Matches in SemOpenAlex for { <https://semopenalex.org/work/W2950023496> ?p ?o ?g. }
Showing items 1 to 82 of
82
with 100 items per page.
- W2950023496 abstract "Abstract Industrial automation and control systems (IACS) play a key role in modern production facilities. On the one hand, they provide real-time functionality to the connected field devices. On the other hand, they get more and more connected to local networks and the internet in order to facilitate use cases promoted by “Industrie 4.0”. A lot of IACS are equipped with web servers that provide web applications for configuration and management purposes. If an attacker gains access to such a web application operated on an IACS, he can exploit vulnerabilities and possibly interrupt the critical automation process. Cyber security research for web applications is well-known in the office IT. There exist a lot of best practices and tools for testing web applications for different kinds of vulnerabilities. Security testing targets at discovering those vulnerabilities before they can get exploited. In order to enable IACS manufacturers and integrators to perform security tests for their devices, ISuTest was developed, a modular security testing framework for IACS. This paper provides a classification of known types of web application vulnerabilities. Therefore, it makes use of the worst direct impact of a vulnerability. Based on this analysis, a subset of open-source vulnerability scanners to detect such vulnerabilities is selected to be integrated into ISuTest. Subsequently, the integration is evaluated. This evaluation is twofold: At first, willful vulnerable web applications are used. In a second step, seven real IACS, like a programmable logic controller, industrial switches and cloud gateways, are used. Both evaluation steps start with the manual examination of the web applications for vulnerabilities. They conclude with an automated test of the web applications using the vulnerability scanners automated by ISuTest. The results show that the vulnerability scanners detected 53 % of the existing vulnerabilities. In a former study using commercial vulnerability scanners, 54 % of the security flaws could be found. While performing the analysis, 45 new vulnerabilities were detected. Some of them did not only break the web server but crashed the whole IACS, stopping the critical automation process. This shows that security testing is crucial in the industrial domain and needs to cover all services provided by the devices." @default.
- W2950023496 created "2019-06-27" @default.
- W2950023496 creator A5055740054 @default.
- W2950023496 creator A5073930300 @default.
- W2950023496 creator A5086003097 @default.
- W2950023496 creator A5090002051 @default.
- W2950023496 date "2019-05-01" @default.
- W2950023496 modified "2023-09-25" @default.
- W2950023496 title "Automated security testing for web applications on industrial automation and control systems" @default.
- W2950023496 cites W1979931683 @default.
- W2950023496 cites W2135583690 @default.
- W2950023496 cites W2185917985 @default.
- W2950023496 cites W2784110154 @default.
- W2950023496 cites W2792480350 @default.
- W2950023496 doi "https://doi.org/10.1515/auto-2019-0021" @default.
- W2950023496 hasPublicationYear "2019" @default.
- W2950023496 type Work @default.
- W2950023496 sameAs 2950023496 @default.
- W2950023496 citedByCount "1" @default.
- W2950023496 countsByYear W29500234962021 @default.
- W2950023496 crossrefType "journal-article" @default.
- W2950023496 hasAuthorship W2950023496A5055740054 @default.
- W2950023496 hasAuthorship W2950023496A5073930300 @default.
- W2950023496 hasAuthorship W2950023496A5086003097 @default.
- W2950023496 hasAuthorship W2950023496A5090002051 @default.
- W2950023496 hasConcept C103377522 @default.
- W2950023496 hasConcept C111919701 @default.
- W2950023496 hasConcept C115901376 @default.
- W2950023496 hasConcept C115903868 @default.
- W2950023496 hasConcept C118643609 @default.
- W2950023496 hasConcept C127413603 @default.
- W2950023496 hasConcept C136764020 @default.
- W2950023496 hasConcept C184842701 @default.
- W2950023496 hasConcept C195518309 @default.
- W2950023496 hasConcept C35578498 @default.
- W2950023496 hasConcept C41008148 @default.
- W2950023496 hasConcept C59241245 @default.
- W2950023496 hasConcept C78519656 @default.
- W2950023496 hasConcept C79373723 @default.
- W2950023496 hasConcept C79974875 @default.
- W2950023496 hasConceptScore W2950023496C103377522 @default.
- W2950023496 hasConceptScore W2950023496C111919701 @default.
- W2950023496 hasConceptScore W2950023496C115901376 @default.
- W2950023496 hasConceptScore W2950023496C115903868 @default.
- W2950023496 hasConceptScore W2950023496C118643609 @default.
- W2950023496 hasConceptScore W2950023496C127413603 @default.
- W2950023496 hasConceptScore W2950023496C136764020 @default.
- W2950023496 hasConceptScore W2950023496C184842701 @default.
- W2950023496 hasConceptScore W2950023496C195518309 @default.
- W2950023496 hasConceptScore W2950023496C35578498 @default.
- W2950023496 hasConceptScore W2950023496C41008148 @default.
- W2950023496 hasConceptScore W2950023496C59241245 @default.
- W2950023496 hasConceptScore W2950023496C78519656 @default.
- W2950023496 hasConceptScore W2950023496C79373723 @default.
- W2950023496 hasConceptScore W2950023496C79974875 @default.
- W2950023496 hasLocation W29500234961 @default.
- W2950023496 hasOpenAccess W2950023496 @default.
- W2950023496 hasPrimaryLocation W29500234961 @default.
- W2950023496 hasRelatedWork W2028659283 @default.
- W2950023496 hasRelatedWork W2062583373 @default.
- W2950023496 hasRelatedWork W2144028411 @default.
- W2950023496 hasRelatedWork W2292406122 @default.
- W2950023496 hasRelatedWork W2329492249 @default.
- W2950023496 hasRelatedWork W2361960050 @default.
- W2950023496 hasRelatedWork W2492576244 @default.
- W2950023496 hasRelatedWork W2511283841 @default.
- W2950023496 hasRelatedWork W2577525162 @default.
- W2950023496 hasRelatedWork W2621647126 @default.
- W2950023496 hasRelatedWork W2744829988 @default.
- W2950023496 hasRelatedWork W2767787337 @default.
- W2950023496 hasRelatedWork W3005563496 @default.
- W2950023496 hasRelatedWork W3015499098 @default.
- W2950023496 hasRelatedWork W3087623622 @default.
- W2950023496 hasRelatedWork W3119761794 @default.
- W2950023496 hasRelatedWork W3148084968 @default.
- W2950023496 hasRelatedWork W3179806555 @default.
- W2950023496 hasRelatedWork W3190758605 @default.
- W2950023496 hasRelatedWork W3203727006 @default.
- W2950023496 isParatext "false" @default.
- W2950023496 isRetracted "false" @default.
- W2950023496 magId "2950023496" @default.
- W2950023496 workType "article" @default.