<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "https://jats.nlm.nih.gov/publishing/1.3/JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xml:lang="ru">
  <front xmlns:xlink="http://www.w3.org/1999/xlink">
    <journal-meta>
      <journal-id journal-id-type="elibrary">9004</journal-id>
      <journal-title-group>
        <journal-title>Problems of information security. Computer systems</journal-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Проблемы информационной безопасности. Компьютерные системы</trans-title>
        </trans-title-group>
      </journal-title-group>
      <issn pub-type="epub">2071-8217</issn>
    </journal-meta>
    <article-meta xmlns:xlink="http://www.w3.org/1999/xlink">
      <article-id pub-id-type="publisher-id">9</article-id>
      <article-id pub-id-type="doi">10.48612/jisp/xvkx-k619-3f2z</article-id>
      <title-group>
        <article-title>Development of attack scenarios for assessing threats related to information security breach in industrial networks</article-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Разработка сценариев атак для оценки угроз нарушения информационной безопасности в промышленной сети</trans-title>
        </trans-title-group>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0009-0003-9070-8968</contrib-id>
          <name>
            <surname>Zaid-Alkilani</surname>
            <given-names>Muhannad</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>muhannad.killani@gmail.com</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0002-3096-3102</contrib-id>
          <name>
            <surname>Mashkina</surname>
            <given-names>Irina</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>profmashkina@mail.ru</email>
        </contrib>
      </contrib-group>
      <aff id="aff1">Ufa University of Science and Technology</aff>
      <pub-date publication-format="electronic" date-type="pub" iso-8601-date="2024-03-25">
        <day>25</day>
        <month>03</month>
        <year>2024</year>
      </pub-date>
      <issue>1</issue>
      <fpage>96</fpage>
      <lpage>109</lpage>
      <self-uri xmlns:xlink="http://www.w3.org/1999/xlink" content-type="pdf" xlink:href="https://jisp.spbstu.ru/userfiles/files/soderzhaniya/2024_1_contents.pdf"/>
      <abstract xml:lang="en">
        <p>The article considers the possibility of using EPC diagram to build scenarios of information security (InfoSec) threats in industrial control system (ICS). In accordance with regulatory and legal documents, if there is a scenario of an InfoSec threat, it is recognized as relevant to the information system and is included in the InfoSec threat model to justify the choice of measures and means of information protection. The methodology of building scenarios of threat realization in the form of EPC models is proposed. The construction of EPC models of attack scenarios on industrial network infrastructure components is based on the establishment of possible objects of impact taking into account the architecture of the ICS, identification of possible vulnerabilities of infrastructure components and means of protection on the way to the threat’s implementation, determination of possible tactics and techniques, threats, lists of which are presented in methodological documents. The results of the development of several scenario models of computer attacks on the enterprise infrastructure, including an attack over wireless channel of communication with the field level are presented.</p>
      </abstract>
      <kwd-group xml:lang="en">
        <kwd>industrial control system ICS</kwd>
        <kwd>EPC diagram</kwd>
        <kwd>threat scenario</kwd>
        <kwd>target of the threat</kwd>
        <kwd>information security</kwd>
        <kwd>tactics</kwd>
        <kwd>techniques</kwd>
        <kwd>information security threats</kwd>
      </kwd-group>
    </article-meta>
  </front>
</article>
