Computing Reviews

Observing industrial control system attacks launched via Metasploit framework
Wallace N., Atkison T.  ACMSE 2013 (Proceedings of the 51st ACM Southeast Conference, Savannah, GA, Apr 4-6, 2013)1-4,2013.Type:Proceedings
Date Reviewed: 11/20/13

Wallace and Atkison, in this paper, model several attacks against programmable logic controllers and observe packet timing during the attacks. During a denial of service attack, the researchers record observations of legitimate and spoofed command and control packets directed toward a programmable logic controller. Attacks are crafted and launched via the open-source framework Metasploit. By comparing the time sequence information for legitimate and spoofed command and control packets, the authors identify a substantial time difference. They suggest that by defining a set of features based on the observations found in this paper, a sophisticated intrusion detection system can be designed for the industrial control system environment.

Overall, the paper exposes risks for industrial control systems running on programmable logic controllers. More research and development needs to be done in this area. I recommend this paper as a good bedtime read.

Reviewer:  Rajat Ravinder Review #: CR141746 (1401-0063)

Reproduction in whole or in part without permission is prohibited.   Copyright 2024 ComputingReviews.com™
Terms of Use
| Privacy Policy