Visible to the public A Brief Look at the Security of DeviceNet Communication in Industrial Control Systems

TitleA Brief Look at the Security of DeviceNet Communication in Industrial Control Systems
Publication TypeConference Paper
Year of Publication2018
AuthorsMurvay, Pal-Stefan, Groza, Bogdan
Conference NameProceedings of the Central European Cybersecurity Conference 2018
PublisherACM
Conference LocationNew York, NY, USA
ISBN Number978-1-4503-6515-4
Keywordsattacks, controller area network security, Cyber-physical systems, DeviceNet, industrial control systems, Internet of Things, pubcrawl, resilience, security
AbstractSecurity is a vital aspect of industrial control systems since they are used in critical infrastructures and manufacturing processes. As demonstrated by the increasing number of emerging exploits, securing such systems is still a challenge as the employed fieldbus technologies do not offer intrinsic support for basic security objectives. In this work we discuss some security aspects of DeviceNet, a communication protocol widely used for control applications especially in the North American industrial sector. Having the Controller Area Network (CAN) protocol at its base, DeviceNet inherits all the vulnerabilities that were already illustrated on CAN in-vehicle communication. We discuss how the lack of security in DeviceNet can be exploited and point on the fact that these vulnerabilities can be modelled by existing formal verification tools and countermeasures can be put in place.
URLhttp://doi.acm.org/10.1145/3277570.3277575
DOI10.1145/3277570.3277575
Citation Keymurvay_brief_2018