THE OPERATION AND CYBER SECURITY OF INDUSTRIAL CONTROL SYSTEMS AND INDUSTRIAL COMMUNICATION PROTOCOLS: AN EXPLORATORY APPROACH
Author
Antoniou, Anastasios
Date
2016-09Advisor
Su, Weilian
Eagle, Christopher
Second Reader
Ha, Tri T.
Metadata
Show full item recordAbstract
In this thesis, an integrated examination of the operational principles and security aspects of industrial
control systems and industrial communication protocols to discover exploitable vulnerabilities are
investigated. This study primarily focuses on industrial automation equipment that utilizes industrial
Ethernet. Of the many protocols developed by commercial vendors, only PROFINET, EtherNet/IP,
EtherCAT, and Modbus TCP were researched.
The investigation is based on observation of the principles of operation of these protocols and the
functionality of industrial control systems. For this investigation, an environment that emulates a small scale industrial testbed was built utilizing commercial-off-the-shelf equipment. A multi-adaptive software
tool, HERMES, was proposed and developed in the C programming language to allow active injection of
malformed protocol data units. The result is an integrated platform that can be used for testing several
exploitation tools, observing PROFINET communications, and testing the industrial equipment setup
under injection of specially crafted packets.
Rights
Copyright is reserved by the copyright owner.Collections
Related items
Showing items related by title, author, creator and subject.
-
Fuzz testing of industrial network protocols in programmable logic controllers
Gormley, James J., III (Monterey, California: Naval Postgraduate School, 2018-12);Daily operations of U.S. Navy afloat and ashore systems are heavily reliant on industrial control systems (ICSs) to manage critical infrastructure services. Programmable logic controllers (PLCs) are vital components in ... -
Collecting cyberattack data for industrial control systems using honeypots
Hyun, Dahae (Monterey, California: Naval Postgraduate School, 2018-03);Operational technology, information technology for industrial control systems, has advanced more slowly in security than other kinds of information technology. To aid the discovery of indicators of compromise for industrial ... -
ENIP Fuzz: a Scapy-based EtherNet/IP fuzzer for security testing
Tacliad, Francisco (Monterey, California: Naval Postgraduate School, 2016-09);EtherNet/IP is an industrial protocol that is built on top of the TCP/IP protocol suite. Though extending TCP/IP connectivity to industrial control systems (ICS) has enabled operators to implement more agile practices, ...