Published October 27, 2025 | Version v1

Vulnerabilities of SCADA systems

Description

Supervisory Control and Data Acquisition (SCADA) systems are vital to en-

ergy and industrial infrastructures but remain highly exposed due to outdated

protocols and growing connectivity. Vulnerabilities such as the lack of authen-

tication, encryption, and intrusion resilience make them attractive targets, as

seen in attacks like Stuxnet and the Colonial Pipeline incident. This paper

reviews these weaknesses, categorizing them into technical, operational, and

structural risks, and examines theoretical approaches including risk modeling,

attack-tree analysis, and defense-in-depth. While measures such as segmenta-

tion, intrusion detection, and fuzz testing offer partial protection, gaps persist

in creating adaptive and practical defenses. The study underscores the urgency

of adopting comprehensive, layered strategies to strengthen SCADA security

against evolving cyber threats.

Files

Vulnerabilities_of_SCADA_systems.pdf

Files (449.5 kB)

Name Size Download all
md5:74c4638ad083f7e9050485536572fad3
449.5 kB Preview Download