From Tactics to Techniques: A Systematic Attack Modeling for Advanced Persistent Threats in Industrial Control Systems

被引:0
|
作者
Yang, Yunhe [1 ]
Zhang, Mu [1 ]
机构
[1] Univ Utah, Salt Lake City, UT 84112 USA
关键词
D O I
10.1109/EuroSPW59978.2023.00042
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Advanced Persistent Threats (APTs) targeting Industrial Control Systems (ICS) have emerged as a significant challenge in the cybersecurity landscape. These sophisticated attacks can lead to catastrophic consequences on critical infrastructure and services. This paper presents an innovative attack model for ICS-APT attacks designed to provide adequate defense against real-world threats. By examining and analyzing real-world APT attacks against ICS, we identify common and unique characteristics across different attacks, bridging the gap between high-level features and low-level behaviors. We further demonstrate the effectiveness of our proposed model by simulating a false data injection attack on a realistic ICS testbed, utilizing the identified Tactics, Techniques, and Procedures (TTPs) and stages of an APT attack. This simulation enables us to validate the model's accuracy and identify potential challenges in mitigating such complex threats. Our proposed model leverages this systematic understanding of attacker behavior, allowing for accurate characterization of attack patterns. It empowers analysts with the tools and insights needed to counteract and mitigate the risk posed by ICS-APT attacks, contributing to the protection of critical infrastructure and enhancing cybersecurity resilience in the face of evolving threats.
引用
收藏
页码:336 / 344
页数:9
相关论文
共 50 条
  • [21] Cyber security threats in industrial control systems and protection
    Marali, Mounesh
    Sudarsan, Sithu D.
    Gogioneni, Ashok
    PROCEEDINGS OF THE 2019 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING & COMMUNICATION ENGINEERING (ICACCE-2019), 2019,
  • [22] DEFINING ATTACK PATTERNS FOR INDUSTRIAL CONTROL SYSTEMS
    Chan, Raymond
    Chow, Kam-Pui
    Chan, Chun-Fai
    CRITICAL INFRASTRUCTURE PROTECTION XIII, 2019, 570 : 289 - 309
  • [23] Advanced Sensing and Control Techniques for Multi AGV Systems in Shared Industrial Environments
    Sabattini, Lorenzo
    Cardarelli, Elena
    Digani, Valerio
    Secchi, Cristian
    Fantuzzi, Cesare
    Fuerstenberg, Kay
    PROCEEDINGS OF 2015 IEEE 20TH CONFERENCE ON EMERGING TECHNOLOGIES & FACTORY AUTOMATION (ETFA), 2015,
  • [24] Autonomous Attack Mitigation for Industrial Control Systems
    Mern, John
    Hatch, Kyle
    Silva, Ryan
    Hickert, Cameron
    Sookoor, Tamim
    Kochenderfer, Mykel J.
    52ND ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS WORKSHOP VOLUME (DSN-W 2022), 2022, : 28 - 36
  • [25] Modeling Attack Process of Advanced Persistent Threat Using Network Evolution
    Niu, Weina
    Zhang, Xiaosong
    Yang, Guowu
    Chen, Ruidong
    Wang, Dong
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2017, E100D (10): : 2275 - 2286
  • [26] Research on attack modeling of industrial cyber physical systems
    Sun Z.-W.
    Zhang Y.-Q.
    Kongzhi yu Juece/Control and Decision, 2019, 34 (11): : 2323 - 2329
  • [27] Advanced modeling techniques for micromagnetic systems
    Jalil, M. B. A.
    Tan, S. G.
    Cheng, X. Z.
    JOURNAL OF NANOSCIENCE AND NANOTECHNOLOGY, 2007, 7 (01) : 46 - 64
  • [28] A Systematic Literature Review and a Conceptual Framework Proposition for Advanced Persistent Threats (APT) Detection for Mobile Devices Using Artificial Intelligence Techniques
    Al-Kadhimi, Amjed Ahmed
    Singh, Manmeet Mahinderjit
    Khalid, Mohd Nor Akmal
    APPLIED SCIENCES-BASEL, 2023, 13 (14):
  • [29] An Intelligent System to Detect Advanced Persistent Threats in Industrial Internet of Things (I-IoT)
    Javed, Safdar Hussain
    Ahmad, Maaz Bin
    Asif, Muhammad
    Almotiri, Sultan H.
    Masood, Khalid
    Ghamdi, Mohammad A. Al
    ELECTRONICS, 2022, 11 (05)
  • [30] Equipment classification based differential game method for advanced persistent threats in Industrial Internet of Things
    Gan, Chenquan
    Lin, Jiabin
    Huang, Da-Wen
    Zhu, Qingyi
    Tian, Liang
    Jain, Deepak Kumar
    EXPERT SYSTEMS WITH APPLICATIONS, 2024, 236