Vulnerabilities of the Open Platform Communication Unified Architecture Protocol in Industrial Internet of Things Operation

Recently, as new threats from attackers are discovered, the damage and scale of these threats are increasing. Vulnerabilities should be identified early, and countermeasures should be implemented to solve this problem. However, there are limitations to applying the vulnerability discovery framework...

Full description

Bibliographic Details
Main Authors: Dong-Hyuk Shin, Ga-Yeong Kim, Ieck-Chae Euom
Format: Article
Language:English
Published: MDPI AG 2022-08-01
Series:Sensors
Subjects:
Online Access:https://www.mdpi.com/1424-8220/22/17/6575
_version_ 1797493081491111936
author Dong-Hyuk Shin
Ga-Yeong Kim
Ieck-Chae Euom
author_facet Dong-Hyuk Shin
Ga-Yeong Kim
Ieck-Chae Euom
author_sort Dong-Hyuk Shin
collection DOAJ
description Recently, as new threats from attackers are discovered, the damage and scale of these threats are increasing. Vulnerabilities should be identified early, and countermeasures should be implemented to solve this problem. However, there are limitations to applying the vulnerability discovery framework used in practice. Existing frameworks have limitations in terms of the analysis target. If the analysis target is abstract, it cannot be easily applied to the framework. Therefore, this study proposes a framework for vulnerability discovery and countermeasures that can be applied to any analysis target. The proposed framework includes a structural analysis to discover vulnerabilities from a scenario composition, including analysis targets. In addition, a proof of concept is conducted to derive and verify threats that can actually occur through threat modeling. In this study, the open platform communication integrated architecture used in the industrial control system and industrial Internet of Things environment was selected as an analysis target. We find 30 major threats and four vulnerabilities based on the proposed framework. As a result, the validity of malicious client attacks using certificates and DoS attack scenarios using flooding were validated, and we create countermeasures for these vulnerabilities.
first_indexed 2024-03-10T01:14:53Z
format Article
id doaj.art-25773e9be2c943fdb4fd5e2a8319e9e4
institution Directory Open Access Journal
issn 1424-8220
language English
last_indexed 2024-03-10T01:14:53Z
publishDate 2022-08-01
publisher MDPI AG
record_format Article
series Sensors
spelling doaj.art-25773e9be2c943fdb4fd5e2a8319e9e42023-11-23T14:10:51ZengMDPI AGSensors1424-82202022-08-012217657510.3390/s22176575Vulnerabilities of the Open Platform Communication Unified Architecture Protocol in Industrial Internet of Things OperationDong-Hyuk Shin0Ga-Yeong Kim1Ieck-Chae Euom2System Security Research Center, Chonnam National University, Gwangju 61186, KoreaSystem Security Research Center, Chonnam National University, Gwangju 61186, KoreaDepartment of Data Science, Chonnam National University, Gwangju 61186, KoreaRecently, as new threats from attackers are discovered, the damage and scale of these threats are increasing. Vulnerabilities should be identified early, and countermeasures should be implemented to solve this problem. However, there are limitations to applying the vulnerability discovery framework used in practice. Existing frameworks have limitations in terms of the analysis target. If the analysis target is abstract, it cannot be easily applied to the framework. Therefore, this study proposes a framework for vulnerability discovery and countermeasures that can be applied to any analysis target. The proposed framework includes a structural analysis to discover vulnerabilities from a scenario composition, including analysis targets. In addition, a proof of concept is conducted to derive and verify threats that can actually occur through threat modeling. In this study, the open platform communication integrated architecture used in the industrial control system and industrial Internet of Things environment was selected as an analysis target. We find 30 major threats and four vulnerabilities based on the proposed framework. As a result, the validity of malicious client attacks using certificates and DoS attack scenarios using flooding were validated, and we create countermeasures for these vulnerabilities.https://www.mdpi.com/1424-8220/22/17/6575open platform communication (OPC) unified architecture (UA)vulnerability discovery frameworkvulnerability analysisindustrial control systemindustrial Internet of Things
spellingShingle Dong-Hyuk Shin
Ga-Yeong Kim
Ieck-Chae Euom
Vulnerabilities of the Open Platform Communication Unified Architecture Protocol in Industrial Internet of Things Operation
Sensors
open platform communication (OPC) unified architecture (UA)
vulnerability discovery framework
vulnerability analysis
industrial control system
industrial Internet of Things
title Vulnerabilities of the Open Platform Communication Unified Architecture Protocol in Industrial Internet of Things Operation
title_full Vulnerabilities of the Open Platform Communication Unified Architecture Protocol in Industrial Internet of Things Operation
title_fullStr Vulnerabilities of the Open Platform Communication Unified Architecture Protocol in Industrial Internet of Things Operation
title_full_unstemmed Vulnerabilities of the Open Platform Communication Unified Architecture Protocol in Industrial Internet of Things Operation
title_short Vulnerabilities of the Open Platform Communication Unified Architecture Protocol in Industrial Internet of Things Operation
title_sort vulnerabilities of the open platform communication unified architecture protocol in industrial internet of things operation
topic open platform communication (OPC) unified architecture (UA)
vulnerability discovery framework
vulnerability analysis
industrial control system
industrial Internet of Things
url https://www.mdpi.com/1424-8220/22/17/6575
work_keys_str_mv AT donghyukshin vulnerabilitiesoftheopenplatformcommunicationunifiedarchitectureprotocolinindustrialinternetofthingsoperation
AT gayeongkim vulnerabilitiesoftheopenplatformcommunicationunifiedarchitectureprotocolinindustrialinternetofthingsoperation
AT ieckchaeeuom vulnerabilitiesoftheopenplatformcommunicationunifiedarchitectureprotocolinindustrialinternetofthingsoperation