A Comprehensive Review of Cybersecurity Frameworks and Defense Mechanisms for Modbus and HTTP in Industrial Control Systems
Industrial Control Systems (ICS) form the backbone of critical infrastructure, enabling automation and control in sectors such as energy, water, and manufacturing. The convergence of Operational Technology (OT) and Information Technology (IT) has introduced significant cybersecurity challenges, particularly for legacy communication protocols like Modbus and HTTP, which were not designed with security in mind. This paper provides a comprehensive framework for understanding the attack and defense mechanisms associated with two protocols i.e., Modbus and HTTP, used in ICS. We systematically analyze the inherent vulnerabilities of these protocols, survey proposed security enhancements including cryptographic solutions, intrusion detection systems, and security-by-design approaches, and evaluate existing cybersecurity frameworks such as MITRE ATT&CK, NIST CSF, and the Cyber Kill Chain. The review identifies a persistent gap in integrated, protocol-specific frameworks that address both attack simulation and defense validation in virtualized ICS environments. By synthesizing current research, this study highlights trends in threat modeling, machine learning-based anomaly detection, and the evolution of testbeds, providing a foundation for future work aimed at developing holistic security frameworks for Modbus and HTTP-based industrial networks.
Authors
- Lukumba Phiri (ORCID: https://orcid.org/0000-0003-2774-5726)
- Mukubesa Kamutumwa
Institutions
- University of Zambia (ZM)
Publication Details
- Journal
- International Journal of Applied Mathematics Computational Science and Systems Engineering
- Published
- 2026-09-30
- DOI
- https://doi.org/10.37394/232026.2026.8.16
- Primary Topic
- Smart Grid Security and Resilience
- Type
- article
- Field-Weighted Citation Impact
- 0.00