作者
Luigi Coppolino, Salvatore D’Antonio, Valerio Formicola, Luigi Romano
发表日期
2011
研讨会论文
Computer Safety, Reliability, and Security: 30th International Conference, SAFECOMP 2011, Naples, Italy, September 19-22, 2011. Proceedings 30
页码范围
199-212
出版商
Springer Berlin Heidelberg
简介
In recent years the monitoring and control devices in charge of supervising the critical processes of Critical Infrastructures have been victims of cyber attacks. To face such threat, organizations providing critical services are increasingly focusing on protecting their network infrastructures. Security Information and Event Management (SIEM) frameworks support network protection by performing centralized correlation of network asset reports. In this work we propose an extension of a commercial SIEM framework, namely OSSIM by AlienVault, to perform the analysis of the reports (events) generated by monitoring, control and security devices of the dam infrastructure. Our objective is to obtain evidences of misuses and malicious activities occurring at the dam monitoring and control system, since they can result in issuing hazardous commands to control devices. We present examples of misuses and malicious …
引用总数
20122013201420152016201720182019202020212022202332812452212
学术搜索中的文章
L Coppolino, S D'Antonio, V Formicola, L Romano - Computer Safety, Reliability, and Security: 30th …, 2011