Stateful Intrusion Detection for IEC 60870-5-104 SCADA Security


Autoria(s): Yang, Y.; McLaughlin, K.; Sezer, S.; Yuan, Y.B.; Huang, W.
Data(s)

27/07/2014

Resumo

Cyber threats in Supervisory Control and Data Acquisition (SCADA) systems have the potential to render physical damage and jeopardize power system operation, safety and stability. SCADA systems were originally designed with little consideration of escalating cyber threats and hence the problem of how to develop robust intrusion detection technologies to tailor the requirements of SCADA is an emerging topic and a big challenge. This paper proposes a stateful Intrusion Detection System (IDS) using a Deep Packet Inspection (DPI) method to improve the cyber-security of SCADA systems using the IEC 60870-5-104 protocol which is tailored for basic telecontrol communications. The proposed stateful protocol analysis approach is presented that is designed specifically for the IEC 60870-5-104 protocol. Finally, the novel intrusion detection approach are implemented and validated.

Formato

application/pdf

Identificador

http://pure.qub.ac.uk/portal/en/publications/stateful-intrusion-detection-for-iec-608705104-scada-security(43f58a2a-6573-462f-b1fd-655b8fe64220).html

http://dx.doi.org/10.1109/PESGM.2014.6939218

http://pure.qub.ac.uk/ws/files/14448430/Stateful_Intrusion_Detection_for_IEC_60870_5_104_SCADA_Security.pdf

Idioma(s)

eng

Direitos

info:eu-repo/semantics/openAccess

Fonte

Yang , Y , McLaughlin , K , Sezer , S , Yuan , Y B & Huang , W 2014 , Stateful Intrusion Detection for IEC 60870-5-104 SCADA Security . in 2014 IEEE PES General Meeting Conference & Exposition . pp. 1-5 , IEEE Power & Energy Society General Meeting, 2014 (PES 14) , Washington DC , United States , 27-31 July . DOI: 10.1109/PESGM.2014.6939218

Tipo

contributionToPeriodical