Publication | Closed Access
I came, I saw, I hacked: Automated Generation of Process-independent Attacks for Industrial Control Systems
15
Citations
28
References
2020
Year
Unknown Venue
EngineeringInformation SecurityFormal VerificationControl SystemsScada SecurityProcess-independent AttacksSystems EngineeringAutomated AttackCps SecurityBenchmark Chemical ProcessMalicious ManipulationsThreat DetectionComputer ScienceIndustrial Control SystemsData SecurityAttack ModelAutomationSecurityControl System SecurityIndustrial Informatics
Malicious manipulations on Industrial Control Systems (ICSs) endanger critical infrastructures, causing unprecedented losses. State-of-the-art research in the discovery and exploitation of vulnerability typically assumes full visibility and control of the industrial process, which in real-world scenarios is unrealistic. In this work, we investigate the possibility of an automated end-to-end attack for an unknown control process in the constrained scenario of infecting just one industrial computer. We create databases of human-machine interface images, and Programmable Logic Controller (PLC) binaries using publicly available resources to train machine-learning models for modular and granular fingerprinting of the ICS sectors and the processes, respectively. We then explore control-theoretic attacks on the process leveraging common/ubiquitous control algorithm modules like Proportional Integral Derivative blocks using a PLC binary reverse-engineering tool, causing stable or oscillatory deviations within the operational limits of the plant. We package the automated attack and evaluate it against a benchmark chemical process, demonstrating the feasibility of advanced attacks even in constrained scenarios.
| Year | Citations | |
|---|---|---|
Page 1
Page 1