SCADA Security

Security of SCADA Systems and controls systems is often overlooked. Mainly because it was not a concern when PLCs and HMIs were first deployed, however as systems have been added to the enterprise network of a larger system this has rendered them vulnerable.

This page is under development and seeks to give additional information from useful sources on the web. The first video is 90 minutes long it is actually a very good overview of SCADA security and cover a great deal of useful information. Look upon this as CPD and watch it when you get an opportunity. These systems are everywhere and an overview will only help you as you start to work throughout the building services industry.



Why SCADA has a future, a little taste of the future, but look to see the benefits.




A useful tutorial series that runs through the Introduction to IT Security & Computer Forensics
An 11-Module Course by Jeremy Martin well worth looking at if you have some free time.
The link to Course http://resources.infosecinstitute.com/mini-course/computer-forensics-101/

To start lets look at a short video that demonstrates the vulnerability.



A longer video that focuses on the demonstration of exploiting the vulnerabilities of systems was
Published on 26 Sep 2013 Check out Cimation Cyber Security researcher Eric Forner as he discusses common SCADA vulnerabilities in Remote Terminal Units and the importance of proper remediation.


The following video was Published on 22 Nov 2013
Why is SCADA Security an Uphill Battle? - Amol Sarwate
This talk will present technical security challenges faced by organizations that have SCADA, critical infrastructure or control systems installations. It will provide examples of attacks and examples of security controls that orginizations can implement to protect against these attacks. It will focus on how OWASP and SCADA are getting knit closely together. The talk will also introduce an updated version of an open-source tool to help identify and inventory SCADA systems.



SCADA Programming Tool
A quick example that may also help to explain what SCADA actually is