>
Fa   |   Ar   |   En
   vulnerability modelling for hybrid industrial control system networks  
   
نویسنده ur-rehman attiq ,gondal iqbal ,kamruzzaman joarder ,jolfaei alireza
منبع journal of grid computing - 2020 - دوره : 18 - شماره : 4 - صفحه:863 -878
چکیده    With the emergence of internet-based devices, the traditional industrial control system (ics) networks have evolved to co-exist with the conventional it and internet enabled iot networks, hence facing various security challenges. the it industry around the world has widely adopted the common vulnerability scoring system (cvss) as an industry standard to numerically evaluate the vulnerabilities in software systems. this mathematical score of vulnerabilities is combined with environmental knowledge to determine the vulnerable nodes and attack paths. iot and ics systems have unique dynamics and specific functionality as compared to traditional computer networks, and therefore, the legacy cyber security models would not fit these advanced networks. in this paper, we studied the cvss v3.1 framework’s application to ics embedded networks and an improved vulnerability framework, named cvssiot-ics, is proposed. cvssiot-ics and cvss v3.1 are applied to a realistic supply chain hybrid network which consists of it, iot, and ics nodes. this hybrid network is assigned with actual vulnerabilities listed in the national vulnerability database (nvd). the comparison results confirm the effectiveness of cvssiot-ics framework as it is equally applicable to all nodes of a hybrid network and evaluates the vulnerabilities based on the distinct features of each node type.
کلیدواژه industrial control system ,internet of things (iot) ,supply chain ,security ,vulnerability modelling
آدرس federation university mount helen vic, internet commerce security lab; (icsl), australia, federation university mount helen vic, internet commerce security lab; (icsl), australia, federation university mount helen vic, internet commerce security lab; (icsl), australia, macquarie university, department of computing, australia
 
     
   
Authors
  
 
 

Copyright 2023
Islamic World Science Citation Center
All Rights Reserved