Modbus 기반 SCADA 해킹 테스트 시스템 설계
송재구, 정성모, 김석수, 김태훈, 강동주, 김석주
Abstract
송재구, 정성모, 김석수, 김태훈, 강동주, 김석주
Abstract
본 연구는 Modbus 프로토콜을 사용하는 SCADA(Supervisory Control and Data Acquisition) 시스템의 보안향상을 위해 취약성을 분석하고 이에 대한 공격을 방법을 제시한다. 본 연구에서는 RS-232, RS-485 프로토콜을 사용하여 SCADA 환경을 구현하기 위해 소프트웨어 기반의 RTUs(Remote Terminal Units)를 적용하여 해킹 환경을 구성한다. 또한 스니핑을 위한 물리적 연결을 이용한 공격 방안을 제안하고 이에 따른 위험요소를 설명한다. 최종적으로 Man-in-the-middle attack 기반 물리적 연결을 통해 데이터 모니터링 및 데이터 변조 공격을 수행하기 위한 소프트웨어를 개발하고 테스트를 시행한다.
A significance statement is not available in the OpenAlex record.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
본 연구는 Modbus 프로토콜을 사용하는 SCADA(Supervisory Control and Data Acquisition) 시스템의 보안향상을 위해 취약성을 분석하고 이에 대한 공격을 방법을 제시한다. 본 연구에서는 RS-232, RS-485 프로토콜을 사용하여 SCADA 환경을 구현하기 위해 소프트웨어 기반의 RTUs(Remote Terminal Units)를 적용하여 해킹 환경을 구성한다. 또한 스니핑을 위한 물리적 연결을 이용한 공격 방안을 제안하고 이에 따른 위험요소를 설명한다. 최종적으로 Man-in-the-middle attack 기반 물리적 연결을 통해 데이터 모니터링 및 데이터 변조 공격을 수행하기 위한 소프트웨어를 개발하고 테스트를 시행한다.
Key concepts: SCADA, Modbus, Supervisory control, Embedded system, Computer science, Engineering, Computer security, Control (management)