Home > Research > Publications & Outputs > Oops I Did it Again

Electronic data

  • CPS-SPC2019

    Rights statement: © ACM, 2019. This is the author's version of the work. It is posted here by permission of ACM for your personal use. Not for redistribution. The definitive version was published in PUBLICATION, {VOL#, ISS#, (DATE)} http://doi.acm.org/10.1145/nnnnnn.nnnnnn

    Accepted author manuscript, 6 MB, PDF document

    Available under license: CC BY-NC: Creative Commons Attribution-NonCommercial 4.0 International License

Links

Text available via DOI:

View graph of relations

Oops I Did it Again: Further Adventures in the Land of ICS Security Testbeds

Research output: Contribution in Book/Report/Proceedings - With ISBN/ISSNConference contribution/Paper

Published
Close
Publication date30/11/2019
Host publicationCPS-SPC'19 Proceedings of the ACM Workshop on Cyber-Physical Systems Security & Privacy
Place of PublicationNew York
PublisherACM
Pages75-86
Number of pages12
ISBN (Print)9781450368315
Original languageEnglish
Event5th ACM Workshop on Cyber-Physical Systems Security and Privacy - Hilton Metropole Hotel , London, United Kingdom
Duration: 11/11/201911/11/2019
Conference number: 5th
https://www.cps-spc.org/2019/

Workshop

Workshop5th ACM Workshop on Cyber-Physical Systems Security and Privacy
Abbreviated titleCPS-SPC 2019
CountryUnited Kingdom
CityLondon
Period11/11/1911/11/19
Internet address

Workshop

Workshop5th ACM Workshop on Cyber-Physical Systems Security and Privacy
Abbreviated titleCPS-SPC 2019
CountryUnited Kingdom
CityLondon
Period11/11/1911/11/19
Internet address

Abstract

Research efforts in the security of Industrial Control Systems (ICS) have dramatically increased over the past few years. However, there is a limiting factor when work cannot be evaluated on real-world systems due to safety and operational reasons. This has led to multiple deployments of ICS testbeds covering multiple sectors including water treatment, power distribution and transportation networks.
Over the last five years, we have designed and constructed ICS testbeds to support cyber security research. Our prior work in building testbeds culminated in a set of design principles and lessons learnt, formulated to support other researchers in designing and building their own ICS testbeds. In the last two years we have taken these lessons and used them to guide our own greenfield large-scale, complex and process-diverse security testbed affording a rare opportunity to design and build from the ground up – one in which we have been able to look back and validate those past lessons and principles.
In this work we describe the process of building our new ICS and Industrial Internet of Things (IIoT) testbed, and give an overview of its architecture. We then reflect on our past lessons, and con- tribute five previously unrecognised additional lessons based on this experience.