Security Monitoring for Industrial Control Systems

被引:4
|
作者
Coletta, Alessio [1 ,2 ,3 ]
Armando, Alessandro [2 ,4 ]
机构
[1] GCSEC Poste Italiane, Rome, Italy
[2] Fdn Bruno Kessler, Trento, Italy
[3] Univ Trento, DISI, Trento, Italy
[4] Univ Genoa, DIBRIS, Genoa, Italy
关键词
Cyber security; Industrial control systems; Intrusion detection systems; Run-time security monitoring; Optimization; SMT;
D O I
10.1007/978-3-319-40385-4_4
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
An Industrial Control System (ICS) is a system of physical entities whose functioning heavily relies on information and communication technology components and infrastructures. ICS are ubiquitous and can be found in a number of safety-critical areas including energy, chemical processes, health-care, aerospace, manufacturing, and transportation. While originally isolated and inherently secure, ICS are recently becoming more and more exposed to cyber attacks (e.g. Stuxnet). Many existing ICS do not feature cyber security protection, with liability issues and high costs in case of incidents. Since existing ICS are normally based on components and protocols that cannot be modified nor updated, redesign is usually not feasible. In this paper we propose a monitoring framework for the run-time verification of ICS. The framework is based on a formal language that supports the precise specification of high-level safety requirements as well as of the relevant threat model, and on a passive monitoring technique that detects and notifies if the system state is close to a critical state.
引用
收藏
页码:48 / 62
页数:15
相关论文
共 50 条
  • [1] Improving Network Security Monitoring for Industrial Control Systems
    Cruz, Tiago
    Barrigas, Jorge
    Proenca, Jorge
    Graziano, Antonio
    Panzieri, Stefano
    Lev, Leonid
    Simoes, Paulo
    [J]. PROCEEDINGS OF THE 2015 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM), 2015, : 878 - 881
  • [2] Security intelligence for industrial control systems
    Amrein, A.
    Angeletti, V.
    Beitler, A.
    Nemet, M.
    Reiser, M.
    Riccetti, S.
    Stoecklin, M. Ph
    Wespi, A.
    [J]. IBM JOURNAL OF RESEARCH AND DEVELOPMENT, 2016, 60 (04)
  • [3] Cyber Security for Industrial Control Systems
    Cunningham, Steve
    [J]. POWER ENGINEERING, 2011, 115 (11) : 142 - +
  • [4] IT SECURITY ASPECTS OF INDUSTRIAL CONTROL SYSTEMS
    Holecko, P.
    Krbilova, I.
    [J]. ADVANCES IN ELECTRICAL AND ELECTRONIC ENGINEERING, 2006, 5 (01) : 136 - 139
  • [5] Survey of Industrial Control Systems Security
    Yang, Ting
    Zhang, Jiayuan
    Huang, Zaiqi
    Chen, Yujie
    Huang, Chenglong
    Zhou, Wei
    Liu, Peng
    Feng, Tao
    Zhang, Yuqing
    [J]. Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2022, 59 (05): : 1035 - 1053
  • [6] A Machine Learning Test Data Set for Continuous Security Monitoring of Industrial Control Systems
    Francia, Guillermo A., III
    [J]. 2017 IEEE 7TH ANNUAL INTERNATIONAL CONFERENCE ON CYBER TECHNOLOGY IN AUTOMATION, CONTROL, AND INTELLIGENT SYSTEMS (CYBER), 2017, : 1043 - 1048
  • [7] Industrial Control Systems Security: What is happening?
    Krotofil, Marina
    Gollmann, Dieter
    [J]. 2013 11TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2013, : 664 - 669
  • [8] Cyber Security Provision for Industrial Control Systems
    Amanowicz, Marek
    Jarmakiewicz, Jacek
    [J]. TRENDS IN ADVANCED INTELLIGENT CONTROL, OPTIMIZATION AND AUTOMATION, 2017, 577 : 611 - 620
  • [9] Industrial Control Systems Security: What is happening?
    Krotofil, Maryna
    Gollmann, Dieter
    [J]. 2013 11TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2013, : 670 - 675
  • [10] The drift of industrial control systems to pseudo security
    Donnelly, Peter
    Abuhmida, Mabrouka
    Tubb, Christopher
    [J]. INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2022, 38