Publication | Closed Access
Security Challenges in Control Network Protocols: A Survey
111
Citations
48
References
2018
Year
EngineeringInformation SecurityControl SystemsControl ProtocolHardware SecuritySecure Network AccessNetwork ProtocolsScada SecuritySystems EngineeringSecurity ControlPotential Attack SurfaceSecurity ChallengesSecurity ProtocolsCps SecuritySecure ProtocolNetwork SecurityComprehensive SurveyIec 61850Computer EngineeringData SecurityCryptographySecurityControl System Security
The expanding use of remotely operated control systems in critical infrastructure has dramatically increased their attack surface, highlighting the need for standardized, manufacturer‑agnostic communication protocols and robust protection, yet existing security analyses remain fragmented because of long protocol lifecycles, domain‑specific usage, and rapid evolution. This paper presents a comprehensive survey of the security of key control‑system communication protocols, including Modbus, OPC UA, TASE.2, DNP3, IEC 60870‑5‑101/104, and IEC 61850. To enable comparison, the authors develop a unified test methodology that applies known vulnerability‑based attacks to each protocol and evaluate the impact of IEC 62351 by comparing pre‑ and post‑standard implementations.
With the ongoing adoption of remotely communicating and interacting control systems harbored by critical infrastructures, the potential attack surface of such systems also increases drastically. Therefore, not only the need for standardized and manufacturer-agnostic control system communication protocols has grown, but also the requirement to protect those control systems' communication. There have already been numerous security analyses of different control system communication protocols; yet, these have not been combined with each other sufficiently, mainly due to three reasons: First, the life cycles of such protocols are usually much longer than those of other Internet and communication technologies, therefore legacy protocols are often not considered in current security analyses. Second, the usage of certain control system communication protocols is usually restricted to a particular infrastructure domain, which leads to an isolated view on them. Third, with the accelerating pace at which both control system communication protocols and threats against them develop, existing surveys are aging at an increased rate, making their re-investigation a necessity. In this paper, a comprehensive survey on the security of the most important control system communication protocols, namely Modbus, OPC UA, TASE.2, DNP3, IEC 60870-5-101, IEC 60870-5-104, and IEC 61850 is performed. To achieve comparability, a common test methodology based on attacks exploiting well-known control system protocol vulnerabilities is created for all protocols. In addition, the effectiveness of the related security standard IEC 62351 is analyzed by a pre- and post-IEC 62351 comparison.
| Year | Citations | |
|---|---|---|
Page 1
Page 1