The Power of Hands-On Exercises in SCADA Cyber Security Education

نویسندگان

  • Elena Sitnikova
  • Ernest Foo
  • Rayford B. Vaughn
چکیده

For decades Supervisory Control and Data Acquisition (SCADA) and Industrial Control Systems (ICS) have used computers to monitor and control physical processes in many critical industries, including electricity generation, gas pipelines, water distribution, waste treatment, communications and transportation. Increasingly these systems are interconnected with corporate networks via the Internet, making them vulnerable and exposed to the same risks as those experiencing cyber-attacks on a conventional network. Very often SCADA networks services are viewed as a specialty subject, more relevant to engineers than standard IT personnel. Educators from two Australian universities have recognised these cultural issues and highlighted the gap between specialists with SCADA systems engineering skills and the specialists in network security with IT background. This paper describes a learning approach designed to help students to bridge this gap, gain theoretical knowledge of SCADA systems’ vulnerabilities to cyber-attacks via experiential learning and acquire practical skills through actively participating in hands-on exercises.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

An Experiment Platform for Security Education in Advanced Manufacturing Systems: Infrastructure and Materials

With the fast development of Cyber-Physical Systems (CPS), security in these special application environments starts to attract more and more efforts. In this project, we form a team of researchers in information security, manufacturing, mechanical engineering, and education to jointly design a remotely accessible experiment platform for security education in advanced manufacturing systems (AMS...

متن کامل

Experiences with Practice-Focused Undergraduate Security Education

The combination of competitive security exercises and hands-on learning represents a powerful approach for teaching information system security. Although creating and maintaining such a course can be difficult, the benefits to learning are worthwhile. Our undergraduate Information Assurance course is practice-focused and makes substantial use of competitive exercises, such as the National Secur...

متن کامل

An isolated virtual cluster for SCADA network security research

Research aimed at securing the SCADA and ICS networks has taken off in the wake of Stuxnet. Unfortunately, it is difficult for researchers to fully capture the integration between cyber and physical components that is intrinsic to these systems. To enable researchers to perform network security experiments while taking into account the physical component of ICS networks, we propose the use of t...

متن کامل

A Cyber Security Study of a State-of-the-art SCADA Energy Management System: Stealthy Deception Attacks on the State Estimator

The electrical power network is a critical infrastructure in today’s society, so its safe and reliable operation is of major concern. State estimators are commonly used in power networks, for example, to detect faulty equipment and to optimally route power flows. The estimators are often located in control centers, to which large numbers of measurements are sent over unencrypted communication c...

متن کامل

A Cyber Security Study of a SCADA Energy Management System: Stealthy Deception Attacks on the State Estimator

The electrical power network is a critical infrastructure in today’s society, so its safe and reliable operation is of major concern. State estimators are commonly used in power networks, for example, to detect faulty equipment and to optimally route power flows. The estimators are often located in control centers, to which large numbers of measurements are sent over unencrypted communication c...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2013