Securing critical infrastructures with a cybersecurity digital twin

被引:8
|
作者
Masi, Massimiliano [1 ]
Sellitto, Giovanni Paolo
Aranha, Helder
Pavleska, Tanja [2 ]
机构
[1] Autostrade Per LItalia SpA, IT & Digital Transformat, Via Bergamini, I-00159 Rome, Italy
[2] Jozef Stefan Inst, Lab Open Syst & Networks, Jamova cesta 39, Ljubljana 1000, Slovenia
来源
SOFTWARE AND SYSTEMS MODELING | 2023年 / 22卷 / 02期
关键词
Enterprise architecture; Reference architecture; Cybersecurity view; Digital twin; Threat modeling; Critical infrastructure; Transportation;
D O I
10.1007/s10270-022-01075-0
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
With the diffusion of integrated design environments and tools for visual threat modeling for critical infrastructures, the concept of Digital Twin (DT) is gaining momentum in the field of cybersecurity. Its main use is for enabling attack simulations and evaluation of countermeasures, without causing outage of the physical system. However, the use of a DT is considered foremost as a facilitator of system operation rather than an integral part of its architecture design. In this work, we introduce a specific architecture view in the system representation, called Cybersecurity View. From it, we derive a cybersecurity Digital Twin as part of the security-by-design practice for Industrial Automation and Control Systems used in Critical Infrastructures. Not only this digital twin serves the purpose of simulating cyber-attacks and devising countermeasures, but its design and function are also directly tied to the architecture model of the system for which the cybersecurity requirements are posed. Moreover, this holds regardless of whether the model is generated as part of the development cycle or through an empirical observation of the system as-is. With this, we enable the identification of adequate cybersecurity measures for the system, while improving the overall system design. To demonstrate the practical usefulness of the proposed methodology, its application is illustrated through two real-world use cases: the Cooperative Intelligent Transport System (C-ITS) and the Road tunnel scenario.
引用
收藏
页码:689 / 707
页数:19
相关论文
共 50 条
  • [1] Securing critical infrastructures with a cybersecurity digital twin
    Massimiliano Masi
    Giovanni Paolo Sellitto
    Helder Aranha
    Tanja Pavleska
    Software and Systems Modeling, 2023, 22 : 689 - 707
  • [2] Digital Transformation and Cybersecurity of Critical Infrastructures
    Maglaras, Leandros
    Kantzavelou, Ioanna
    Ferrag, Mohamed Amine
    APPLIED SCIENCES-BASEL, 2021, 11 (18):
  • [3] Editorial: Critical Infrastructures and Cybersecurity
    McPhee, Chris
    Craigen, Dan
    Muegge, Steven
    TECHNOLOGY INNOVATION MANAGEMENT REVIEW, 2015, : 3 - 5
  • [4] CYBERSECURITY ASSESSMENT AND CERTIFICATION OF CRITICAL INFRASTRUCTURES
    Bogdan, Ioana Corina
    Simion, Emil
    UPB Scientific Bulletin, Series C: Electrical Engineering and Computer Science, 2024, 86 (04): : 151 - 166
  • [5] Cybersecurity of Critical Infrastructures: Challenges and Solutions
    Maglaras, Leandros
    Janicke, Helge
    Ferrag, Mohamed Amine
    SENSORS, 2022, 22 (14)
  • [6] Cybersecurity Self-assessment Tools: Evaluating the Importance for Securing Industrial Control Systems in Critical Infrastructures
    Lykou, Georgia
    Anagnostopoulou, Argiro
    Stergiopoulos, George
    Gritzalis, Dimitris
    CRITICAL INFORMATION INFRASTRUCTURES SECURITY (CRITIS 2018), 2019, 11260 : 129 - 142
  • [7] Digital Twins and Extended Reality for Tailoring Better Adapted Cybersecurity Trainings in Critical Infrastructures
    Zehnder, Eloise
    Torgersen, Leanne
    Ask, Torvald F.
    Knox, Benjamin J.
    Morgenstern, Holger
    Gaiser, Jeroen
    Naudet, Yannick
    Perez, Alexeis Garcia
    Stahl, Cristoph
    AUGMENTED COGNITION, PT I, AC 2024, 2024, 14694 : 233 - 252
  • [8] Cybersecurity and Italian critical infrastructures: the return of the state?
    Monteleone, Carla
    Rossi, Rosa
    CONTEMPORARY ITALIAN POLITICS, 2024,
  • [9] Cybersecurity for Critical Infrastructures: Attack and Defense Modeling
    Ten, Chee-Wooi
    Manimaran, Govindarasu
    Liu, Chen-Ching
    IEEE TRANSACTIONS ON SYSTEMS MAN AND CYBERNETICS PART A-SYSTEMS AND HUMANS, 2010, 40 (04): : 853 - 865
  • [10] Securing Smart Cities: A Cybersecurity Perspective on Integrating IoT, AI, and Machine Learning for Digital Twin Creation
    Vempati, Smita
    Nalini, N.
    JOURNAL OF ELECTRICAL SYSTEMS, 2024, 20 (05) : 2817 - 2827