2015 07 - Down The Scada Security Rabbit Hole
2015 07 - Down The Scada Security Rabbit Hole
2015 07 - Down The Scada Security Rabbit Hole
Alberto Volpatto
Alberto Volpatto
Security Engineer & Team Leader @ Secure Network
Computer Engineer
Application Security Specialist
What is SCADA?
Infrastructure processes
Water treatment and distribution, oil and gas pipelines,
electrical power transmission
Facility processes
Heating, ventilation and air conditioning systems - HVAC
Application fields – Industrial processes
Application fields – Infrastructure processes
Application fields – Facility processes
The SCADA ecosystem
SCADA/ICS Security
For years SCADA/ICS systems relied on security through
obscurity
source:
https://www.youtube.com/watch?v=7g0pi4J8auQ
Stuxnet - 2010
Switch off oil
pipelines
Turn up the
pressure inside
nuclear reactors
Canonical
corporate
network Fuzz testing on adopted
assessment protocols. Lab testing
with a focus preferred over production
on network environment testing
segregation or
isolation
Corporate Network Assessment
Corporate Network Assessment
Scenario-driven attacks
Authenticate 1
Attacker
Operator
5 Execute unwanted action
PLC/RTU Device Testing
PLC/RTU Device Testing
In-lab devices testing (if available)
Devices are often considered out of scope, despite being
critical elements in the ICS ecosystem
100
90 90
90
80 80
80
70 65 65
60 55 55
50 45
40
30 25
20
10
0
Conclusions