THE STATE OF ICS SECURITY: THEN AND NOW

By Praveen Soni , Shivbihari Pandey , Ashish Kumar Gahlot on 25 Apr 2020 @ Hitb Sec Conf
πŸ”— Link
vulnerability-assessment pentest blueteam
Focus Areas: Security Operations & Defense , Application Security , Penetration Testing , Vulnerability Management

Abstract

In this presentation, we focus on a lab-scale test bed for a 3 phase power distribution system under industrial PLC control, instrumented with relay, power meters, various field protocol switches, supervised by an industrial SCADA system. The main contributions of the paper are (i) case studies of vulnerability assessment of the industrial components of this test bed – components that are being widely deployed in real critical systems throughout the world. (ii) the exploits and their security implications, especially their effect on the physical functioning of the systems; and (iii) mitigation techniques we have deployed to defend against such attacks.