通过隐蔽通道增强modbus TCP的完整性

James M. Taylor, H. Sharif
{"title":"通过隐蔽通道增强modbus TCP的完整性","authors":"James M. Taylor, H. Sharif","doi":"10.1109/ICSPCS.2017.8270454","DOIUrl":null,"url":null,"abstract":"CPS-enabled systems form the underlying support infrastructure that impact the efficient delivery of critical goods and services in our modern society. Failure to adequately protect the integrity, confidentiality, and availability of our critical infrastructure systems, like transportation, delivery of energy and water, and healthcare, could introduce vulnerabilities that could be exploited by attackers. CPS networks originated from a number of proprietary protocols, built to operate without connections that extended beyond the plant walls. This “security through obscurity” approach did not reveal widespread security risks until these systems were interconnected with other information technology systems, including vulnerable business operations networks. The characteristics of the communications protocols used in operational technology systems, like Modbus, present a number of barriers to adopting security enhancements. When these systems are exploited, which can be easily demonstrated on a Modbus system, the impact of security failures can be severe. Covert channels have the potential to create an out-of-band communication path that would enable some level of integrity checking between devices. The Modbus Covert Channel Integrity Check is a proposed concept that would demonstrate the use of covert channels as a method of secure communication that would prevent a number of attacks, including man-in-the-middle.","PeriodicalId":268205,"journal":{"name":"2017 11th International Conference on Signal Processing and Communication Systems (ICSPCS)","volume":"32 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2017-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"14","resultStr":"{\"title\":\"Enhancing integrity of modbus TCP through covert channels\",\"authors\":\"James M. Taylor, H. Sharif\",\"doi\":\"10.1109/ICSPCS.2017.8270454\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"CPS-enabled systems form the underlying support infrastructure that impact the efficient delivery of critical goods and services in our modern society. Failure to adequately protect the integrity, confidentiality, and availability of our critical infrastructure systems, like transportation, delivery of energy and water, and healthcare, could introduce vulnerabilities that could be exploited by attackers. CPS networks originated from a number of proprietary protocols, built to operate without connections that extended beyond the plant walls. This “security through obscurity” approach did not reveal widespread security risks until these systems were interconnected with other information technology systems, including vulnerable business operations networks. The characteristics of the communications protocols used in operational technology systems, like Modbus, present a number of barriers to adopting security enhancements. When these systems are exploited, which can be easily demonstrated on a Modbus system, the impact of security failures can be severe. Covert channels have the potential to create an out-of-band communication path that would enable some level of integrity checking between devices. The Modbus Covert Channel Integrity Check is a proposed concept that would demonstrate the use of covert channels as a method of secure communication that would prevent a number of attacks, including man-in-the-middle.\",\"PeriodicalId\":268205,\"journal\":{\"name\":\"2017 11th International Conference on Signal Processing and Communication Systems (ICSPCS)\",\"volume\":\"32 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2017-12-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"14\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2017 11th International Conference on Signal Processing and Communication Systems (ICSPCS)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICSPCS.2017.8270454\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2017 11th International Conference on Signal Processing and Communication Systems (ICSPCS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICSPCS.2017.8270454","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 14

摘要

支持cps的系统构成了影响现代社会中关键商品和服务高效交付的底层支持基础设施。如果不能充分保护关键基础设施系统的完整性、机密性和可用性,如交通、能源和水的输送以及医疗保健,可能会引入漏洞,被攻击者利用。CPS网络起源于许多专有协议,可以在没有连接的情况下运行,延伸到工厂墙之外。在这些系统与其他信息技术系统(包括易受攻击的业务操作网络)相互连接之前,这种“通过模糊实现安全”的方法并没有暴露出广泛的安全风险。在操作技术系统(如Modbus)中使用的通信协议的特性为采用安全性增强提出了许多障碍。当这些系统被利用时(可以很容易地在Modbus系统上演示),安全故障的影响可能是严重的。隐蔽信道有可能创建带外通信路径,使设备之间能够进行某种程度的完整性检查。Modbus隐蔽通道完整性检查是一个被提议的概念,它将演示隐蔽通道作为一种安全通信方法的使用,这种方法可以防止许多攻击,包括中间人攻击。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Enhancing integrity of modbus TCP through covert channels
CPS-enabled systems form the underlying support infrastructure that impact the efficient delivery of critical goods and services in our modern society. Failure to adequately protect the integrity, confidentiality, and availability of our critical infrastructure systems, like transportation, delivery of energy and water, and healthcare, could introduce vulnerabilities that could be exploited by attackers. CPS networks originated from a number of proprietary protocols, built to operate without connections that extended beyond the plant walls. This “security through obscurity” approach did not reveal widespread security risks until these systems were interconnected with other information technology systems, including vulnerable business operations networks. The characteristics of the communications protocols used in operational technology systems, like Modbus, present a number of barriers to adopting security enhancements. When these systems are exploited, which can be easily demonstrated on a Modbus system, the impact of security failures can be severe. Covert channels have the potential to create an out-of-band communication path that would enable some level of integrity checking between devices. The Modbus Covert Channel Integrity Check is a proposed concept that would demonstrate the use of covert channels as a method of secure communication that would prevent a number of attacks, including man-in-the-middle.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信