Increased dependence of the maritime industry on information and communication networks has made shipboard power systems vulnerable to stealthy cyber-attacks. One such attack variant, called rootkit, can leverage system knowledge to hide its presence and allow remotely located malware handlers to gain complete control of infected subsystems. This paper presents a comprehensive evaluation of the threat landscape imposed by such attack variants on Medium Voltage DC (MVDC) shipboard microgrids, including a discussion of their impact on the overall maritime sector in general, and provides several simulation results to demonstrate the same. It also analyzes and presents the actions of possible defense mechanisms, with specific emphasis on evasion, deception, and detection frameworks, that will help ship operators and maritime cybersecurity professionals protect their systems from such attacks.
翻译:海事行业对信息与通信网络依赖程度的增加,使船载电力系统易受隐蔽性网络攻击威胁。一类名为Rootkit的攻击变种,可借助系统知识隐藏自身存在,并使远程恶意软件操控者完全控制受感染的子系统。本文针对此类攻击变种对中压直流(MVDC)船载微电网构成的威胁全景进行了全面评估,包括对其整体海事领域影响的探讨,并通过多项仿真结果加以验证。同时,本文分析并阐述了潜在防御机制的作用,重点聚焦于规避、欺骗与检测框架,这将有助于船舶运营商及海事网络安全专业人员保护其系统免受此类攻击。