Fraunhofer-Gesellschaft

Publica

Hier finden Sie wissenschaftliche Publikationen aus den Fraunhofer-Instituten.

Envisioning smart building botnets

 
: Wendzel, Steffen; Zwanger, Viviane; Meier, Michael; Szlosarczyk, Sebastian

:
Fulltext (PDF; )

Katzenbeisser, S. ; Gesellschaft für Informatik -GI-, Bonn:
Sicherheit 2014 - Sicherheit, Schutz und Zuverlässigkeit : Beiträge der 7. Jahrestagung des Fachbereichs Sicherheit der Gesellschaft für Informatik e.V. (GI) 19.-21. März 2014 in Wien
Bonn: Köllen, 2014 (GI-Edition. Proceedings 228)
ISBN: 978-3-88579-622-0
pp.319-329
Gesellschaft für Informatik, Fachbereich Sicherheit (Jahrestagung) <7, 2014, Wien>
English
Conference Paper, Electronic Publication
Fraunhofer FKIE

Abstract
A building automation system (BAS) is the IT equipment within a building that monitors and controls the building (e.g., measuring temperature in a room to configure the heating level within the same room). We discuss the potential and the use of botnets in the context of BAS. Our botnet concept and scenario is novel in the sense that it takes advantage of the phyiscal capabilities of a building and as it has to adapt to a specialized environment being highly deterministic, predictable, simplistic and conservative. These properties make anomalies easy to detect. Smart building botnets allow the monitoring and remote control of (critical) building automation infrastructure in public and private facilities, such as airports or hospitals. We discuss why building automation botnets could thus enable attackers to cause various critical damage on whole regions and economies. Hiding the command and control communication is a highly beneficial step to adapt botnets to the BAS environment. We show that this is not necessarily a big hurdle and can be solved using existing covert channel techniques.

: http://publica.fraunhofer.de/documents/N-339797.html