Compromising the Data Integrity of an Electrical Power Grid SCADA System

  • Qais Saif Qassim
  • , Norziana Jamil
  • , Maslina Daud
  • , Norhamadi Ja’affar
  • , Wan Azlan Wan Kamarulzaman
  • , Mohammed Najah Mahdi

Research output: Chapter in Book/Report/Conference proceedingConference contribution

5 Citations (Scopus)

Abstract

Supervisory Control and Data Acquisition (SCADA) systems perform monitoring and controlling services in critical national infrastructures such as electrical power generation and distribution, transportation networks, water supply and manufacturing, and production facilities. Cyber-attacks that compromise data integrity in SCADA systems such as an unauthorised manipulation of sensor or control signals could have a severe impact on the operation of the critical national infrastructure as it misleads system operators into making wrong decisions. This work investigates the man-in-the-middle (MITM) attack that aims explicitly at compromising data integrity of SCADA systems. The IEC 60870-5-104 tele-control communication protocol is used as the subject focus because it is a commonly used communication protocol in electrical power SCADA systems for tele-control and monitoring. We conducted several MITM attacks: covering the capturing, modification and injection of control commands, on IEC 60870-5-104 in our power grid SCADA system testbed. We described and performed the attacks in detail, together with several use cases. Based on the Proof-of-Concept (POC) conducted and data that we gathered, it shows that IEC 60870-5-104 is vulnerable against MITM attacks and it can be an entry point of cyberattacks, be it sophisticated or otherwise.

Original languageEnglish
Title of host publicationAdvances in Cyber Security - Second International Conference, ACeS 2020, Revised Selected Papers
EditorsMohammed Anbar, Nibras Abdullah, Selvakumar Manickam
PublisherSpringer Science and Business Media Deutschland GmbH
Pages604-626
Number of pages23
ISBN (Print)9789813368347
DOIs
Publication statusPublished - 2021
Externally publishedYes
Event2nd International Conference on Advances in Cyber Security, ACeS 2020 - Penang, Malaysia
Duration: Dec 8 2020Dec 9 2020

Publication series

NameCommunications in Computer and Information Science
Volume1347
ISSN (Print)1865-0929
ISSN (Electronic)1865-0937

Conference

Conference2nd International Conference on Advances in Cyber Security, ACeS 2020
Country/TerritoryMalaysia
CityPenang
Period12/8/2012/9/20

Keywords

  • Cyber-security
  • IEC 60870-5-104
  • Man-in-the-middle
  • SCADA
  • Vulnerability

ASJC Scopus subject areas

  • General Computer Science
  • General Mathematics

Fingerprint

Dive into the research topics of 'Compromising the Data Integrity of an Electrical Power Grid SCADA System'. Together they form a unique fingerprint.

Cite this