| 研究生: |
陳階欣 Chen, Jie-Shin |
|---|---|
| 論文名稱: |
基於水資源工控系統跨實體層入侵偵測之研究 Cross-Physical Layer Intrusion Detection Research on Water Resources-based Industrial Control System |
| 指導教授: |
李忠憲
Li, Jung-Shian |
| 學位類別: |
碩士 Master |
| 系所名稱: |
電機資訊學院 - 電腦與通信工程研究所 Institute of Computer & Communication Engineering |
| 論文出版年: | 2021 |
| 畢業學年度: | 109 |
| 語文別: | 中文 |
| 論文頁數: | 54 |
| 中文關鍵詞: | 水資源領域 、工業控制系統 、工業控制系統攻擊與防禦 、異常校正 |
| 外文關鍵詞: | Water Resources Field, Industrial Control Systems, Industrial Control Systems Attack And Defense, Anomaly Correction |
| 相關次數: | 點閱:195 下載:0 |
| 分享至: |
| 查詢本校圖書館目錄 查詢臺灣博碩士論文知識加值系統 勘誤回報 |
近年來水資源領域的工業控制系統(Industrial Control System,ICS)攻擊事件日益上升,以2021年2月佛羅里達州的淨水廠被攻擊一事件可發現,當前ICS領域的漏洞非常多,而政府機構與產業界也積極提出工業控制系統資安規範來讓大家遵循,以降低攻擊事件的發生。新加坡是個以研究水資源相關議題出名的國家,他們建置的大型水處理平台(SWaT)更是有名。而本人所屬的實驗室有與國立成功大學水工試驗所共同建置以水壩營運為重點的閘門控制系統資安測試平台,本研究透過參考新加坡SWaT水處理平台及相關文獻後,研擬一以水壩營運為場景的實驗架構,並提出工業控制系統攻擊與防護手法。其攻擊手法可分為三大類,依序為感測器干擾、傳輸線路干擾及工控網路攻擊。而本研究也有提出相對應於攻擊手法的防護對策,並將其以防護流程的方式呈現。經實驗後,本研究的攻擊手法均可有效對水壩營運之設備進行干擾及攻擊,而所提出的防護手法也可成功抵擋攻擊行為,另外,本研究亦有針對某水壩進行內部壩體研究,並參考該水壩的閘門圖控主機之組態,開發閘門控制系統感測器異常校正的手機程式,以提供工程人員驗證該水壩出水口的放水時間之正確性。
In recent years, the number of industrial control system (ICS) attacks in the water field has been increasing. The attack on a water purification plant in Florida in February 2021 shows that there are many vulnerabilities in the ICS field, and government agencies and expert are actively proposing industrial control system information security standards for everyone to follow in order to reduce the occurrence of attacks. Singapore is a country famous for researching water-related issues, and their large-scale water treatment platform (SWaT) is even more famous. In this study, we have developed an experimental framework for dam operation and proposed attack and protection techniques for industrial control systems by referring to Singapore's SWaT water treatment platform and related literature. The attack techniques can be divided into three major categories, namely sensor interference, transmission line interference, and industrial control network attack. In this study, we also propose the protection measures corresponding to the attack techniques and present them in the form of protection process. In addition, a study was conducted on the internal dam of Dam and a cell phone program for gate control system sensor abnormality correction was developed with reference to the configuration of the gate control system of Dam to provide engineers with verification of the release time of the intake gate.
[1] iThome, “約翰尼斯堡電廠感染勒索軟體,居民半天無電可用,” 2019. [Online]. Available: https://www.ithome.com.tw/news/132058. [Accessed 1 6 2021].
[2] 雷鋒網, “飛機零部件企業ASCO遭遇勒索病毒,工業網際網路成網絡攻擊重災區,” 2019. [Online]. Available: https://kknews.cc/zh-tw/tech/jkxjxky.html. [Accessed 1 6 2021].
[3] iSecurity, “全球最大的鋁生產商之一Norsk Hydro 遭受嚴重網路攻擊,” 2019. [Online]. Available: https://www.isecurity.com.tw/news-and-events/20190409-hydro/. [Accessed 1 6 2021].
[4] 自由時報, “日光學儀器巨頭HOYA遭網路攻擊 疑與「非法挖礦病毒」有關,” 2019. [Online]. Available: https://ec.ltn.com.tw/article/breakingnews/2751356. [Accessed 1 6 2021].
[5] 美日頭條, “勒索軟體攻擊使鋁業巨頭陷入癱瘓,” 2019. [Online]. Available: https://kknews.cc/zh-tw/tech/4k9r2mx.html. [Accessed 1 6 2021].
[6] iThome, “【臺灣史上最大資安事件】深度剖析台積產線中毒大當機始末(上),” 2018. [Online]. Available: https://www.ithome.com.tw/news/125098. [Accessed 1 6 2021].
[7] iThome, “以色列水利系統接連遭到網路攻擊,駭客竟是針對農業水泵和氯控制器下手,” 2020. [Online]. Available: https://www.ithome.com.tw/news/138971. [Accessed 1 6 2021].
[8] TREND MICRO, “Why DoAttackers TargetIndustrialControl,” 2017. [Online]. Available: https://www.trendmicro.com/vinfo/de/security/news/cyber-attacks/why-do-attackers-target-industrial-control-systems. [Accessed 1 6 2021].
[9] iThome, “【臺灣資安大會直擊】更完整資安戰略即將揭曉!國安會諮詢委員李德財預告,臺灣第一份「資安即國安」戰略報告書5月出爐,” 2018. [Online]. Available: https://www.ithome.com.tw/news/121793. [Accessed 1 6 2021].
[10] iThome, “回首過去、展望未來,蔡英文:資安產業成為520後的核心戰略產業,” 2020. [Online]. Available: https://www.ithome.com.tw/news/137735. [Accessed 1 6 2021].
[11] iThome, “卡巴斯基:駭客操控工控系統,搭配實際犯案手法偷走汽油及燃煤,” 2016. [Online]. Available: https://www.ithome.com.tw/news/105280. [Accessed 1 6 2021].
[12] iThome, “力抗中部缺水危機 安訊數據中心超前佈署,” 2021. [Online]. Available: https://www.ithome.com.tw/pr/143778. [Accessed 1 6 2021].
[13] iThome, “高雄興達電廠無預警故障!下午3點針對C區與D區實施輪流停電,初步判斷非網路攻擊,” 2021. [Online]. Available: https://www.ithome.com.tw/news/144402. [Accessed 1 6 2021].
[14] IEC, “Understanding IEC 62443,” 2021. [Online]. Available: https://www.iec.ch/blog/understanding-iec-62443. [Accessed 1 6 2021].
[15] P. Ackerman, Industrial Cybersecurity, Packt Publishing, 2017.
[16] NIST, “The Five Functions,” 2021. [Online]. Available: https://www.nist.gov/cyberframework/online-learning/five-functions. [Accessed 1 6 2021].
[17] NIST, “SP 800-82 Rev. 2,” 2015. [Online]. Available: https://csrc.nist.gov/publications/detail/sp/800-82/rev-2/final. [Accessed 1 6 2021].
[18] 行政院國家資通安全會報, “關鍵資訊基礎設施資安防護建議,” 2018. [Online]. Available: https://nicst.ey.gov.tw/File/6DE01F9D9F70C0C8?A=C. [Accessed 1 6 2021].
[19] ISA-95, “ISA-95 ENTERPRISE CONTROL SYSTEMS,” 2019. [Online]. Available: https://isa-95.com/isa-95-enterprise-control-systems/. [Accessed 1 6 2021].
[20] Youqian Zhang; Kasper Rasmussen, “Detection of Electromagnetic Interference Attacks on Sensor System,” 2020 IEEE Symposium on Security and Privacy (SP), San Francisco, CA, USA, 18-21 May, 2020., 2020.
[21] CISA, “MEMS Accelerometer Hardware Design Flaws (Update A),” 2017. [Online]. Available: https://us-cert.cisa.gov/ics/alerts/ICS-ALERT-17-073-01A.. [Accessed 4 7 2021].
[22] K.-M. Su, I.-H. Liu and J.-S. Li, “The Risk of Industrial Control System,” ICS 2020, Tainan, Taiwan, 17-19 Dec., 2020.
[23] H. Wardak, S. Zhioua and A. Almulhem, “PLC Access Control: A Security Analysis,” 2016 World Congress on Industrial Control Systems Security (WCICSS), London, UK, 12-14 Dec., 2016.
[24] Zolanvari, Maede; Teixeira, Marcio A.; Gupta, Lav; Khan, Khaled M.; Jain, Raj, “Machine Learning-Based Network Vulnerability Analysis of Industrial Internet of Things,” IEEE Internet of Things Journal, vol. 6, no. 4, pp. 6822-6834, 2019.
[25] TREND MICRO, “The State of SCADA HMI Vulnerabilities,” 2017. [Online]. Available: https://www.trendmicro.com/vinfo/it/security/news/vulnerabilities-and-exploits/the-state-of-scada-hmi-vulnerabilities. [Accessed 10 6 2021].
[26] P. S. Murthy and V. Nagalakshmi, “Database Forensics and Security Measures to Defend from Cyber Threats,” 2020 3rd International Conference on Intelligent Sustainable Systems (ICISS), Thoothukudi, India, 3-5 Dec., 2020.
[27] M. Malik and T. Patel, “DATABASE SECURITY - ATTACKS AND CONTROL METHODS,” International Journal of Information Sciences and Techniques (IJIST), vol. 6, no. 1, pp. 175-183, 2016.
[28] R. Mishra, “Evolution of ERP Cybersecurity,” International Journal of Engineering Research & Technology (IJERT), vol. 9, no. 4, pp. 120-122.
[29] S. M. Arachchi, S. C. Chong and A. Lakshanthi, “LITERATURE BASED REVIEW - RISKS IN ERP SYSTEMS INCLUDING ASIAN COUNTRIES,” European Journal of Computer Science and Information Technology, vol. 3, no. 1, pp. 1-14, 2015.
[30] 財團法人資訊工業策進會, “工控系統威脅分析技術,” 2019. [Online]. Available: https://www.iii.org.tw/Product/TransferDBDetail.aspx?tdp_sqno=4055&fm_sqno=23. [Accessed 10 6 2021].
[31] E. Anthi, L. Williams, P. Burnap and K. Jones, “A three-tiered intrusion detection system for industrial control systems,” 2021 Journal of Cybersecurity, vol. 7, no. 1, pp. 1-10, 2021.
[32] H.-C. Chang, C.-Y. Lin, D.-J. Liao and T.-M. Koo, “The Modbus Protocol Vulnerability Test in Industrial Control Systems,” 2020 International Conference on Cyber-Enabled Distributed Computing and Knowledge Discovery, Chongqing, China, 29-30 Oct., 2020.
[33] W. Gao and T.-H. Morris, “On Cyber Attacks and Signature Based Intrusion Detection for Modbus Based Industrial Control Systems,” 2014 Journal of Digital Forensics,Security and Law, vol. 9, no. 1, pp. 37-55, 2014.
[34] 行政院國家資通安全會報技術服務中心, “美國佛羅里達州淨水處理廠遭駭客入侵,” 2021. [Online]. Available: https://www.nccst.nat.gov.tw/NewsRSSDetail?seq=16517. [Accessed 10 6 2021].
[35] 水利署, “2018 新加坡國際水週展覽展後報告,” 2018. [Online]. Available: https://www.wra.gov.tw/media/52506/2018新加坡siww大展報告.pdf. [Accessed 10 6 2021].
[36] Singapore University of Technology and Design, “Secure Water Treatment,” 2021. [Online]. Available: https://itrust.sutd.edu.sg/testbeds/secure-water-treatment-swat/. [Accessed 10 6 2021].
[37] D. URBINA, J. GIRALDO, N. O. TIPPENHAUER and A. CARDENAS, “Attacking Fieldbus Communications in ICS: Applications to the SWaT Testbed,” Proceedings of the Singapore Cyber-Security Conference (SG-CRC) 2016, vol. 14, pp. 75-89, 2016.
[38] CAMPBELL SCIENTIFIC, “OBS-3+ Turbidity Sensor,” 2021. [Online]. Available: https://www.campbellsci.com/obs-3plus. [Accessed 10 6 2021].
[39] 行政院農業委員會農田水利署瑠公管理處, “機關安全維護宣導,” 2017. [Online]. Available: http://www.liugong.org.tw/public/news_data.aspx?id=776. [Accessed 10 6 2021].
[40] 經濟部水利署中區水資源局, “湖山水庫計畫-大壩工程基本設計報告,” 2013. [Online]. Available: https://www.wracb.gov.tw/media/13215/e-gip-gipnull-sys-public-downloads-201311121531167055.pdf. [Accessed 29 6 2021].
[41] 經濟部水利署水利規劃試驗所, “曾文水庫庫區豎井消能工水工模型試驗成果報告,” 2020. [Online]. Available: https://www.wrasb.gov.tw/windows/files//前瞻基礎建設計畫水環境建設/2_7_1/1_2_4/豎井消能工成果報告.pdf. [Accessed 29 6 2021].
[42] 經濟部水利署中區水資源局, “108年度石岡壩監測及安全檢查-設施安全檢查總報告,” 2020. [Online]. Available: https://www.wracb.gov.tw/media/34480196/108年度石岡壩監測及安全檢查- 設施安全檢查總報告.pdf. [Accessed 3 7 2021].