Matches in SemOpenAlex for { <https://semopenalex.org/work/W4313444334> ?p ?o ?g. }
Showing items 1 to 71 of
71
with 100 items per page.
- W4313444334 abstract "Programmable Logic Controllers (PLCs) are the core control devices in Industrial Control Systems (ICSs), which control and monitor the underlying physical plants such as power grids. PLCs were initially designed to work in a trusted industrial network, which however can be brittle once deployed in an Internet-facing (or penetrated) network. Yet, there is a lack of systematic empirical analysis of the run-time security of modern real-world PLCs. To close this gap, we present the first large-scale measurement on 23 off-the-shelf PLCs across 13 leading vendors. We find many common security issues and unexplored implications that should be more carefully addressed in the design and implementation. To sum up, the unsupervised logic applications can cause system resource/privilege abuse, which gives adversaries new means to hijack the control flow of a runtime system remotely (without exploiting memory vulnerabilities); 2) the improper access control mechanisms bring many unauthorized access implications; 3) the proprietary or semi-proprietary protocols are fragile regarding confidentiality and integrity protection of run-time data. We empirically evaluated the corresponding attack vectors on multiple PLCs, which demonstrates that the security implications are severe and broad. Our findings were reported to the related parties responsibly, and 20 bugs have been confirmed with 7 assigned CVEs." @default.
- W4313444334 created "2023-01-06" @default.
- W4313444334 creator A5001395097 @default.
- W4313444334 creator A5006029284 @default.
- W4313444334 creator A5018569451 @default.
- W4313444334 creator A5030424204 @default.
- W4313444334 creator A5030863883 @default.
- W4313444334 creator A5054394075 @default.
- W4313444334 creator A5056524306 @default.
- W4313444334 creator A5058611515 @default.
- W4313444334 date "2022-12-29" @default.
- W4313444334 modified "2023-10-16" @default.
- W4313444334 title "Towards Comprehensively Understanding the Run-time Security of Programmable Logic Controllers: A 3-year Empirical Study" @default.
- W4313444334 doi "https://doi.org/10.48550/arxiv.2212.14296" @default.
- W4313444334 hasPublicationYear "2022" @default.
- W4313444334 type Work @default.
- W4313444334 citedByCount "0" @default.
- W4313444334 crossrefType "posted-content" @default.
- W4313444334 hasAuthorship W4313444334A5001395097 @default.
- W4313444334 hasAuthorship W4313444334A5006029284 @default.
- W4313444334 hasAuthorship W4313444334A5018569451 @default.
- W4313444334 hasAuthorship W4313444334A5030424204 @default.
- W4313444334 hasAuthorship W4313444334A5030863883 @default.
- W4313444334 hasAuthorship W4313444334A5054394075 @default.
- W4313444334 hasAuthorship W4313444334A5056524306 @default.
- W4313444334 hasAuthorship W4313444334A5058611515 @default.
- W4313444334 hasBestOaLocation W43134443341 @default.
- W4313444334 hasConcept C111919701 @default.
- W4313444334 hasConcept C149635348 @default.
- W4313444334 hasConcept C154945302 @default.
- W4313444334 hasConcept C2775924081 @default.
- W4313444334 hasConcept C2776350369 @default.
- W4313444334 hasConcept C2776576444 @default.
- W4313444334 hasConcept C2780138299 @default.
- W4313444334 hasConcept C37374048 @default.
- W4313444334 hasConcept C38652104 @default.
- W4313444334 hasConcept C40071531 @default.
- W4313444334 hasConcept C41008148 @default.
- W4313444334 hasConcept C527821871 @default.
- W4313444334 hasConcept C71745522 @default.
- W4313444334 hasConcept C9390403 @default.
- W4313444334 hasConceptScore W4313444334C111919701 @default.
- W4313444334 hasConceptScore W4313444334C149635348 @default.
- W4313444334 hasConceptScore W4313444334C154945302 @default.
- W4313444334 hasConceptScore W4313444334C2775924081 @default.
- W4313444334 hasConceptScore W4313444334C2776350369 @default.
- W4313444334 hasConceptScore W4313444334C2776576444 @default.
- W4313444334 hasConceptScore W4313444334C2780138299 @default.
- W4313444334 hasConceptScore W4313444334C37374048 @default.
- W4313444334 hasConceptScore W4313444334C38652104 @default.
- W4313444334 hasConceptScore W4313444334C40071531 @default.
- W4313444334 hasConceptScore W4313444334C41008148 @default.
- W4313444334 hasConceptScore W4313444334C527821871 @default.
- W4313444334 hasConceptScore W4313444334C71745522 @default.
- W4313444334 hasConceptScore W4313444334C9390403 @default.
- W4313444334 hasLocation W43134443341 @default.
- W4313444334 hasOpenAccess W4313444334 @default.
- W4313444334 hasPrimaryLocation W43134443341 @default.
- W4313444334 hasRelatedWork W1538117815 @default.
- W4313444334 hasRelatedWork W2001990389 @default.
- W4313444334 hasRelatedWork W2131419828 @default.
- W4313444334 hasRelatedWork W2157505081 @default.
- W4313444334 hasRelatedWork W2280904979 @default.
- W4313444334 hasRelatedWork W2790622811 @default.
- W4313444334 hasRelatedWork W2961318055 @default.
- W4313444334 hasRelatedWork W318167434 @default.
- W4313444334 hasRelatedWork W4221118516 @default.
- W4313444334 hasRelatedWork W3107815644 @default.
- W4313444334 isParatext "false" @default.
- W4313444334 isRetracted "false" @default.
- W4313444334 workType "article" @default.