An Enhanced Multi-Stage Semantic Attack Against Industrial Control Systems

被引:5
|
作者
Hu, Yan [1 ]
Sun, Yuyan [2 ,3 ]
Wang, Youcheng [4 ]
Wang, Zhiliang [1 ]
机构
[1] Univ Sci & Technol Beijing, Sch Comp & Commun Engn, Beijing 100083, Peoples R China
[2] Chinese Acad Sci, Inst Informat Engn, Beijing Key Lab IoT Informat Secur, Beijing 100195, Peoples R China
[3] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing 100195, Peoples R China
[4] Beijing Electromech Engn Inst, Sci & Technol Complex Syst Control & Intelligent, Beijing 100074, Peoples R China
来源
IEEE ACCESS | 2019年 / 7卷
基金
中国博士后科学基金; 中国国家自然科学基金;
关键词
Integrated circuits; Intrusion detection; Protocols; Semantics; Industrial control; Industrial control systems; multi-stage semantic attacks; state transition; stealthy attacks; SECURITY;
D O I
10.1109/ACCESS.2019.2949645
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Industrial Control Systems (ICS) play a very important role in national critical infrastructures. However, the growing interaction between the modern ICS and the Internet has made ICS more vulnerable to cyber attacks. In order to protect ICS from malicious attacks, intrusion detection technology emerges. By analyzing the network meta data or the industrial process data, Intrusion Detection Systems (IDS) can identify attacks that violate communication protocols or system specifications. However, the existing intrusion detection technology is not omnipotent, which opens up a back door for some more advanced attacks. In this work, we design an enhanced multi-stage semantic attack against ICS, which is undetectable by existing IDS. By hijacking the communication channels between the Human Machine Interface (HMI) and the remote Programmable Logic Controllers (PLCs), the attacker can manipulate the measurement data and control instructions simultaneously. The fake measurement data deceives the human operator into making wrong decisions. Furthermore, the attacker can strategically manipulate the semantic meaning of control instructions according to system state transition rules. In the meanwhile, a fake view of measurement data is presented to the HMI to conceal the on-going malicious attack. This attack is totally stealthy since the message sizes and timing, the command sequences, and the system state values are all legitimate. Consequently, this attack can secretly bring the system into critical states. Experimental results have verified the strong attack ability of the proposed attack.
引用
收藏
页码:156871 / 156882
页数:12
相关论文
共 50 条
  • [21] Adaptive Tube-Enhanced Multi-Stage Nonlinear Model Predictive Control
    Abdelsalam, Yehia
    Subramanian, Sankaranarayanan
    Aboelnour, Mohamed
    Engell, Sebastian
    IFAC PAPERSONLINE, 2021, 54 (03): : 212 - 218
  • [22] A Novel Probabilistic Matching Algorithm for Multi-Stage Attack Forecasts
    Cheng, Bo-Chao
    Liao, Guo-Tan
    Huang, Chu-Chun
    Yu, Ming-Tse
    IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2011, 29 (07) : 1438 - 1448
  • [23] Control policies for multi-product multi-stage manufacturing systems: An experimental approach
    Amin, M
    Altiok, T
    INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 1997, 35 (01) : 201 - 223
  • [24] Multi-stage Attack Detection and Signature Generation with ICS Honeypots
    Vasilomanolakis, Emmanouil
    Srinivasa, Shreyas
    Cordero, Carlos Garcia
    Muhlhauser, Max
    NOMS 2016 - 2016 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, 2016, : 1227 - 1232
  • [25] APT-Attack Detection Based on Multi-Stage Autoencoders
    Neuschmied, Helmut
    Winter, Martin
    Stojanovic, Branka
    Hofer-Schmitz, Katharina
    Bozic, Josip
    Kleb, Ulrike
    APPLIED SCIENCES-BASEL, 2022, 12 (13):
  • [26] Aerodynamic design of a multi-stage industrial axial compressor
    Zhang, Jinhuan
    Zhou, Zhenggui
    Cao, Hui
    Li, Qi
    ADVANCES IN ENGINEERING SOFTWARE, 2018, 116 : 9 - 22
  • [27] Transformer-based framework for alert aggregation and attack prediction in a multi-stage attack
    Wang, Wenbo
    Yi, Peng
    Jiang, Junfang
    Zhang, Peng
    Chen, Xiang
    COMPUTERS & SECURITY, 2024, 136
  • [28] Multi-Stage Pathological Image Classification using Semantic Segmentation
    Takahama, Shusuke
    Kurose, Yusuke
    Mukuta, Yusuke
    Abe, Hiroyuki
    Fukayama, Masashi
    Yoshizawa, Akihiko
    Kitagawa, Masanobu
    Harada, Tatsuya
    2019 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION (ICCV 2019), 2019, : 10701 - 10710
  • [29] Tube-enhanced multi-stage model predictive control for flexible robust control of constrained linear systems with additive and parametric uncertainties
    Subramanian, Sankaranarayanan
    Lucia, Sergio
    Paulen, Radoslav
    Engell, Sebastian
    INTERNATIONAL JOURNAL OF ROBUST AND NONLINEAR CONTROL, 2021, 31 (09) : 4458 - 4487
  • [30] Uncertain bang-bang control problem for multi-stage switched systems
    Yan, Hongyan
    Jin, Ting
    Sun, Yun
    PHYSICA A-STATISTICAL MECHANICS AND ITS APPLICATIONS, 2020, 551