    Weinert, N.
    Meyer, O.
    Taisch, M.
    Boschi, F.
    Fantini, P. M.
    Perlo, P.
    Petrali, P.
    Vallhagen, J.
    [J]. PROCEEDINGS OF THE IECON 2016 - 42ND ANNUAL CONFERENCE OF THE IEEE INDUSTRIAL ELECTRONICS SOCIETY, 2016, : 5735 - 5740
  • [3] Towards Automated Generation of Exploitation Primitives for Web Browsers
    Garmany, Behrad
    Stoffel, Martin
    Gawlik, Robert
    Koppe, Philipp
    Blazytko, Tim
    Holz, Thorsten
    [J]. 34TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE (ACSAC 2018), 2018, : 300 - 312
  • [4] Exploitation of sucrose chemistry towards products with industrial application profiles
    Lichtenthaler, FW
    [J]. ZUCKERINDUSTRIE, 1997, 122 (02): : 126 - 126
  • [5] Efficient exploitation of vehicle measurements through automated collective determination
    Tiesler, Harald
    [J]. VDI Berichte, 2007, (1990): : 419 - 431
  • [6] AUTOMATED VOLTAMMETRIC DETERMINATION OF COPPER IN INDUSTRIAL SOLUTIONS
    KOSHCHEI, AM
    SOBOLEVA, LN
    SHAPIRO, SK
    TYUMENTSEV, VA
    GORCHINSKII, YI
    [J]. INDUSTRIAL LABORATORY, 1981, 47 (12): : 1215 - 1217
  • [7] DETERMINATION OF IMMUNOGLOBULINS WITH AUTOMATED SYSTEMS
    NEUMANN, U
    MUNZ, E
    ZIEGENHORN, J
    [J]. SCANDINAVIAN JOURNAL OF CLINICAL & LABORATORY INVESTIGATION, 1977, 37 : 89 - 89
  • [8] Industrial challenges for AI systems engineering Towards autonomous industrial systems
    Sawilla, Ingo
    Weber, Christian
    Schmidt, Benedikt
    Ulrich, Marco
    [J]. AT-AUTOMATISIERUNGSTECHNIK, 2022, 70 (09) : 805 - 814
  • [9] Towards Automated Installation of Reinforcement Using Industrial Robots
    Relefors, Johan
    Momeni, Mahdi
    Pettersson, Lars
    Hellstrom, Erik
    Thunell, Anders
    Papadopoulos, Alessandro V.
    Nolte, Thomas
    [J]. 2019 24TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2019, : 1595 - 1598
  • [10] Towards automated deduction in cP systems
    Liu, Yezhou
    Nicolescu, Radu
    Sun, Jing
    [J]. INFORMATION SCIENCES, 2022, 587 : 435 - 449