Please use this identifier to cite or link to this item: https://hdl.handle.net/10316/35539
Title: A Distributed Security Event Correlation Platform for SCADA
Authors: Alves, Pedro Guedes 
Orientador: Cruz, Tiago José dos Santos Martins da
Keywords: Event Correlation; Event Processing; Distributed Event Correlation; Intrusion Detection; SCADA
Issue Date: 7-Jul-2014
Serial title, monograph or event: A Distributed Security Event Correlation Platform for SCADA
Place of publication or event: Coimbra
Abstract: Critical Infrastructures rely on Industrial Control Systems (ICS) such as Supervisory Control and Data Acquisition (SCADA) to operate the networks and systems of vital assets for the functioning of society and economy. SCADA systems were traditionally isolated and used closed architectures with proprietary protocols, but nowadays this systems use open standards with open architectures that are highly interconnected with other corporate networks and the internet. As a result, the vulnerability of these systems to cyber-attacks increased considerably. This thesis is integrated in the work developed by the Laboratory of Communications and Telematics for CockpiCI, an European Framework FP7 research project, whose goal is to provide intrusion detection, analysis and protection techniques to Critical Infrastructures. The design and implementation of an event correlation platform for detection of cyberattacks in SCADA systems are detailed in this thesis. The developed correlation platform implements the means to collect, process and correlate security events from differently distributed sources. The validation performed to this system demonstrated its resiliency, performance and correlation capabilities to detect cyber-attacks. The platform presented will be deployed in a test bed that includes critical infrastructures simulated by real equipment and enterprise Industrial Control Systems, this will allow a further validation of its concepts and capabilities.
Description: Dissertação de Mestrado em Engenharia Informática apresentada à Faculdade de Ciências e Tecnologia da Universidade de Coimbra
URI: https://hdl.handle.net/10316/35539
Rights: openAccess
Appears in Collections:UC - Dissertações de Mestrado
FCTUC Eng.Informática - Teses de Mestrado

Files in This Item:
Show full item record

Page view(s)

262
checked on Apr 16, 2024

Download(s) 50

528
checked on Apr 16, 2024

Google ScholarTM

Check


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.