Cargando…

Assessment And Testing of Industrial Devices Robustness Against Cyber Security Attacks

CERN (European Organization for Nuclear Research),like any organization, needs to achieve the conflicting objectives of connecting its operational network to Internet while at the same time keeping its industrial control systems secure from external and internal cyber attacks. With this in mind, the...

Descripción completa

Detalles Bibliográficos
Autores principales: Tilaro, F, Copy, B
Lenguaje:eng
Publicado: 2011
Materias:
Acceso en línea:http://cds.cern.ch/record/1398647
_version_ 1780923563203624960
author Tilaro, F
Copy, B
author_facet Tilaro, F
Copy, B
author_sort Tilaro, F
collection CERN
description CERN (European Organization for Nuclear Research),like any organization, needs to achieve the conflicting objectives of connecting its operational network to Internet while at the same time keeping its industrial control systems secure from external and internal cyber attacks. With this in mind, the ISA-99[0F1] international cyber security standard has been adopted at CERN as a reference model to define a set of guidelines and security robustness criteria applicable to any network device. Devices robustness represents a key link in the defense-in-depth concept as some attacks will inevitably penetrate security boundaries and thus require further protection measures. When assessing the cyber security robustness of devices we have singled out control system-relevant attack patterns derived from the well-known CAPEC[1F2] classification. Once a vulnerability is identified, it needs to be documented, prioritized and reproduced at will in a dedicated test environment for debugging purposes. CERN - in collaboration with SIEMENS - has designed and implemented a dedicated working environment, the Test-bench for Robustness of Industrial Equipments[2F3] (“TRoIE”). Such tests attempt to detect possible anomalies by exploiting corrupt communication channels and manipulating the normal behavior of the communication protocols, in the same way as a cyber attacker would proceed. This document provides an inventory of security guidelines[3F4] relevant to the CERN industrial environment and describes how we have automated the collection and classification of identified vulnerabilities into a test-bench.
id cern-1398647
institution Organización Europea para la Investigación Nuclear
language eng
publishDate 2011
record_format invenio
spelling cern-13986472022-08-17T13:31:47Zhttp://cds.cern.ch/record/1398647engTilaro, FCopy, BAssessment And Testing of Industrial Devices Robustness Against Cyber Security AttacksAccelerators and Storage RingsCERN (European Organization for Nuclear Research),like any organization, needs to achieve the conflicting objectives of connecting its operational network to Internet while at the same time keeping its industrial control systems secure from external and internal cyber attacks. With this in mind, the ISA-99[0F1] international cyber security standard has been adopted at CERN as a reference model to define a set of guidelines and security robustness criteria applicable to any network device. Devices robustness represents a key link in the defense-in-depth concept as some attacks will inevitably penetrate security boundaries and thus require further protection measures. When assessing the cyber security robustness of devices we have singled out control system-relevant attack patterns derived from the well-known CAPEC[1F2] classification. Once a vulnerability is identified, it needs to be documented, prioritized and reproduced at will in a dedicated test environment for debugging purposes. CERN - in collaboration with SIEMENS - has designed and implemented a dedicated working environment, the Test-bench for Robustness of Industrial Equipments[2F3] (“TRoIE”). Such tests attempt to detect possible anomalies by exploiting corrupt communication channels and manipulating the normal behavior of the communication protocols, in the same way as a cyber attacker would proceed. This document provides an inventory of security guidelines[3F4] relevant to the CERN industrial environment and describes how we have automated the collection and classification of identified vulnerabilities into a test-bench.CERN-ATS-Note-2011-108 TECHoai:cds.cern.ch:13986472011-11-15
spellingShingle Accelerators and Storage Rings
Tilaro, F
Copy, B
Assessment And Testing of Industrial Devices Robustness Against Cyber Security Attacks
title Assessment And Testing of Industrial Devices Robustness Against Cyber Security Attacks
title_full Assessment And Testing of Industrial Devices Robustness Against Cyber Security Attacks
title_fullStr Assessment And Testing of Industrial Devices Robustness Against Cyber Security Attacks
title_full_unstemmed Assessment And Testing of Industrial Devices Robustness Against Cyber Security Attacks
title_short Assessment And Testing of Industrial Devices Robustness Against Cyber Security Attacks
title_sort assessment and testing of industrial devices robustness against cyber security attacks
topic Accelerators and Storage Rings
url http://cds.cern.ch/record/1398647
work_keys_str_mv AT tilarof assessmentandtestingofindustrialdevicesrobustnessagainstcybersecurityattacks
AT copyb assessmentandtestingofindustrialdevicesrobustnessagainstcybersecurityattacks