A Methodological Approach to Securing Cyber-Physical Systems for Critical Infrastructures

被引:0
|
作者
Calabro, Antonello [1 ]
Cambiaso, Enrico [2 ]
Cheminod, Manuel [2 ]
Bertolotti, Ivan Cibrario [2 ]
Durante, Luca [2 ]
Forestiero, Agostino [3 ]
Lombardi, Flavio [4 ]
Manco, Giuseppe [3 ]
Marchetti, Eda [1 ]
Orlando, Albina [4 ]
Papuzzo, Giuseppe [3 ]
机构
[1] ISTI CNR, Consiglio Nazl Ric, Ist Sci & Tecnol Informaz, I-56124 Pisa, Italy
[2] Consiglio Nazl Ric CNR, Ist Elettron & Ingn Informaz & Telecomunicaz IEII, I-10129 Turin, Italy
[3] Consiglio Nazl Ric CNR, Ist Calcolo & Reti ad Alte Prestazioni ICAR, I-87036 Arcavacata Di Rende, Italy
[4] CNR, Ist Applicazioni Calcolo, I-00185 Rome, Italy
关键词
cybersecurity; monitoring; firewalling; rule distribution; slow DoS attack; denial of service; industrial security; critical infrastructure protection; security investments;
D O I
10.3390/fi16110418
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Modern ICT infrastructures, i.e., cyber-physical systems and critical infrastructures relying on interconnected IT (Information Technology)- and OT (Operational Technology)-based components and (sub-)systems, raise complex challenges in tackling security and safety issues. Nowadays, many security controls and mechanisms have been made available and exploitable to solve specific security needs, but, when dealing with very complex and multifaceted heterogeneous systems, a methodology is needed on top of the selection of each security control that will allow the designer/maintainer to drive her/his choices to build and keep the system secure as a whole, leaving the choice of the security controls to the last step of the system design/development. This paper aims at providing a comprehensive methodological approach to design and preliminarily implement an Open Platform Architecture (OPA) to secure the cyber-physical systems of critical infrastructures. Here, the Open Platform Architecture (OPA) depicts how an already existing or under-design target system (TS) can be equipped with technologies that are modern or currently under development, to monitor and timely detect possibly dangerous situations and to react in an automatic way by putting in place suitable countermeasures. A multifaceted use case (UC) that is able to show the OPA, starting from the security and safety requirements to the fully designed system, will be developed step by step to show the feasibility and the effectiveness of the proposed methodology.
引用
收藏
页数:19
相关论文
共 50 条
  • [1] A new inexpensive approach for securing cyber-physical systems
    Kanafi, Faraz Safarpour
    Arnarson, Halldor
    Bremdal, Bernt Arild
    2022 IEEE/SICE INTERNATIONAL SYMPOSIUM ON SYSTEM INTEGRATION (SII 2022), 2022, : 790 - 796
  • [2] Big Data Platform for Integrated Cyber and Physical Security of Critical Infrastructures for the Financial Sector Critical Infrastructures as Cyber-Physical Systems
    Troiano, Ernesto
    Soldatos, John
    Polyviou, Ariana
    Polyviou, Andreas
    Mamelli, Alessandro
    Drakoulis, Dimitris
    11TH INTERNATIONAL CONFERENCE ON MANAGEMENT OF DIGITAL ECOSYSTEMS (MEDES), 2019, : 262 - 269
  • [3] Securing the Hardware of Cyber-Physical Systems
    Regazzoni, Francesco
    Polian, Ilia
    2017 22ND ASIA AND SOUTH PACIFIC DESIGN AUTOMATION CONFERENCE (ASP-DAC), 2017, : 194 - 199
  • [4] Mapping Cyber-Physical Threats for Critical Infrastructures
    Mundt, Michael
    Baier, Harald
    CRITICAL INFORMATION INFRASTRUCTURES SECURITY, CRITIS 2022, 2023, 13723 : 164 - 179
  • [5] Cyber Security for Cyber-Physical Systems in Critical Infrastructures: Bibliometrics Analysis and Future Directions
    Pourmadadkar, Mahdad
    Lezzi, Marianna
    Corallo, Angelo
    IEEE TRANSACTIONS ON ENGINEERING MANAGEMENT, 2024, 71 : 15405 - 15421
  • [6] Design Methodologies for Securing Cyber-Physical Systems
    Al Faruque, Mohammad
    Regazzoni, Francesco
    Pajic, Miroslav
    2015 INTERNATIONAL CONFERENCE ON HARDWARE/SOFTWARE CODESIGN AND SYSTEM SYNTHESIS (CODES+ISSS), 2015, : 30 - 36
  • [7] Advanced Control Strategies for Securing UAV Systems: A Cyber-Physical Approach
    Isaac, Mohammad Sadeq Ale
    Pena, Pablo Flores
    Gifu, Daniela
    Ragab, Ahmed Refaat
    APPLIED SYSTEM INNOVATION, 2024, 7 (05)
  • [8] A Refinement Approach to Analyse Critical Cyber-Physical Systems
    Basile, Davide
    Di Giandomenico, Felicita
    Gnesi, Stefania
    SOFTWARE ENGINEERING AND FORMAL METHODS, SEFM 2017, 2018, 10729 : 267 - 283
  • [9] Estimating Cascading Effects in Cyber-Physical Critical Infrastructures
    Schauer, Stefan
    Grafenauer, Thomas
    Koenig, Sandra
    Warum, Manuel
    Rass, Stefan
    CRITICAL INFORMATION INFRASTRUCTURES SECURITY (CRITIS 2019), 2020, 11777 : 43 - 56
  • [10] Securing Cyber-Physical Systems with Adaptive Commensurate Response
    Zheng, Zhiyuan
    Jin, Shan
    Bettati, Riccardo
    Reddy, A. L. Narasimha
    2017 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2017, : 155 - 163