期刊文献+

A Dual Detection Method for Siemens Inverter Motor Modbus RTU Attack

A Dual Detection Method for Siemens Inverter Motor Modbus RTU Attack
下载PDF
导出
摘要 Since the Modbus RTU wired communication protocol of Siemens variable frequency motors is unstable and lacks a protection mechanism, there is a risk of user information leakage. Aiming at the problems of insufficient flexibility of traditional defense methods and poor defense effects, The present work proposed a new dual detection method based on MODBUS RTU, which combines the dual monitoring mechanism of “Address Resolution Protocol (ARP) request detection” and “ARP response detection”. In order to improve detection efficiency, two real-time updated linear tables are introduced, which can effectively deal with the three ARP spoofing methods of updating the ARP buffer. Based on the analysis of the hidden dangers of the Modbus RTU wired communication protocol, a wired connection between the S7-1200 PLC and the variable frequency motor was established, and a real experimental platform was constructed to demonstrate the attack. The intensity of ARP attacks has gradually increased over time. Through comparative experiments with traditional defense methods, it is proved that the algorithm enhances the protocol mechanism in principle, and is more flexible and reliable than traditional methods. Since the Modbus RTU wired communication protocol of Siemens variable frequency motors is unstable and lacks a protection mechanism, there is a risk of user information leakage. Aiming at the problems of insufficient flexibility of traditional defense methods and poor defense effects, The present work proposed a new dual detection method based on MODBUS RTU, which combines the dual monitoring mechanism of “Address Resolution Protocol (ARP) request detection” and “ARP response detection”. In order to improve detection efficiency, two real-time updated linear tables are introduced, which can effectively deal with the three ARP spoofing methods of updating the ARP buffer. Based on the analysis of the hidden dangers of the Modbus RTU wired communication protocol, a wired connection between the S7-1200 PLC and the variable frequency motor was established, and a real experimental platform was constructed to demonstrate the attack. The intensity of ARP attacks has gradually increased over time. Through comparative experiments with traditional defense methods, it is proved that the algorithm enhances the protocol mechanism in principle, and is more flexible and reliable than traditional methods.
作者 Yong Wan Xiunan Feng Yixuan Chen Lin Zhou Yiwen Zhu Jinyuan Wu Yong Wan;Xiunan Feng;Yixuan Chen;Lin Zhou;Yiwen Zhu;Jinyuan Wu(ITAcademy, Shanghai University of Electric Power, Shanghai, China;Shanghai Yunjian Information Technology Co., Ltd., Shanghai, China;Datang Baoding Thermal Power Plant, Baoding, China)
出处 《Journal of Computer and Communications》 2021年第7期91-108,共18页 电脑和通信(英文)
关键词 Siemens Motor Man-in-the-Middle (MITM) Attack S7-1200PLC Modbus RTU Communication Protocol Siemens Motor Man-in-the-Middle (MITM) Attack S7-1200PLC Modbus RTU Communication Protocol
  • 相关文献

参考文献5

二级参考文献58

共引文献67

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部