Scrutinizing Security in Industrial Control Systems: An Architectural Vulnerabilities and Communication Network Perspective

Muhammad Muzamil Aslam, Ali Tufail, Rosyzie Anna Awg Haji Mohd Apong, Liyanage Chandratilak De Silva, Muhammad Taqi Raza

Research output: Contribution to journalArticlepeer-review

7 Scopus citations

Abstract

Technological advancement plays a crucial role in our daily lives and constantly transforms the industrial sector. However, these technologies also introduce new security vulnerabilities to Industrial Control Systems (ICS). Attackers take advantage of these weaknesses to infiltrate the ICS environment. The size of the targeted industry and the attacker's knowledge of the internal ICS environment are crucial factors in determining the degree of impact. Researchers and industry professionals have taken several initiatives to identify and address security problems in the ICS environment; however, to our knowledge, a comprehensive survey of this landscape has yet to be conducted. Existing surveys have limitations since they mainly focus on specific aspects of ICS security rather than covering the security aspects holistically. This paper aims to cover all aspects of security in ICS by classifying the ICS environment into its components, such as SCADA, PLC, DCS, RTU, HMI, MTU, etc. The paper then discusses the vulnerabilities in the modern ICS environment, including those of the specific components. The article also presents a classification of ICS-specific attack types. Furthermore, the study examines real-world attack scenarios in the industrial critical infrastructure sectors, including energy, power, water, and wastewater. This study provides an in-depth analysis of ICS security that empowers researchers and industry practitioners to comprehend the complexities of ICS security and to strengthen the ICS environment's resilience proactively.

Original languageEnglish (US)
Article number10510298
Pages (from-to)67537-67573
Number of pages37
JournalIEEE Access
Volume12
DOIs
StatePublished - 2024
Externally publishedYes

Keywords

  • ICS architecture
  • ICS security
  • IIoT
  • Industrial control system
  • IoT
  • cyber security
  • real cases
  • vulnerabilities

ASJC Scopus subject areas

  • General Computer Science
  • General Materials Science
  • General Engineering

Fingerprint

Dive into the research topics of 'Scrutinizing Security in Industrial Control Systems: An Architectural Vulnerabilities and Communication Network Perspective'. Together they form a unique fingerprint.

Cite this