Facility Security Flashcards
What is a CAN in Facility Security?
Controller Area Network. Digital Serial Communications network within vehicles
What is the primary interface for a CAN in a vehicle
ODB-II (on-board diagnostics)
What are the security concerns with CANs
There is no concept of source addressing or message authentication in a CAN bus
How can CAN busses be exploited
Attach an exploit to the OBD-11 bus
Exploit onboard cellular connection
Exploit over wifi
What is IOT
A group of objects, electronic or not, that are connected to the wider internet using embedded electronic components
What is the typical OS for most smart devices
An embedded version of linux or Android
What should occur when vulnerabilities for smart devices are identified?
Efforts must be taken to patch vulnerabilities
What is an embedded system
Computer system designed to perform a specific or dedicated function.
What are some of the security concerns with embedded systems
They are considered state environments where frequesnt changes are not made or allowed.
They often have very little support for finding and correcting security vulnerabilities.
What is a PLC
Programmable Logic Controllers are a type of computer that are designed for industrial or outdoor settings
They can automate and monitor mechanical systems.
Can PLC Firmware be patched or reprogrammed?
Yes, the firmware can be patched and reprogrammed
What is a SoC
System on a chip is processor that integrates the platform functionality of multiple logical controllers onto a single chip.
Combines PLCs into a single chip
Are SoCs power efficient?
yes, when used with an embedded system, SoCs are power efficient
What is an RTOS
A Real Time Operating System is an OS that prioritizes deterministic executions of operations to ensure consistent response for time critical tasks.
What are some operational concerns with Embedded Systems
They typically cannot tolerate reboots or crashes
and must have response times that are predictable within microseconds.
What is an FPGA
A Field Programmable Gate Array is a processor that con be programed to perform a specific function by a customer rather then being programmed at the time of manufacture.
Can SoCs be reprogrammed?
No, once they are programmed, they cannot be over written/
What is a benefit of a FPGA
They allow customers to configure the programming logic to run a specific application instead of using ASIC ( Application Specific Integrated Circuits)
What is OT
Operational Technology communication network designed to implement an ICS (Industrial Control System) rather than a data networking system
Describe an ICS
Industrial Control Systems prioritize Availability and Integrity over security over confidentiality.
It is a network that manages embedded devices
Makes use of Field Bus for its communication protocol.
Powers things such as Water supplies, manufacturing