About the Author |
|
xiii | |
About the Technical Reviewer |
|
xv | |
Introduction |
|
xvii | |
Chapter 1 Cyber-Physical Attack Recovery Procedures |
|
1 | (14) |
|
Purpose of the Recovery Procedures |
|
|
2 | (3) |
|
Cyber-Physical Attack Timetable |
|
|
5 | (1) |
|
Recovery Procedures Information |
|
|
6 | (1) |
|
|
6 | (1) |
|
|
6 | (1) |
|
|
7 | (1) |
|
Recovery Management Team (MGMT) |
|
|
8 | (1) |
|
|
8 | (1) |
|
|
8 | (1) |
|
Recovery Facilities Team (FAC) |
|
|
9 | (1) |
|
|
9 | (1) |
|
Recovery Tech Support Team (TECH) |
|
|
9 | (1) |
|
|
10 | (1) |
|
Recovery Security Team (SEC) |
|
|
10 | (1) |
|
|
10 | (1) |
|
|
11 | (2) |
|
|
11 | (1) |
|
|
12 | (1) |
|
|
13 | (1) |
|
|
13 | (1) |
|
|
13 | (1) |
|
|
13 | (2) |
Chapter 2 Threats and Attack Detection |
|
15 | (12) |
|
|
15 | (6) |
|
Cyber-Physical Attack Detection |
|
|
17 | (4) |
|
|
21 | (2) |
|
|
21 | (2) |
|
|
23 | (1) |
|
|
23 | (4) |
|
Step 1: Confirm that the "event" is a Cyber-physical Attack |
|
|
24 | (1) |
|
Step 2: Slow Down the Attack. Assume that the BCS is no Longer Under your Command |
|
|
24 | (1) |
|
Step 3: Stop the Attack. Shut Down the BCS |
|
|
24 | (1) |
|
Step 4: Assess the Damage to Whatever Failed, but Assume that all Equipment was Hacked |
|
|
25 | (1) |
|
Step 5: Replace Infected Servers and Repair Damaged Building Equipment |
|
|
25 | (1) |
|
Step 6: Reload the BCS and Restart Automatic Operation |
|
|
25 | (2) |
Chapter 3 Prevent Hackers from Destroying a Boiler |
|
27 | (6) |
|
|
28 | (1) |
|
Hot Water Heater Explosion |
|
|
29 | (1) |
|
|
30 | (1) |
|
|
30 | (1) |
|
|
31 | (1) |
|
|
31 | (1) |
|
|
31 | (2) |
Chapter 4 Prevent Hackers from Destroying a Pressure Vessel |
|
33 | (2) |
Chapter 5 Prevent Hackers from Destroying Chillers |
|
35 | (2) |
|
|
36 | (1) |
|
Chiller Cyber-Attack Tree |
|
|
36 | (1) |
Chapter 6 Prevent Hackers from Destroying a Gas Fuel Train |
|
37 | (2) |
Chapter 7 Prevent Hackers from Destroying a Cooling Tower |
|
39 | (2) |
|
Troubleshooting Cooling Towers |
|
|
39 | (2) |
Chapter 8 Prevent Hackers from Destroying a Backup Generator |
|
41 | (2) |
Chapter 9 Prevent Hackers from Destroying Switchgear |
|
43 | (2) |
Chapter 10 Eight Steps to Defending Building Control Systems |
|
45 | (2) |
|
Discontinue Remote Connections to the BCS |
|
|
45 | (1) |
|
Implement Application Whitelisting |
|
|
45 | (1) |
|
Systematic Patch Management Regimen |
|
|
45 | (1) |
|
Reduce the Attack Surface |
|
|
46 | (1) |
|
Build a Defendable Network Environment |
|
|
46 | (1) |
|
|
46 | (1) |
|
|
46 | (1) |
|
Do Not Use BCS Workstations for Anything Else |
|
|
46 | (1) |
Chapter 11 Block Hacker Surveillance of Your Buildings |
|
47 | (2) |
Chapter 12 Cyber-Physical Attack Recovery Procedures Template |
|
49 | (108) |
|
|
51 | (11) |
|
|
53 | (2) |
|
|
55 | (2) |
|
Incident Response Team Member Listing |
|
|
57 | (1) |
|
Equipment Recovery Priority List |
|
|
58 | (1) |
|
|
59 | (1) |
|
|
60 | (1) |
|
Vulnerability Assessments History |
|
|
61 | (1) |
|
|
62 | (1) |
|
|
62 | (1) |
|
|
62 | (1) |
|
|
63 | (1) |
|
Intrusion Detection System Alerts |
|
|
64 | (6) |
|
|
66 | (2) |
|
Master List Of Deficiencies |
|
|
68 | (1) |
|
|
69 | (1) |
|
|
70 | (44) |
|
Mitigation and Segmentation |
|
|
70 | (1) |
|
Building Equipment Damage Assessments |
|
|
70 | (1) |
|
BCS Network Integrity Checks |
|
|
71 | (1) |
|
Server/Workstation Process Checks |
|
|
71 | (1) |
|
|
72 | (1) |
|
Building Controls System Information |
|
|
73 | (2) |
|
|
75 | (1) |
|
|
76 | (1) |
|
Equipment Or Service Failure Report |
|
|
77 | (1) |
|
Damage Assessment Activities |
|
|
78 | (1) |
|
Rapid Inspection Checklists |
|
|
79 | (1) |
|
|
80 | (2) |
|
Boiler Or Pressure Vessel |
|
|
82 | (2) |
|
|
84 | (1) |
|
Boiler Or Pressure Vessel |
|
|
85 | (2) |
|
|
87 | (1) |
|
Chiller Visual Inspection |
|
|
88 | (1) |
|
Chilled Water System Checklist |
|
|
89 | (2) |
|
Air Handling Unit Checklist |
|
|
91 | (1) |
|
Air Handling Unit Visual Inspection |
|
|
92 | (1) |
|
Computer Room Air Conditioner |
|
|
93 | (1) |
|
Pump: Primary Chilled Water |
|
|
94 | (1) |
|
Pump: Secondary Chilled Water |
|
|
95 | (1) |
|
Pump: Primary Domestic Hot Water |
|
|
96 | (1) |
|
Pump: Secondary Domestic Hot Water |
|
|
97 | (1) |
|
|
98 | (1) |
|
|
99 | (1) |
|
|
100 | (2) |
|
|
102 | (1) |
|
Lube Oil System Checklist |
|
|
103 | (2) |
|
Ventilation System Checklist |
|
|
105 | (1) |
|
|
106 | (2) |
|
Electrical Switchgear Inspection |
|
|
108 | (1) |
|
Electrical Switchgear Checklist |
|
|
109 | (2) |
|
Restart Operating Conditions |
|
|
111 | (3) |
|
|
114 | (36) |
|
Recovery Event Recording Form |
|
|
115 | (1) |
|
|
116 | (2) |
|
Building Controls System Field Test |
|
|
118 | (1) |
|
Boiler Or Pressure Vessel |
|
|
119 | (1) |
|
|
120 | (2) |
|
|
122 | (3) |
|
Computer Room Air Conditioner |
|
|
125 | (1) |
|
|
126 | (1) |
|
Pump: Primary Chilled Water |
|
|
127 | (2) |
|
Pump: Secondary Chilled Water |
|
|
129 | (2) |
|
Pump: Primary Domestic Hot Water |
|
|
131 | (2) |
|
Pump: Secondary Domestic Hot Water |
|
|
133 | (2) |
|
|
135 | (1) |
|
|
136 | (1) |
|
|
137 | (2) |
|
Electrical Switchgear Checklist |
|
|
139 | (1) |
|
Integrated Systems Test: Emergency Power |
|
|
140 | (1) |
|
Integrated Systems Test: Emergency Power |
|
|
141 | (1) |
|
Integrated Systems Test: Emergency Power |
|
|
142 | (1) |
|
|
143 | (1) |
|
HVAC Control System Drawings |
|
|
144 | (1) |
|
|
144 | (1) |
|
|
145 | (1) |
|
Thermostat And Occupancy Sensor Schedule |
|
|
146 | (1) |
|
Building Equipment Schedule |
|
|
147 | (1) |
|
Building Occupancy Schedule |
|
|
148 | (2) |
|
|
150 | (7) |
|
Building Control Network Riser Diagram |
|
|
151 | (1) |
|
|
151 | (1) |
|
Performance Verification Test Results |
|
|
152 | (1) |
|
|
153 | (1) |
|
Equipment Maintenance Manuals |
|
|
153 | (1) |
|
List Of Authorized Maintenance Laptops |
|
|
154 | (1) |
|
|
155 | (2) |
Index |
|
157 | |