PropFuzz – An IT-Security Fuzzing Framework for Proprietary ICS Protocols

10/17/2019
by   Matthias Niedermaier, et al.
0

Programmable Logic Controllers are used for smart homes, in production processes or to control critical infrastructures. Modern industrial devices in the control level are often communicating over proprietary protocols on top of TCP/IP with each other and SCADA systems. The networks in which the controllers operate are usually considered as trustworthy and thereby they are not properly secured. Due to the growing connectivity caused by the Internet of Things (IoT) and Industry 4.0 the security risks are rising. Therefore, the demand of security assessment tools for industrial networks is high. In this paper, we introduce a new fuzzing framework called PropFuzz, which is capable to fuzz proprietary industrial control system protocols and monitor the behavior of the controller. Furthermore, we present first results of a security assessment with our framework.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/01/2022

Missed Opportunities: Measuring the Untapped TLS Support in the Industrial Internet of Things

The ongoing trend to move industrial appliances from previously isolated...
research
12/29/2022

Towards Comprehensively Understanding the Run-time Security of Programmable Logic Controllers: A 3-year Empirical Study

Programmable Logic Controllers (PLCs) are the core control devices in In...
research
12/18/2020

Effectiveness of SCADA System Security Used Within Critical Infrastructure

Since the 1960s Supervisory Control and Data Acquisition (SCADA) systems...
research
09/03/2018

Reasoning on Adopting OPC UA for an IoT-Enhanced Smart Energy System from a Security Perspective

Smart Services using Industrial Internet of Things (IIoT) applications a...
research
11/14/2019

Detecting Safety and Security Faults in PLC Systems with Data Provenance

Programmable Logic Controllers are an integral component for managing ma...
research
08/04/2022

"Yeah, it does have a...Windows `98 Vibe”: Usability Study of Security Features in Programmable Logic Controllers

Programmable Logic Controllers (PLCs) drive industrial processes critica...
research
02/19/2021

PCaaD: Towards Automated Determination and Exploitation of Industrial Processes

Over the last decade, Programmable Logic Controllers (PLCs) have been in...

Please sign up or login with your details

Forgot password? Click here to reset