Safety Watermark: A Defense Tool for Real-Time Digital Forensic Incident Response in Industrial Control Systems

被引:0
|
作者
Victor, Sim Siang Tze [1 ]
Ahmed, Chuadhry Mujeeb [2 ]
Kelvin, Koh Yoong Keat [3 ]
Zhou, Jianying [1 ]
机构
[1] Singapore Univ Technol & Design, Singapore, Singapore
[2] Newcastle Univ, Newcastle Upon Tyne, England
[3] Publ Util Board, Singapore, Singapore
基金
新加坡国家研究基金会;
关键词
Industrial Control System; Cyber-Physical System Security; Process Hazard Analysis; Safety Watermark; Invariants; Consequence-based Cyber-Informed Engineering;
D O I
10.1007/978-3-031-41181-6_17
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Industrial Control Systems (ICSs) including those executing process safety controls, alarms, and interlocks are becoming more interconnected with other systems. Traditional process hazard analysis (PHA) rarely considered the possibility of cyber-attacks causing safety incidents in the process. Practitioners have viewed safety and security traditionally as systems with different properties. Both communities worked separately using their respective terminologies and frameworks. With the view of limited resources especially in the protection of security, it is important to be able to prioritize. A strategy is to take a top-down approach by identifying system losses that needed protection. This results in a more manageable set of potential losses. Rather than starting from the angle on how best to protect the network against the myriad of threats, a strategic approach would be to know what services and functions require protection. The novelty of this work is to use a subset of the invariants derived using a top-down approach by focusing on hazards manifestations that require protection from being comprisable digitally. This approach is called the safety watermark concept in this paper. In its most basic form, it is successfully shown to alert operators of potential safety risk manifestations with varying importance. In certain situations where the likelihood of the safety risk manifestations increases towards a cyber-attack, the safety watermark raises the alert level to potential cyber incidents. The safety watermark has been effectively utilized to demonstrate the ability in real-time to identify potential indicators of compromises in terms of system components, a yet to be commercially available capability for industrial control systems. The safety watermark possesses the ability to scale, and an example is illustrated for a consequence driven methodology like the Consequence-Based Cyber-Informed Engineering (CCE) by Idaho National Laboratory.
引用
收藏
页码:299 / 320
页数:22
相关论文
共 50 条
  • [31] Automated integration of real-time and non-real-time defense systems
    Emre Dalk?ran
    Tolga ?Onel
    Okan Top?u
    Kadir Alpaslan Demir
    Defence Technology, 2021, 17 (02) : 657 - 670
  • [32] Automated integration of real-time and non-real-time defense systems
    Dalkiran, Emre
    Onel, Tolga
    Topcu, Okan
    Demir, Kadir Alpaslan
    DEFENCE TECHNOLOGY, 2021, 17 (02) : 657 - 670
  • [33] INDUSTRIAL REAL-TIME IMAGING-SYSTEMS
    PATRICELLI, F
    CORSO, L
    MATERIALS EVALUATION, 1981, 39 (10) : A17 - A17
  • [34] Security Issues in Industrial Real-Time Systems
    Al-Jarad, Talhah
    Al Madani, Basem
    2010 THE 3RD INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND INDUSTRIAL APPLICATION (PACIIA2010), VOL V, 2010, : 357 - 361
  • [35] A REAL-TIME LANGUAGE FOR INDUSTRIAL PROCESS CONTROL
    SCHOEFFLER, JD
    TEMPLE, RH
    PROCEEDINGS OF THE INSTITUTE OF ELECTRICAL AND ELECTRONICS ENGINEERS, 1970, 58 (01): : 98 - +
  • [36] REAL-TIME COMPUTER CONTROL OF INDUSTRIAL PROCESSES
    SHIRRA, JM
    INDUSTRIAL ELECTRONICS, 1967, 5 (01): : 6 - &
  • [37] Response time analysis of systems with real-time and non real-time processing
    Prisching, D
    Rinner, B
    7TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL II, PROCEEDINGS: COMPUTER SCIENCE AND ENGINEERING, 2003, : 124 - 129
  • [38] Real-Time Control of Dense-Time Systems Using Digital-Clocks
    Xu, Songyan
    Kumar, Ratnesh
    IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2010, 55 (09) : 2003 - 2013
  • [39] On the Real-time Receding Horizon Control in Harbor Defense
    Lee, Seungho
    Dullerud, Geir E.
    Polak, Elijah
    2015 AMERICAN CONTROL CONFERENCE (ACC), 2015, : 3601 - 3606
  • [40] SIMULATION AS A CASE TOOL FOR REAL-TIME SYSTEMS
    GROENEWEGEN, L
    SIMULATION APPLIED TO MANUFACTURING ENERGY AND ENVIRONMENTAL STUDIES AND ELECTRONICS AND COMPUTER ENGINEERING, 1989, : 140 - 143