{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T23:23:30Z","timestamp":1782948210509,"version":"3.54.5"},"reference-count":36,"publisher":"MDPI AG","issue":"8","license":[{"start":{"date-parts":[[2022,7,28]],"date-time":"2022-07-28T00:00:00Z","timestamp":1658966400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Future Internet"],"abstract":"<jats:p>SCADA systems monitor critical industrial, energy and other physical infrastructures in order to detect malfunctions, issue alerts and, in many cases, propose or even take remedial actions. However, due to their attachment to the Internet, SCADA systems are, today, vulnerable to attacks such as, among several others, interception of data traffic, malicious modifications of settings and control operations data, malicious modification of measurements and infrastructure data and Denial-of-Service attacks. Our research focuses on strengthening SCADA systems with cryptographic methods and protection mechanisms with emphasis on data and messaging encryption and device identification and authentication. The limited availability of computing power and memory in sensors and embedded devices deployed in SCADA systems make render cryptographic methods with higher resource requirements, such as the use of conventional public key cryptography such as RSA, unsuitable. We, thus, propose Elliptic Curve Cryptography as an alternative cryptographic mechanism, where smaller key sizes are required, with lower resource requirements for cryptographic operations. Accordingly, our approach integrates Modbus, a commonly used SCADA communication protocol, with Elliptic Curve Cryptography. We have, also, developed an experimental set-up in order to demonstrate the performance of our approach and draw conclusions regarding its effectiveness in real SCADA installations.<\/jats:p>","DOI":"10.3390\/fi14080232","type":"journal-article","created":{"date-parts":[[2022,7,28]],"date-time":"2022-07-28T20:49:28Z","timestamp":1659041368000},"page":"232","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":9,"title":["Integrating Elliptic Curve Cryptography with the Modbus TCP SCADA Communication Protocol"],"prefix":"10.3390","volume":"14","author":[{"given":"Despoina","family":"Chochtoula","sequence":"first","affiliation":[{"name":"Computer Engineering and Informatics Department, University of Patras, 26504 Patras, Greece"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Aristidis","family":"Ilias","sequence":"additional","affiliation":[{"name":"Computer Engineering and Informatics Department, University of Patras, 26504 Patras, Greece"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yannis C.","family":"Stamatiou","sequence":"additional","affiliation":[{"name":"Department of Business Administration, University of Patras, 26504 Patras, Greece"},{"name":"Computer Technology Institute and Press \u201cDiophantus\u201d, 25is Martiou, 26504 Patras, Greece"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2571-7449","authenticated-orcid":false,"given":"Christos","family":"Makris","sequence":"additional","affiliation":[{"name":"Computer Engineering and Informatics Department, University of Patras, 26504 Patras, Greece"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"1968","published-online":{"date-parts":[[2022,7,28]]},"reference":[{"key":"ref_1","unstructured":"(2021, June 16). 14 Major SCADA Attacks and What You Can Learn from Them. Available online: https:\/\/www.dpstele.com\/blog\/major-scada-hacks.php."},{"key":"ref_2","unstructured":"(2020, October 19). McAfee. Available online: https:\/\/www.mcafee.com\/wpcontent\/uploads\/2011\/02\/McAfee_NightDragon_wp_draft_to_customersv1-1.pdf."},{"key":"ref_3","unstructured":"(2021, July 29). Flame Malware and SCADA Security: What are the Impacts?. Available online: https:\/\/www.tofinosecurity.com\/blog\/flame-malware-and-scada-security-what-are-impacts."},{"key":"ref_4","doi-asserted-by":"crossref","first-page":"1375","DOI":"10.1109\/ACCESS.2016.2549047","article-title":"Cloud-Assisted IoT-Based SCADA Systems Security: A Review of the State of the Art and Future Challenges","volume":"4","author":"Sajid","year":"2016","journal-title":"IEEE Access"},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Drury, B. (2009). Control Techniques Drives and Controls Handbook, Institution of Engineering and Technology. [2nd ed.].","DOI":"10.1049\/PBPO057E"},{"key":"ref_6","unstructured":"(2021, June 29). Stephane\/Libmodbus. Available online: https:\/\/github.com\/stephane\/libmodbus."},{"key":"ref_7","unstructured":"(2021, June 29). ECC-LIB: A Library for Elliptic Curve Cryptography. Available online: https:\/\/www.ceid.upatras.gr\/webpages\/faculty\/zaro\/software\/ecc-lib\/."},{"key":"ref_8","doi-asserted-by":"crossref","unstructured":"Sommestad, T., Ericsson, G.N., and Nordlander, J. (2010, January 25\u201329). SCADA system cyber security\u2014A comparison of standards. Proceedings of the IEEE PES General Meeting, Minneapolis, MN, USA.","DOI":"10.1109\/PES.2010.5590215"},{"key":"ref_9","doi-asserted-by":"crossref","unstructured":"Shahzad, A., Musa, S., Aborujilah, A., and Irfan, M. (2013, January 23\u201324). Secure Cryptography Testbed Implementation for SCADA Protocols Security. Proceedings of the IEEE 2013 International Conference on Advanced Computer Science Applications and Technologies, Kuching, Malaysia.","DOI":"10.1109\/ACSAT.2013.69"},{"key":"ref_10","doi-asserted-by":"crossref","unstructured":"Wright, A.K., Kinast, J.A., and McCarty, J. (2004). Low-Latency Cryptographic Protection for SCADA Communications, ACNS 2004: Applied Cryptography and Network Security, Springer.","DOI":"10.1007\/978-3-540-24852-1_19"},{"key":"ref_11","doi-asserted-by":"crossref","first-page":"1176","DOI":"10.3390\/sym7031176","article-title":"Real Time MODBUS Transmissions and Cryptography Security Designs and Enhancements of Protocol Sensitive Information, Symmetry Applied Cryptography and Security Concerns Based on Symmetry for the Future Cyber World","volume":"7","author":"Shahzad","year":"2015","journal-title":"Symmetry"},{"key":"ref_12","first-page":"1","article-title":"Enhance Security Mechanism for Securing SCADA Wireless Sensor Network","volume":"2","author":"Gelogo","year":"2014","journal-title":"Int. J. Sens. Its Appl. Control Syst."},{"key":"ref_13","doi-asserted-by":"crossref","first-page":"37","DOI":"10.1016\/j.ijcip.2008.08.003","article-title":"Attack taxonomies for the Modbus protocols","volume":"1","author":"Huitsing","year":"2008","journal-title":"Int. J. Crit. Infrastruct. Prot."},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"268478","DOI":"10.1155\/2012\/268478","article-title":"Security and Vulnerability of SCADA Systems over IP-Based Wireless Sensor Networks","volume":"8","author":"Kim","year":"2012","journal-title":"Sage J. Int. J. Distrib. Sens. Netw."},{"key":"ref_15","doi-asserted-by":"crossref","unstructured":"Shahzad, A., Lee, M., Lee, Y., Kim, S., Xiong, N., Choi, J., and Cho, Y. (2014, January 9). Industrial Control Systems (ICSs) Vulnerabilities Analysis and SCADA Security Enhancement Using Testbed Encryption. Proceedings of the 8th International Conference on Ubiquitous Information Management and Communication\u2014ICUIMC \u201914, Siem Reap, Cambodia.","DOI":"10.1145\/2557977.2558061"},{"key":"ref_16","unstructured":"(2021, June 16). Modbus TCP Security Protocol Specification. Available online: http:\/\/modbus.org\/docs\/MB-TCP-Security-v21_2018-07-24.pdf."},{"key":"ref_17","unstructured":"(2021, June 29). SCADA Using Android OPC UA and Modbus. Available online: https:\/\/www.automationworld.com\/products\/control\/article\/13309428\/scada-using-android-opc-ua-and-modbus."},{"key":"ref_18","unstructured":"(2021, June 16). TeslaSCADA. Available online: https:\/\/teslascada.com\/."},{"key":"ref_19","doi-asserted-by":"crossref","unstructured":"Tidrea, A., Korodi, A., and Silea, I. (2019). Cryptographic Considerations for Automation and SCADA Systems Using Trusted Platform Modules. Sensors, 19.","DOI":"10.3390\/s19194191"},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"203","DOI":"10.1090\/S0025-5718-1987-0866109-5","article-title":"Elliptic curve cryptosystems","volume":"48","author":"Koblitz","year":"1987","journal-title":"Math. Comp."},{"key":"ref_21","unstructured":"Miller, V. (1986). Uses of Elliptic Curves in Cryptography, Springer. Advances in Cryptology-Crypto \u201985."},{"key":"ref_22","unstructured":"Mollin, R. (1999). Algebraic Number Theory, Chapman & Hall\/CRC."},{"key":"ref_23","doi-asserted-by":"crossref","unstructured":"Blake, I., Seroussi, G., and Smart, N. (1999). Elliptic Curves in Cryptography, Cambridge University Press.","DOI":"10.1017\/CBO9781107360211"},{"key":"ref_24","doi-asserted-by":"crossref","unstructured":"Goldwasser, S., and Killian, J. (1986, January 28\u201330). Almost all primes can be quickly certified. Proceedings of the 18th ACM Symposium Theory of Computing, Berkeley, CA, USA.","DOI":"10.1145\/12130.12162"},{"key":"ref_25","doi-asserted-by":"crossref","unstructured":"Koblitz, N. (1998). Algebraic Aspects of Cryptography, Springer.","DOI":"10.1007\/978-3-662-03642-6"},{"key":"ref_26","first-page":"673","article-title":"Algorithms in Number Theory","volume":"Volume A","year":"1990","journal-title":"Algorithms and Complexity"},{"key":"ref_27","unstructured":"Niven, I., Zuckerman, H.S., and Montgomery, H.L. (1991). An Introduction to the Theory of Numbers, John Wiley and Sons. [5th ed.]."},{"key":"ref_28","unstructured":"Odlyzko, A.M. (1985). Discrete Logarithms in Finite Fields and Their Cryptographic Significance, Springer. Advances in Cryptology-Eurocrypt \u201984."},{"key":"ref_29","doi-asserted-by":"crossref","first-page":"129","DOI":"10.1023\/A:1008350005447","article-title":"Discrete logarithms: The past and the future","volume":"19","author":"Odlyzko","year":"2000","journal-title":"Des. Codes Cryptogr."},{"key":"ref_30","doi-asserted-by":"crossref","first-page":"517","DOI":"10.1016\/j.isatra.2013.02.005","article-title":"Secure SCADA communication by using a modified key management scheme","volume":"52","author":"Rezai","year":"2013","journal-title":"ISA Trans."},{"key":"ref_31","doi-asserted-by":"crossref","unstructured":"Menezes, A.J. (1993). Elliptic Curve Public Key Cryptosystems, Kluwer Academic Publishers.","DOI":"10.1007\/978-1-4615-3198-2"},{"key":"ref_32","doi-asserted-by":"crossref","unstructured":"Silverman, J.H. (1986). The Arithmetic of Elliptic Curves, Springer.","DOI":"10.1007\/978-1-4757-1920-8"},{"key":"ref_33","first-page":"5","article-title":"The xedni calculus and the elliptic curve discrete logarithm problem","volume":"20","author":"Silverman","year":"2000","journal-title":"Prelim. Version"},{"key":"ref_34","unstructured":"(2021, September 08). Rupan\/gmp. Available online: https:\/\/github.com\/Rupan\/gmp."},{"key":"ref_35","unstructured":"(2021, September 08). Arduino.cc. Available online: https:\/\/store.arduino.cc\/arduino-industrial-101."},{"key":"ref_36","unstructured":"(2021, May 27). Modbus Application Protocol Specification. V1.1b3. Available online: http:\/\/www.modbus.org\/docs\/Modbus_Application_Protocol_V1_1b3.pdf."}],"container-title":["Future Internet"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1999-5903\/14\/8\/232\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,10]],"date-time":"2025-10-10T23:58:33Z","timestamp":1760140713000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1999-5903\/14\/8\/232"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,7,28]]},"references-count":36,"journal-issue":{"issue":"8","published-online":{"date-parts":[[2022,8]]}},"alternative-id":["fi14080232"],"URL":"https:\/\/doi.org\/10.3390\/fi14080232","relation":{},"ISSN":["1999-5903"],"issn-type":[{"value":"1999-5903","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,7,28]]}}}