作者
Takayuki Sasaki, Akira Fujita, Carlos H Gañán, Michel van Eeten, Katsunari Yoshioka, Tsutomu Matsumoto
发表日期
2022/5/22
研讨会论文
2022 IEEE Symposium on Security and Privacy (SP)
页码范围
2379-2396
出版商
IEEE
简介
Geographically distributed infrastructures, such as buildings, dams, and solar power plants, are commonly maintained via Internet-connected remote management devices. Previous studies on detecting and securing industrial control systems (ICS) have overlooked these remote management devices, as they do not expose ICS-specific services like Modbus and BACnet and thus do not show up in Internet-wide scans for such services. In this paper, we implement and validate a discovery method for these devices via their Web User Interface (WebUI) and detect 890 devices in Japan alone. We also show that many of these devices are highly insecure. Many allow access to the status or even the control over industrial systems without proper authentication. Taking a closer look at three prevalent remote management devices, we discovered 13 0-day vulnerabilities, several of which were rated as medium or high …
引用总数
学术搜索中的文章
T Sasaki, A Fujita, CH Gañán, M van Eeten, K Yoshioka… - 2022 IEEE Symposium on Security and Privacy (SP), 2022