




版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
employee
IndustrialCyberSecurity
MissionCentricApproach
SergeyGordeyhcik
SCADAStrangeLove
ResearchTeam
WWW.SCADA.SL
GroupofsecurityresearchersfocusedonICS/SCADA
AlexanderTimorin
DmitrySerebryannikov
SergeyDrozdov
AlexanderTlyapov
DmitrySklyarov
SergeyGordeychik
AlexanderZaitsev
EvgenyErmakov
SergeySidorov
AlexeyOsipov
GlebGritsai
SergeyScherbel
AndreyMedov
IlyaKarpov
TimurYunusov
ArtemChaykin
IvanPoliyanchuk
ValentinShilnenkov
DenisBaranov
KirillNesterov
VladimirKochetkov
DmitryEfanov
RomanIlin
VyacheslavEgoshin
DmitryNagibin
RomanPolushin
SergeyBobrov
YuriGoltsevYuriyDyachenko
tosaveHumanityfromindustrialdisasterandtokeepPurityOfEssence
CYBERSECURITY?
INDUSTRIALCYBERSECURITY
Functional
Safetyand
Reliability
Industrial
Safety
Information
Security
Thesecretsofcybersecurity,ValentinGpanovich,EfimRozenberg,SergeyGordeychik.RailwayStrategies,Issue130
/schofieldpublishingltd/docs/railway_strategies_issue_130_june_2
THREATS?
THREATS?
/story/four-cyber-attacks-on-uk-railways-in-a-year-10498558
/technology/2016/jan/07/ukrainian-blackout-hackers-attacked-media-company
INTERCONNECTEDWORLD
32C3,Hamburg,TheGreatTrainCyberRobbery
220,558ONLINE,17,042INENTERPRISES
/analysis/publications/75343/industrial-cybersecurity-threat-landscape/
ICSONLINE:CHINA
ICSONLINE:CHINA
/blog/2016/03/census-scanning-from-siemens-s7-plc-cpustatus/
GREATERCHINA
~10,000OF“SMART”POWERGRIDOBJECTS
•GREENENERGY
•SMARTGRID
•DIGITALSUBSTATIONS121,000KMOFRAILWAYS
•19,000KMOFHIGH-SPEEDLINES
•HIGHLYAUTOMATED
•NATIONALHIGH-SPEEDRAILGRID(4+4)
DIGITALSUBSTATIONTAKEOVER
CTF-STYLEWHITEHATINDUSTRIALCHALLENGE
/press/news/41213/
DIGITALSUBSTATIONTAKEOVER:GOALS
•FINDVULNERABILITIESINIEC-61850SUBSTATIONS
•CREATEEXPLOIT
•TRIGGERCYBER-PHISICALATTACK
RelayProtection
/press/news/41213/
VULNERABILITIESINRELAYPROTECTION
REMOTECODEEXECUTION?
•togetfirmware?
•togetdebugsymbols?
•todebug?
•..PowerPC
•no“operationsystem”
CONFIRMATIONCODE“311299”
Toaccessthisinformation,theconfirmationcode“311299”needstobeprovidedwhenprompted."
...Siemensdoesnotpublishofficialdocumentationonthesestatistics.ItisstronglyrecommendedtoworktogetherwithSiemensSIPROTECcustomercareorcommissioningexpertstoretrieveandinterpretthestatisticsandtestinformation..."
DEVICEMEMORY
/2015/12/now-declared-capabilities.html
CODEREUSE
Linux
VxWorks6.x
61850Stack
MisfortuneCookie
SSHserver
Kudos@repdet@k_v_Nesterov@samincube
RAILWAYCOMPUTERBASEDINTERLOCKING
RAILWAYGSM-RISSUES
VULNERABILITIESOF(U)SIM
•Remotedatarecovery(Kc,TIMSI)
–Chaneldecryption(includingA5/3)
–«Clone»theSIMandmobilestation
•SIM“malware”
•BlockSIMviaPIN/PUKbrute
•ExtendedOTAfeatures(FOTA)
KarstenNohl,https://srlabs.de/rooting-sim-cards/
AlexanderZaitsev,SergeyGordeychik,AlexeyOsipov,PacSec,Tokyo,Japan,2014
LOCALVENDORS
INDUSTRIALCYBERSECURITY
Functional
Safetyand
Reliability
Industrial
Safety
Information
Security
Thesecretsofcybersecurity,ValentinGpanovich,EfimRozenberg,SergeyGordeychik.RailwayStrategies,Issue130
/schofieldpublishingltd/docs/railway_strategies_issue_130_june_2
MISSIONCENTRICAPPROACH
Industrialsafety:directlyaffectphysicalsafety.
Economical:decreaserailroadtrafficcapacityorotherquantitativeeconomicalcharacteristics(traindelays,localpoweroutage)
Reliabilityandfunctionalsafetyimpact:ICScrashes,outofservice,etc.
COMPUTERBASEDINTERLOCKING
1
2
FORMALREQUIREMENTS
CBI:THREATMODEL
1.Safety(CyberPhysicalThreats)
•setalessrestrictivesignallight
•operateaswitchwithatrainpassingoverit
•setconflictingroutes…
2.Economics(freightefficiency)
•CBICPUcrash
•Blockingofcontrol
•Falseindication…
3.Reliabilityandfunctionalsafety
•CBICPUreboot
•Networkcrash…
Signallingcybersecurity:theneedforamission-centricapproach
ValentinGapanovich,EfimRozenbergandSergeyGordeychik
/index.php/signalling/signalling-cyber-security-the-need-for-a-mission-centric-approach.html
FULLPICTURE
LETDOITTOGETHER!
•GOVERNMENT
REGULATORYAUTHORITIES
LAWENFORCEMENTS
CERTS
•RESEARCHERS
•ICSVENDORS
•SECURITYVENDORS
•OPERATORSOFCRITICALINFRASTRUCTURE
#SCADASOS
Q:WTFSACADSOS?
A:SCADASOS-(un)Secure
OpenSmartGridsisopen
initiativetoriseawarenesson
insecuritiesofSmartGrid,
PhotovoltaicPowerStations
andWindFarms.
Q:Howtoparticipate
A:FindInternet-connectedPV
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- 四年级品德与社会下册 交通与我们的生活 2教学实录 人教新课标版
- 医院防跌倒课件
- 小学防性侵害课件
- 2023一年级数学上册 二 比较第3课时 跷跷板教学实录 北师大版
- 2025汽车租赁合同范本2
- 冀教版信息技术小学五年级下册《第13课 美丽的海洋世界》教学设计
- 中学生卫生健康知识讲座
- 三年级下美术教学设计+教学反思-门窗墙-苏教版
- 2025企业办公装修合同模板
- 2025装修合同协议书模板
- 中班语言《玩具火车轰隆轰隆》课件
- JT-T 1495-2024 公路水运危险性较大工程专项施工方案编制审查规程
- 果农指南:释迦果病虫害防治手册
- 2024年卫生资格(中初级)-初级药师笔试考试历年真题含答案
- 幼儿园绘本故事 糟糕身上长条纹了
- T∕CACM 1078-2018 中医治未病技术操作规范 拔罐
- DB11∕T 722-2022 节水灌溉工程自动控制系统设计规范
- 《传染病》PPT课件完美版-2024鲜版
- 2024山东春季高考春招单招日语模拟练习及答案详解
- 社会主义现代化建设的教育科技人才战略
- 《农村发展概论》课件
评论
0/150
提交评论