
CORMAND2: A Deception Attack Against Industrial Robots
Hongyi Pu, Liang He, Peng Cheng, Jiming Chen, Youxian Sun
Engineering ›› 2024, Vol. 32 ›› Issue (1) : 186-201.
CORMAND2: A Deception Attack Against Industrial Robots
Industrial robots are becoming increasingly vulnerable to cyber incidents and attacks, particularly with the dawn of the Industrial Internet-of-Things (IIoT). To gain a comprehensive understanding of these cyber risks, vulnerabilities of industrial robots were analyzed empirically, using more than three million communication packets collected with testbeds of two ABB IRB120 robots and five other robots from various original equipment manufacturers (OEMs). This analysis, guided by the confidentiality–integrity–availability (CIA) triad, uncovers robot vulnerabilities in three dimensions: confidentiality, integrity, and availability. These vulnerabilities were used to design Covering Robot Manipulation via Data Deception (CORMAND2), an automated cyber–physical attack against industrial robots. CORMAND2 manipulates robot operation while deceiving the Supervisory Control and Data Acquisition (SCADA) system that the robot is operating normally by modifying the robot's movement data and data deception. CORMAND2 and its capability of degrading the manufacturing was validated experimentally using the aforementioned seven robots from six different OEMs. CORMAND2 unveils the limitations of existing anomaly detection systems, more specifically the assumption of the authenticity of SCADA-received movement data, to which we propose mitigations for.
Industrial robots / Vulnerability analysis / Deception attacks / Defenses
[1] |
|
[2] |
International Federation of Robotics (IFR).IFR presents world robotics 2021 reports. Report. Los Angeles: IFR Press Room; 2021.
|
[3] |
International Organization for Standardization (ISO). ISO10218-2: 2011: robots and robotic devices—safety requirements for industrial robots—part 2:robot systems and integration. Geneva: ISO; 2011.
|
[4] |
International Organization for Standardization (ISO). ISO 12100: 2010: safety of machinery—general principles for design—risk assessment and risk reduction. Geneva: ISO; 2010.
|
[5] |
|
[6] |
|
[7] |
|
[8] |
[ 2022 Dec 8]
|
[9] |
[ Internet.London: Infosecurity Magazine; 2020 Jul 7 [cited 2022 Dec 2 ]
|
[10] |
[ 2022 Dec 2]
|
[11] |
[ 2022 Dec 2]
|
[12] |
|
[13] |
|
[14] |
[ 2022 Dec 2]
|
[15] |
Major companies in the global industrial robot market in 2019,by estimated market share
[ Internet. New York City: Statista; 2019 Jan 5 [cited 2022 Dec 2 ]
|
[16] |
|
[17] |
|
[18] |
|
[19] |
|
[20] |
|
[21] |
|
[22] |
|
[23] |
|
[24] |
|
[25] |
|
[26] |
|
[27] |
|
[28] |
|
[29] |
|
[30] |
|
[31] |
|
[32] |
|
[33] |
|
[34] |
|
[35] |
|
[36] |
|
[37] |
Electricity Information Sharing and Analysis Center (E-ISAC). Analysis of the cyber attack on the Ukrainian power grid: defense use case. Washington, DC: E-ISAC; 2016 Mar.
|
[38] |
|
[39] |
|
[40] |
|
[41] |
|
[42] |
[ 2022 Dec 8]
|
[43] |
[ 2022 Dec 2]
|
[44] |
Workers killed by the industrial robot, how can the safety regulations be ignored? Beijing: Sohu; [cited 2022 Dec 2].
|
[45] |
[ 2022 Dec 2]
|
[46] |
|
[47] |
[ 2022 Dec 2]
|
[48] |
|
[49] |
|
[50] |
|
[51] |
|
/
〈 |
|
〉 |