Loading…
Welcome to the Interactive Agenda for the 2014 ICS Cyber Security Conference! (View the Full ICS Cyber Security Conference Website Here)
Tuesday, October 21 • 9:00am - 9:45am
ICSCorsair: Taking Control of an ICS System Through a 4-20 mA Current Loop

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

ICSCorsair: How I will PWN your ERP through 4-20 mA current loop 

Currently, ICSCorsair provides tools and abilities for attacking HART and Modbus industrial protocols. Using deep integration of modern ICS infrastructures, you can reach the upper levels of a network and even attack the corporate network servers using only the opportunity of connection to the current loop or the RS-485 line. 

Modern multilayer ICS infrastructures are vast from analogue signals on the lowest layers up to Enterprise Resource Planning systems at the top of network. HART is a digital industrial automation protocol, that works over 4-20mA current loop. Current loop provides reliable and fault-proof communication. Unfortunately merits of HART are the source of its security problems. And with the popular "deep trust" between components inside ICS architecture it leads to multilayer attack possibility. If an intruder gets physical access to a section of current loop wire on which a HART transmitter is working, he possibly can gain control of the whole ERP system. This talk shows general principles of this sort of attacks, hardware and software tools needed, and the ways to protect you industry against them.


Speakers
SC

Svetlana Cherkasova

Security Researcher, Digital Security (Russia)
Svetlana Cherkasova is a computer security researcher at Digital Security, focused on reverse engineering, vulnerability research, exploit development and fuzzing.


Tuesday October 21, 2014 9:00am - 9:45am EDT
Grand Ballroom