Skip to main content
Erschienen in: Automatic Control and Computer Sciences 8/2019

01.12.2019

Actual Vulnerabilities of Industrial Automation Protocols of an Open Platform Communications Series

verfasst von: D. P. Zegzhda, M. O. Kalinin, M. V. Levykin

Erschienen in: Automatic Control and Computer Sciences | Ausgabe 8/2019

Einloggen, um Zugang zu erhalten

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

Open Platform Communications (OPC), the interoperability standard for the secure and reliable exchange of data in the industrial automation space, consists of two main types of protocol – classic and unified. The paper reviews a classic set of DA/HDA/A&E protocols, which is based on Microsoft DCOM and RPC technologies. Architectural cyber threats of the classic type of OPC are systematized in this work.
Literatur
1.
Zurück zum Zitat Levykin, M.V., New features of self-propagating malware, Sist. Sredstva Inf., 2011, vol. 21, no. 2, pp. 69–72. Levykin, M.V., New features of self-propagating malware, Sist. Sredstva Inf., 2011, vol. 21, no. 2, pp. 69–72.
2.
Zurück zum Zitat The RPC Model. The RPC programming model in the official MSDN documentation. https://docs.microsoft.com/ en-us/windows/desktop/Rpc/microsoft-rpc-model. The RPC Model. The RPC programming model in the official MSDN documentation. https://​docs.​microsoft.​com/​ en-us/windows/desktop/Rpc/microsoft-rpc-model.
3.
Zurück zum Zitat Authentication-Level Constants. Description of RPC levels in the official MSDN documentation. https://docs.microsoft.com/en-us/windows/desktop/rpc/authentication-level-constants. Authentication-Level Constants. Description of RPC levels in the official MSDN documentation. https://​docs.​microsoft.​com/​en-us/​windows/​desktop/​rpc/​authentication-level-constants.​
4.
Zurück zum Zitat RPC_IF_CALLBACK_FN callback function. Procedure callback function that implements data security checks. https://docs.microsoft.com/ru-ru/windows/desktop/api/rpcdce/nc-rpcdce-rpc_if_callback_fn. RPC_IF_CALLBACK_FN callback function. Procedure callback function that implements data security checks. https://​docs.​microsoft.​com/​ru-ru/​windows/​desktop/​api/​rpcdce/​nc-rpcdce-rpc_​if_​callback_​fn.​
5.
Zurück zum Zitat BadLock attack description. https://adsecurity.org/?p=2812. BadLock attack description. https://​adsecurity.​org/​?​p=​2812.​
6.
Zurück zum Zitat Siering, P., Badlock—Why the Windows and Samba Vulnerability is Important. https://www.heise.de/ct/artikel/ Badlock-Why-the-Windows-and-Samba-Vulnerability-is-Important-3175176.html. Siering, P., Badlock—Why the Windows and Samba Vulnerability is Important. https://​www.​heise.​de/​ct/​artikel/​ Badlock-Why-the-Windows-and-Samba-Vulnerability-is-Important-3175176.html.
7.
Zurück zum Zitat Impacket Framework. Impacket Source Code. https://github.com/SecureAuthCorp/impacket. Impacket Framework. Impacket Source Code. https://​github.​com/​SecureAuthCorp/​impacket.​
8.
Zurück zum Zitat SpoolSample Utility. SpoolSample Source Code. https://github.com/leechristensen/SpoolSample. SpoolSample Utility. SpoolSample Source Code. https://​github.​com/​leechristensen/​SpoolSample.​
9.
Zurück zum Zitat NetNTLMtoSilverTicket Utility. Source Code. https://github.com/NotMedic/NetNTLMtoSilverTicket. NetNTLMtoSilverTicket Utility. Source Code. https://​github.​com/​NotMedic/​NetNTLMtoSilverT​icket.​
10.
Zurück zum Zitat Grusho, A.A., Grusho, N.A., Levykin, M.V., and Timonina, E.E., Methods of identifying host capture in distributed metadata-protected computing systems, Inf. Primen., 2018, vol. 12, no. 4, pp. 39–43. Grusho, A.A., Grusho, N.A., Levykin, M.V., and Timonina, E.E., Methods of identifying host capture in distributed metadata-protected computing systems, Inf. Primen., 2018, vol. 12, no. 4, pp. 39–43.
11.
Zurück zum Zitat LogonTracer Utility. LogonTracer Source Code. https://github.com/JPCERTCC/LogonTracer. LogonTracer Utility. LogonTracer Source Code. https://​github.​com/​JPCERTCC/​LogonTracer.​
Metadaten
Titel
Actual Vulnerabilities of Industrial Automation Protocols of an Open Platform Communications Series
verfasst von
D. P. Zegzhda
M. O. Kalinin
M. V. Levykin
Publikationsdatum
01.12.2019
Verlag
Pleiades Publishing
Erschienen in
Automatic Control and Computer Sciences / Ausgabe 8/2019
Print ISSN: 0146-4116
Elektronische ISSN: 1558-108X
DOI
https://doi.org/10.3103/S0146411619080339

Weitere Artikel der Ausgabe 8/2019

Automatic Control and Computer Sciences 8/2019 Zur Ausgabe