I. Ahmed, S. Obermeier, M. Naedele, and G. Richard, SCADA systems: Challenges for forensic investigators, IEEE Computer, vol.45, issue.12, pp.44-51, 2012.
DOI : 10.1109/mc.2012.325

B. Akyol, H. Kirkham, S. Clements, and M. Hadley, A Survey of Wireless Communications for the Electric Power System, 2010.

D. Beresford, Exploiting Siemens Simatic S7 PLCs, presented at Black Hat USA, 2011.

R. Chan and K. Chow, Forensic analysis of a Siemens programmable logic controller, pp.117-130, 2016.
URL : https://hal.archives-ouvertes.fr/hal-01614856

N. Falliere, L. O'murchu, and E. Chien, W32.Stuxnet Dossier, Version 1.4, Symantec, 2011.

L. Folkerth, Forensic Analysis of Industrial Control Systems, 2015.

I. Garitano, R. Uribeetxeberria, and U. Zurutuza, A review of SCADA anomaly detection systems, Proceedings of the Sixth International Conference on Soft Computing Models in Industrial and Environmental Applications, pp.357-366, 2011.

D. Hadziosmanovic, D. Bolzoni, and P. Hartel, A log mining approach for process monitoring in SCADA, International Journal of Information Security, vol.11, issue.4, pp.231-251, 2012.

C. Hao, New PLC worm virus and its countermeasures, 2016.

T. Hergenhahn, , 2014.

C. Jones, STEP 7 Programming Made Easy in LAD, FBD and STL: A Practical Guide to Programming S7300/S7-400 Programmable Logic Controllers, 2013.

S. Karnouskos, Stuxnet worm impact on industrial cyber-physical system security, Proceedings of the Thirty-Seventh Annual Conference of the IEEE Industrial Electronics Society, pp.4490-4494, 2011.
DOI : 10.1109/iecon.2011.6120048

J. Klick, S. Lau, D. Marzin, J. Malchow, and V. Roth, Internet-facing PLCs as a network backdoor, Proceedings of the IEEE Conference on Communications and Network Security, pp.524-532, 2015.
DOI : 10.1109/cns.2015.7346865

. Langner, A time bomb with fourteen bytes, 2011.

L. Lerner, Z. Franklin, W. Baumann, and C. Patterson, Applicationlevel autonomic hardware to predict and preempt software attacks on industrial control systems, Proceedings of the Forty-Fourth Annual IEEE/IFIP International Conference on Dependable Systems and Networks, pp.136-147, 2014.
DOI : 10.1109/dsn.2014.26

, Yuen Long Sewage Treatment Works System, 2008.

S. Siemens and . For-industry-worldwide, , 2018.

. Siemens, Totally Integrated Automation Portal, 2018.

R. Spenneberg, M. Bruggemann, and H. Schwartke, PLC-blaster: A worm living solely in the PLC, presented at Black Hat USA, 2016.

T. Spyridopoulos, T. Tryfonas, and J. May, Incident analysis and digital forensics of SCADA and industrial control systems, Proceedings of the Eighth IET International System Safety Conference Incorporating the Cyber Security Conference, 2013.
DOI : 10.1049/cp.2013.1720

URL : https://research-information.bristol.ac.uk/files/20874699/06725809.pdf

P. Van-vliet, M. Kechadi, and N. Le-khac, Forensics in industrial control systems: A case study, Proceedings of the Workshop on the Security of Cyber-Physical Systems; Conference on Cybersecurity of Industrial Control Systems, pp.147-156, 2016.

T. Wu and J. Nurse, Exploring the use of PLC debugging tools for digital forensic investigations of SCADA systems, Journal of Digital Forensics, Security and Law, vol.10, issue.4, pp.79-96, 2015.

K. Yau and K. Chow, PLC forensics based on control program logic change detection, Journal of Digital Forensics, Security and Law, vol.10, issue.4, pp.59-68, 2015.

K. Yau and K. Chow, Detecting anomalous programmable logic controller events using machine learning, Advances in Digital Forensics XIII, pp.81-94, 2017.
URL : https://hal.archives-ouvertes.fr/hal-01716409