446 The State of the Art in Intrusion Prevention and Detection
Fovino [30] analyzed the security state of a power plant in order to nd possible improvements. Several
attacks (DoS attacks, virus, theft of password credentials) are descripted, and their impact on the power
plant is shown. Fovino claims that the communication protocol of a SCADA system is the core of the
control system that is often unprotected and therefore vulnerable to attacks by malware that is exploiting
the system’s weaknesses. In [31], Fovino proposes a state-based ltering system for SCADA protocols. It
is based on a rewall to detect complex attacks that uses an internal system model of the SCADA system.
The architecture is explained with reference to the Modbus and ...