Invention Grant
- Patent Title: System and method for protection of an ICS network by an HMI server therein
-
Application No.: US17704149Application Date: 2022-03-25
-
Publication No.: US11621972B2Publication Date: 2023-04-04
- Inventor: Ilan Shaya , Shimon Zigdon , Avishay Savir
- Applicant: ICS SECURITY (2014) LTD.
- Applicant Address: IL Nethanya
- Assignee: ICS SECURITY (2014) LTD.
- Current Assignee: ICS SECURITY (2014) LTD.
- Current Assignee Address: IL Nethanya
- Agency: Pearl Cohen Zedek Latzer Baratz LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/40 ; H04L67/50 ; H04L41/0686 ; H04L43/18 ; H04L67/12

Abstract:
A defense suite for an industrial control system (ICS) network is disclosed. The defense suite is installed and executed on a network server hosting the human-machine interface (HMI) function of the network, thereby gaining communication privileges of the HMI server to query and perform other operations with programmable logic controllers (PLCs) and other assets of the network. The defense suite further comprises a network protection engine (NWPE) that alerts a defense suite user of suspicious activity in the network. Normal behavior of the network is obtained by a learning engine, during a learning period. The learning engine can be reactivated after a configuration change in the network. The data suite also comprises an operating system protection engine (OSPE), for preventing removable devices from accessing the HMI server and a preventing execution of unauthorized executables. The OSPE is also trained for which programs are authorized through its own program discovery module.
Public/Granted literature
- US20220217172A1 SYSTEM AND METHOD FOR PROTECTION OF AN ICS NETWORK BY AN HMI SERVER THEREIN Public/Granted day:2022-07-07
Information query