Skip to main content

Part of the book series: Lecture Notes in Computer Science ((LNPSE,volume 10598))

Abstract

Some recent incidents and analyses have indicated that possibly the vulnerability of IT systems in railway automation is increasing. Due to several trends, such as digitalization or the use of commercial IT and communication systems the threat potential has increased. This paper discusses the way forward for the railway sector, how many advantages of digitalization can be realized without compromising safety. In particular topics like standardization or certification are covered, but also technical issues like SW update.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Subscribe and save

Springer+ Basic
$34.99 /Month
  • Get 10 units per month
  • Download Article/Chapter or eBook
  • 1 Unit = 1 Article or 1 Chapter
  • Cancel anytime
Subscribe now

Buy Now

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Similar content being viewed by others

References

  1. http://www.nextgov.com/nextgov/ng_20120123_3491.php

  2. The Telegraph: Cyber attack hits German train stations as hackers target Deutsche Bahn. http://www.telegraph.co.uk/news/2017/05/13/cyber-attack-hits-german-train-stations-hackers-target-deutsche/

  3. ISA 99: Standards of the Industrial Automation and Control System Security Committee of the International Society for Automation (ISA) on information security. http://isa99.isa.org/Documents/Forms/AllItems.aspx

  4. IEC 62280 Railway applications, Communication, signaling and processing systems–Safety related communication in transmission systems, September 2010 (CENELEC EN 50159)

    Google Scholar 

  5. IEC 62425 Railway applications, Communication, signaling and processing systems – Safety-related electronic systems for signaling, February 2003 (CENELEC EN 50129)

    Google Scholar 

  6. Commission Implementing Regulation (EU) No 402/2013 on the common safety method for risk evaluation and assessment and repealing Regulation (EC) No 352/2009, 30 April 2013

    Google Scholar 

  7. ISO: Information technology - Security techniques - Information security risk management, ISO 27005 (2011)

    Google Scholar 

  8. NIST: Guide for conducting risk assessments, SP800-30 (2012)

    Google Scholar 

  9. IEC: Industrial communication networks – Network and system security – Part 3-3: System security requirements and security levels, IEC 62443-3-3 (2015)

    Google Scholar 

  10. IEC 62443-3-2: Security for industrial automation and control systems – Part 3-2: Security risk assessment and system design, draft for comments, August 2015

    Google Scholar 

  11. Electric signaling systems for railways – Part 104: IT Security Guideline based on IEC 62443 (in German) (2015)

    Google Scholar 

  12. Schlehuber, C.: Analysis of security requirements in critical infrastructure and control systems (in German), Master thesis, TU Darmstadt (2013)

    Google Scholar 

  13. Braband, J., Schäbe, H.: Probability and Security – Pitfalls and Chances. In: Proceedings of the Advances in Risk and Reliability Technology Symposium 2015, Loughborough (2015)

    Google Scholar 

  14. UK Department for Transport: Rail Cyber Security - Guidance to Industry (2016)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Jens Braband .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2017 Springer International Publishing AG

About this paper

Cite this paper

Braband, J. (2017). Cyber Security in Railways: Quo Vadis?. In: Fantechi, A., Lecomte, T., Romanovsky, A. (eds) Reliability, Safety, and Security of Railway Systems. Modelling, Analysis, Verification, and Certification. RSSRail 2017. Lecture Notes in Computer Science(), vol 10598. Springer, Cham. https://doi.org/10.1007/978-3-319-68499-4_1

Download citation

  • DOI: https://doi.org/10.1007/978-3-319-68499-4_1

  • Published:

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-319-68498-7

  • Online ISBN: 978-3-319-68499-4

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics