An Approach to Vulnerability Assessment for Navy Supervisory Control and Data Acquisition (SCADA) Systems

Abstract

The unfortunate events of September 11, 2001 have caused a renewed effort to protect our Nation's Critical Infrastructures. SCADA systems are relied upon in a large number of the sectors that make up the critical infrastructure, and their importance was reinforced during the massive power outage that occurred in August 2003. Growing reliance upon the Internet has emphasized the vulnerability of SCADA system communications to cyber attack. Only through diligent and continuous vulnerability assessment and certification and accreditation of these systems will the United States be able to mitigate some of the vulnerabilities of these systems. A case study presented here has validated the need for continued focus in this area. This thesis consolidates some of the research that has already been done in the area of SCADA vulnerability assessment and applies it by developing an initial vulnerability assessment checklist for Department of the Navy systems. This checklist can and should also be used in the certification and accreditation of DoN SCADA systems. A promising technology was also discovered during this research that should be explored further to secure SCADA communications. This will be touched on briefly.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Sep 01, 2004
Accession Number
ADA427332

Entities

People

  • Dennis J. Hart

Organizations

  • Naval Postgraduate School

Tags

Communities of Interest

  • Cyber
  • Energy and Power Technologies
  • Human Systems
  • Space

DTIC Thesaurus Topics

  • Communication Channels
  • Computer Network Security
  • Computer Networks
  • Computers
  • Control Systems
  • Cyberattacks
  • Cybersecurity
  • Human-Machine Interfaces
  • Information Systems
  • Internet
  • Network Architecture
  • Network Protocols
  • Network Science
  • Operating Systems
  • Security Personnel
  • United States
  • Wireless Communications

Readers

  • Emergency Management and Homeland Security.
  • Energy Conservation and Renewable Energy Engineering.
  • Systems Analysis and Design

Technology Areas

  • Cyber