智能制造安全挑战与解决方案

Yu-Shan Hsu, Ming-Hour Yang, I-An Lin, Yao-Yang Tsai
{"title":"智能制造安全挑战与解决方案","authors":"Yu-Shan Hsu, Ming-Hour Yang, I-An Lin, Yao-Yang Tsai","doi":"10.1109/ICCE-Taiwan58799.2023.10226888","DOIUrl":null,"url":null,"abstract":"Intelligent manufacturing practice fields often have poor information security; common security flaws in industrial control networks include messages are sending in plaintext, lack of source authentication, and lack of message integrity verification. In this study, methods for secure NC program updating, two-factor user authentication, and secure messages transmission module were proposed to improve the security of industrial control systems. Attacks were performed on a CNC machine to demonstrate that attackers could control the unprotected machines. We also verify the performance of the proposed M2M authentication scheme, which ensure message freshness, in preventing man-in-the-middle, impersonation attack, and replay attack.","PeriodicalId":112903,"journal":{"name":"2023 International Conference on Consumer Electronics - Taiwan (ICCE-Taiwan)","volume":"321 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-07-17","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Smart Manufacturing Security Challenges and Solutions\",\"authors\":\"Yu-Shan Hsu, Ming-Hour Yang, I-An Lin, Yao-Yang Tsai\",\"doi\":\"10.1109/ICCE-Taiwan58799.2023.10226888\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Intelligent manufacturing practice fields often have poor information security; common security flaws in industrial control networks include messages are sending in plaintext, lack of source authentication, and lack of message integrity verification. In this study, methods for secure NC program updating, two-factor user authentication, and secure messages transmission module were proposed to improve the security of industrial control systems. Attacks were performed on a CNC machine to demonstrate that attackers could control the unprotected machines. We also verify the performance of the proposed M2M authentication scheme, which ensure message freshness, in preventing man-in-the-middle, impersonation attack, and replay attack.\",\"PeriodicalId\":112903,\"journal\":{\"name\":\"2023 International Conference on Consumer Electronics - Taiwan (ICCE-Taiwan)\",\"volume\":\"321 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2023-07-17\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2023 International Conference on Consumer Electronics - Taiwan (ICCE-Taiwan)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICCE-Taiwan58799.2023.10226888\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2023 International Conference on Consumer Electronics - Taiwan (ICCE-Taiwan)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICCE-Taiwan58799.2023.10226888","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

智能制造实践领域往往信息安全性较差;工业控制网络中常见的安全漏洞包括消息以明文形式发送、缺乏源身份验证以及缺乏消息完整性验证。本文提出了安全数控程序更新、双因素用户认证和安全消息传输模块等方法来提高工业控制系统的安全性。攻击是在一台CNC机器上进行的,以证明攻击者可以控制未受保护的机器。我们还验证了所提出的M2M认证方案在防止中间人攻击、冒充攻击和重放攻击方面的性能,保证了消息的新鲜度。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Smart Manufacturing Security Challenges and Solutions
Intelligent manufacturing practice fields often have poor information security; common security flaws in industrial control networks include messages are sending in plaintext, lack of source authentication, and lack of message integrity verification. In this study, methods for secure NC program updating, two-factor user authentication, and secure messages transmission module were proposed to improve the security of industrial control systems. Attacks were performed on a CNC machine to demonstrate that attackers could control the unprotected machines. We also verify the performance of the proposed M2M authentication scheme, which ensure message freshness, in preventing man-in-the-middle, impersonation attack, and replay attack.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信