• DocumentCode
    1833072
  • Title

    Some Security Issues in SCALANCE Wireless Industrial Networks

  • Author

    Cristea, Marius ; Groza, Bogdan ; Iacob, Mihai

  • Author_Institution
    Fac. of Automatics & Comput., Politeh. Univ. of Timisoara, Timisoara, Romania
  • fYear
    2011
  • fDate
    22-26 Aug. 2011
  • Firstpage
    493
  • Lastpage
    498
  • Abstract
    We discuss some security weaknesses of Scalance wireless access points and clients. These devices, developed by Siemens, are commonly used for wireless communication in network control systems. After the identification of the Stuxnet worm, which targeted PLCs from uranium enrichment facilities in Iran, these devices become of increased interest to the security community. Here we analyze them both in a static environment, at the configuration level, as well as in a dynamic environment where they are used for a remote control scenario. We show some vulnerabilities in both situations, in particular some weaknesses in the authentication protocol from their web-based configuration interface and an attack which halts the communication by using deauthentication packets. As proof-of-concept we simulate the evolution of a process which is controlled over the wireless network and could be seriously affected by an adversary unless a local controller is present for redundancy in case of communication failures.
  • Keywords
    invasive software; radio access networks; telecommunication security; Scalance wireless access point; Scalance wireless industrial network; Stuxnet worm; authentication protocol; communication failure; deauthentication packet; network control system; remote control scenario; security issue; wireless communication; IP networks; Process control; Protocols; Security; Servers; Wireless networks; authentication; control system; wireless security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability and Security (ARES), 2011 Sixth International Conference on
  • Conference_Location
    Vienna
  • Print_ISBN
    978-1-4577-0979-1
  • Electronic_ISBN
    978-0-7695-4485-4
  • Type

    conf

  • DOI
    10.1109/ARES.2011.74
  • Filename
    6046006