Skip to main navigation Skip to search Skip to main content

Consequence-based resilient architectures

  • Curtis St. Michel
  • , Sarah Freeman

Research output: Chapter in Book/Report/Conference proceedingChapterpeer-review

Abstract

As described in Lee et al., cyber-attackers conducted a coordinated, multifaceted operation against three distribution companies on 23 December 2015, resulting in a customer outage of nearly 4 hours. The significance in this event does not originate from the infiltration of the electric sector; on the contrary, Gorman, Toppa, Perlroth, Dearden, and Borger indicate they have been compromised before and will continue to be compromised in the future. Nor was this event significant because it harkened the arrival of some previously unknown, sophisticated industrial control system (ICS) malware, as Karnouskos, Fidler and Matrosov et al. argued was the case with Stuxnet. Rather, the significance of the December 2015 event stems from the means by which the attackers interfaced with and, ultimately, used the energy system design to their advantage.

Original languageEnglish
Title of host publicationAdvances in Information Security
PublisherSpringer New York LLC
Pages17-28
Number of pages12
DOIs
StatePublished - 2019

Publication series

NameAdvances in Information Security
Volume75
ISSN (Print)1568-2633

Fingerprint

Dive into the research topics of 'Consequence-based resilient architectures'. Together they form a unique fingerprint.

Cite this