DocumentCode
2101245
Title
A testbed for SCADA cyber security and intrusion detection
Author
Singh, Prateek ; Garg, Saurabh ; Kumar, Vinod ; Saquib, Zia
Author_Institution
Centre for Development of Advanced Computing (C-DAC) Gulmohar Cross Road No.9, Juhu, Mumbai India
fYear
2015
fDate
5-7 Aug. 2015
Firstpage
1
Lastpage
6
Abstract
Power grid is an important element of the cyber physical systems. Attacks on such infrastructure may have catastrophic impact and hence the mitigation solutions for the attacks are necessary. It is impractical to test attacks and mitigation strategies on real networks. A testbed as a platform bridges the cyber-physical divide by bringing in the physical system inside the cyber domain, and test the attack scenarios. We are proposing such a testbed here that can simulate power systems Supervisory Control and Data Acquisition (SCADA). The testbed consists of traffic generator, simulated devices like Remote Terminal Units (RTUs), Master Terminal Unit (MTU), Human Machine Interface (HMI) etc. and the communication channel wrapped around industrial communication protocols such as IEC-60870-5-101 and DNP3. The proposed testbed includes with a comparator module which helps in detecting potential intrusions at RTU. A compromised RTU can be manipulated to send fabricated commands in the grid or to send polled responses from the grid. Detecting compromised systems at early stages helps in reducing damage to Industrial Control System (ICS) and providing higher security measures.
Keywords
Computer security; Generators; Process control; Protocols; SCADA systems; Industrial Control Systems; Intrusion Detection; Power System Simulation; SCADA; SCADA Security; Test-bed;
fLanguage
English
Publisher
ieee
Conference_Titel
Cyber Security of Smart Cities, Industrial Control System and Communications (SSIC), 2015 International Conference on
Conference_Location
Shanghai, China
Type
conf
DOI
10.1109/SSIC.2015.7245683
Filename
7245683
Link To Document