학술논문

SCADA-SST: a SCADA security testbed
Document Type
Conference
Source
2016 World Congress on Industrial Control Systems Security (WCICSS) Industrial Control Systems Security (WCICSS), 2016 World Congress on. :1-6 Dec, 2016
Subject
Computing and Processing
Robotics and Control Systems
Testing
SCADA systems
Industrial control
Protocols
Computer crime
Smart grids
Simulation
Security testing
Industrial Control Systems
Network attacks
Language
Abstract
The number of reported cybersecurity incidents on SCADA (Supervisory Control and Data Acquisition) systems increased significantly in the past few years. One contributing factor is the fact that security testing of live SCADA systems is not practical as such systems are expected to be operational 24/7. Also and most importantly, conducting live security testing on these types of systems is generally costly. A practical and cost-effective solution is to carry out security testing on a simulated version of the physical setting. The main contribution of this paper is to present a SCADA simulation environment (SCADA-SST) suitable for security testing. The simulation environment is generic, easy to setup (comes with a detailed manual), and supports hybrid architectures (involving simulated as well as physical components). We show how SCADA-SST can be used to simulate two realistic settings, namely, Water distribution and Electrical power grid. Finally, for the sake of security testing example, we show how SCADASST can be used to assess the resilience of common SCADA nodes to DOS attacks.