Show simple item record

Author
dc.contributor.author
Krasznay Csaba
Author
dc.contributor.author
Gyebnár Gergő
Availability Date
dc.date.accessioned
2023-06-15T12:19:01Z
Availability Date
dc.date.available
2023-06-15T12:19:01Z
Release
dc.date.issued
2021
ISBN
dc.identifier.isbn
978-9916-9565-5-7
ISBN
dc.identifier.isbn
978-9916-9565-4-0
uri
dc.identifier.uri
http://hdl.handle.net/20.500.12944/20498
Abstract
dc.description.abstract
The national energy system is the most critical of the critical infrastructures, and one which has become surprisingly vulnerable to cyberattacks in the last couple of years. Both unexpected technical design flaws and targeted attacks carried out by state-sponsored actors have raised challenges for the operators of essential services. Although this infrastructure is the subject of many regulations, and national security agencies pay special attention to such critical information infrastructures, gathering cyber threat intelligence is not straightforward for several reasons. First, special protocols in industrial control systems and operational technology (ICS/OT) systems are difficult to monitor. Second, information sharing does not really work, neither between states nor domestically. Third, due to the lack of thorough technical recommendations, there is no common understanding between responsible authorities and critical information infrastructure operators. In Hungary, key stakeholders of the national electricity system have realized that although some local and European legislation deals with the question of the cybersecurity of critical information infrastructure, many open questions remain in practice, both from policy and technology perspectives. In 2018, Hungarian manufacturers, energy service providers and responsible authorities started a discussion on what should be improved in legislation and technology, as well as in information sharing and how. This paper aims to describe the framework of this collaboration for information sharing and the initial results. Specifically, we present the current technical capabilities for gathering cyber threat intelligence in ICS/OT systems and propose some legislative actions that could support further technical solutions that are feasible in these special systems. :e also present Tactics, TechniTues, and Procedures (TTPs) and the goals of threat actors in energy systems that can be seen from the current data sets of our honeypots. Moreover, we will also make some recommendations as to how the national and EU- wide legislation should be built up and what kinds of actions should be required from the key players in compliance with the Directive (EU) 2016/1148 of the European Parliament and of the Council of 6 July 2016 concerning measures for a high common level of security of network and information systems across the Union (NIS Directive).
Language
dc.language
en
Keywords
dc.subject
ICS/OT security
Keywords
dc.subject
energy cybersecurity
Keywords
dc.subject
critical information infrastructure
Keywords
dc.subject
NIS Directive
Keywords
dc.subject
honeypot
Keywords
dc.subject
ISAC
Title
dc.title
Possibilities and Limitations of Cyber Threat Intelligence in Energy Systems
Type
dc.type
könyv
Date Change
dc.date.updated
2023-04-18T13:29:43Z
Version
dc.description.version
kiadói

dc.rights.accessRights
nyílt hozzáférésű
Discipline Discipline +
dc.subject.discipline
Műszaki tudományok

dc.subject.sciencebranch
Műszaki tudományok/lnformatikai tudományok
MTMT ID
dc.identifier.mtmt
32058823
Scope
dc.format.page
171-188

dc.identifier.bookTitle
13th International Conference on Cyber Conflict: Going Viral Proceedings 2021
ID Scopus
dc.identifier.scopus
85112250305
Author institution
dc.contributor.department
Kiberbiztonsági Kutatóintézet
Author institution
dc.contributor.department
Közszervezési és Infotechnológiai Tanszék
Author institution
dc.contributor.department
E-közszolgálati Fejlesztési Intézet


Files in this item

Possibilities and Limitations of Cyber Threat Intelligence in Energy Systems
 
 

This item appears in the following Collection(s)

Show simple item record

Tallózás a gyűjteményekben

Kategóriák és gyűjtemények
Megjelenés dátuma
Szerző
Cím
Tárgyszó
Feltöltés dátuma
Közszolgálati Online LexikonMagyary ArchívumLudovika Gyűjtemény