{"title":"Fuzzing ICS Protocols: Modbus Fuzzer Framework","authors":"Petr Ilgner, R. Fujdiak","doi":"10.1109/ICCST52959.2022.9896405","DOIUrl":null,"url":null,"abstract":"Traditionally, industrial control systems were very isolated and industrial control systems operated with very consistent data traffic. Along with the trend of Industry 4.0, their isolation is decreasing and industrial systems are much more connected to other networks. Specifically for these systems, there is a strong focus on their reliability, but also on cyber security. This paper focuses on the widely used industrial Modbus protocol, its security aspects and its structure. A tool for fuzzing testing of this protocol is presented in order to detect possible vulnerabilities in Modbus devices. The architecture of the proposed fuzzer is described in detail. The capabilities of the fuzzer are then demonstrated on a testbed.","PeriodicalId":364791,"journal":{"name":"2022 IEEE International Carnahan Conference on Security Technology (ICCST)","volume":"23 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-09-07","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE International Carnahan Conference on Security Technology (ICCST)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICCST52959.2022.9896405","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2
Abstract
Traditionally, industrial control systems were very isolated and industrial control systems operated with very consistent data traffic. Along with the trend of Industry 4.0, their isolation is decreasing and industrial systems are much more connected to other networks. Specifically for these systems, there is a strong focus on their reliability, but also on cyber security. This paper focuses on the widely used industrial Modbus protocol, its security aspects and its structure. A tool for fuzzing testing of this protocol is presented in order to detect possible vulnerabilities in Modbus devices. The architecture of the proposed fuzzer is described in detail. The capabilities of the fuzzer are then demonstrated on a testbed.