ICS-BlockOpS: Blockchain for operational data security in industrial control system

被引:29
|
作者
Maw, Aung [1 ]
Adepu, Sridhar [1 ]
Mathur, Aditya [1 ]
机构
[1] Singapore Univ Technol & Design, Singapore, Singapore
基金
新加坡国家研究基金会;
关键词
Critical infrastructure; Industrial control system; Cyber-physical systems; Cyber attacks; SCADA systems; Operational data; Historian security; Blockchain;
D O I
10.1016/j.pmcj.2019.101048
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Industrial Control Systems (ICS) are the backbone of critical infrastructure found in power, water, manufacturing and other industries. An ICS controls a physical plant through the use of sensors and actuators. A Historian sits on a plant network and receives, parses, and saves data and commands transmitted over the network, across the Programmable Logic Controllers (PLCs), sensors and actuators. This data has at least two uses. One use is to check for any process anomalies that may occur due to component failures and cyber attacks. The other use of this data, and the focus of this work, is to serve as critical input to off-line activities such as forensic analysis. A cyber attack on the Historian could jeopardize any forensic analysis be it for maintenance, or discovering an attack trail. In this work, a novel architecture, named ICS-BlockOpS, is proposed to secure plant operational data recorded in the Historian. ICS-BlockOpS is designed to enhance data security along two dimensions: immutability and redundancy. An integrity checking mechanism, in combination with blockchain, is used to ensure data integrity. Data redundancy is achieved by applying an efficient replication mechanism and enables data recovery after an attack. A prototype implementation of ICS-BlockOpS uses Ethereum blockchain in the local network as part of the tamper proofing mechanism. The implementation is in an operational six-stage water treatment plant. The underlying design ideas are generic and could be applied to other ICS as well. (C) 2019 Elsevier B.V. All rights reserved.
引用
收藏
页数:13
相关论文
共 50 条
  • [1] Security Introduction Framework for Operational Technologies and Applying to Industrial Control System
    Yamada, Tsutomu
    Nakano, Toshihiko
    Kaji, Tadashi
    Tano, Shun'ichi
    [J]. 2020 59TH ANNUAL CONFERENCE OF THE SOCIETY OF INSTRUMENT AND CONTROL ENGINEERS OF JAPAN (SICE), 2020, : 25 - 30
  • [2] Initial Investigation of Industrial Control System (ICS) Security Using Artificial Immune System (AIS)
    Bere, Mercy
    Muyingi, Hippolyte
    [J]. 2015 INTERNATIONAL CONFERENCE ON EMERGING TRENDS IN NETWORKS AND COMPUTER COMMUNICATIONS (ETNCC), 2015, : 79 - 84
  • [3] Industrial control system data integrity protection based on blockchain
    Sun, Yanqi
    Zhang, Zhengdao
    [J]. Jisuanji Jicheng Zhizao Xitong/Computer Integrated Manufacturing Systems, CIMS, 2022, 28 (09): : 2909 - 2917
  • [4] Machine learning in industrial control system (ICS) security: current landscape, opportunities and challenges
    Koay, Abigail M. Y.
    Ko, Ryan K. L.
    Hettema, Hinne
    Radke, Kenneth
    [J]. JOURNAL OF INTELLIGENT INFORMATION SYSTEMS, 2023, 60 (02) : 377 - 405
  • [5] Machine learning in industrial control system (ICS) security: current landscape, opportunities and challenges
    Abigail M. Y. Koay
    Ryan K. L Ko
    Hinne Hettema
    Kenneth Radke
    [J]. Journal of Intelligent Information Systems, 2023, 60 : 377 - 405
  • [6] Blockchain-enabled balise data security for train control system
    Muniandi, Ganesan
    [J]. IET Blockchain, 2021, 1 (2-4): : 82 - 94
  • [7] Data Security in Healthcare Industrial Internet of Things With Blockchain
    Khan, Abdullah Ayub
    Bourouis, Sami
    Kamruzzaman, M. M.
    Hadjouni, Myriam
    Shaikh, Zaffar Ahmed
    Laghari, Asif Ali
    Elmannai, Hela
    Dhahbi, Sami
    [J]. IEEE SENSORS JOURNAL, 2023, 23 (20) : 25144 - 25151
  • [8] Model Checking of Security Properties in Industrial Control Systems (ICS)
    Shrestha, Roshan
    Mehrpouyan, Hoda
    Xu, Dianxiang
    [J]. PROCEEDINGS OF THE EIGHTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY'18), 2018, : 164 - 166
  • [9] Industrial control systems (ics) security in power transmission network
    Tschroub, Abdelghani
    [J]. PROCEEDINGS OF 2019 ALGERIAN LARGE ELECTRICAL NETWORK CONFERENCE (CAGRE), 2019, : 17 - 20
  • [10] Active Access Control for the Operational Security in Industrial Control Systems
    Yang Weiyong
    Tao Hongzhu
    Wei Xingshen
    Wang Jingpei
    Wang Haiqing
    Sun Lianwen
    Huang Hao
    [J]. 2020 CHINESE AUTOMATION CONGRESS (CAC 2020), 2020, : 2086 - 2090