Security Monitoring for Industrial Control Systems

被引:4
|
作者
Coletta, Alessio [1 ,2 ,3 ]
Armando, Alessandro [2 ,4 ]
机构
[1] GCSEC Poste Italiane, Rome, Italy
[2] Fdn Bruno Kessler, Trento, Italy
[3] Univ Trento, DISI, Trento, Italy
[4] Univ Genoa, DIBRIS, Genoa, Italy
关键词
Cyber security; Industrial control systems; Intrusion detection systems; Run-time security monitoring; Optimization; SMT;
D O I
10.1007/978-3-319-40385-4_4
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
An Industrial Control System (ICS) is a system of physical entities whose functioning heavily relies on information and communication technology components and infrastructures. ICS are ubiquitous and can be found in a number of safety-critical areas including energy, chemical processes, health-care, aerospace, manufacturing, and transportation. While originally isolated and inherently secure, ICS are recently becoming more and more exposed to cyber attacks (e.g. Stuxnet). Many existing ICS do not feature cyber security protection, with liability issues and high costs in case of incidents. Since existing ICS are normally based on components and protocols that cannot be modified nor updated, redesign is usually not feasible. In this paper we propose a monitoring framework for the run-time verification of ICS. The framework is based on a formal language that supports the precise specification of high-level safety requirements as well as of the relevant threat model, and on a passive monitoring technique that detects and notifies if the system state is close to a critical state.
引用
收藏
页码:48 / 62
页数:15
相关论文
共 50 条
  • [41] Physical-Layer Security for Industrial Wireless Control Systems
    Pan, Fei
    Pang, Zhibo
    Luvisotto, Michele
    Xiao, Ming
    Wen, Hong
    [J]. IEEE INDUSTRIAL ELECTRONICS MAGAZINE, 2018, 12 (04) : 18 - 27
  • [42] Guest Editorial: Configuration Security for Industrial Automation and Control Systems
    Jolfaei, Alireza
    Jan, Mian Ahmad
    Kant, Krishna
    Usman, Muhammad
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2021, 17 (06) : 4206 - 4209
  • [43] An AutoML-based security defender for industrial control systems
    Vasan, Danish
    Alqahtani, Ebtesam Jubran S.
    Hammoudeh, Mohammad
    Ahmed, Adel F.
    [J]. INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2024, 47
  • [44] Cyber (In-)security of Industrial Control Systems: A Societal Challenge
    Luiijf, Eric
    [J]. COMPUTER SAFETY, RELIABILITY, AND SECURITY, SAFECOMP 2015, 2015, 9337 : 7 - 15
  • [45] Trends of Security Standards and Certification Schemes for Industrial Control Systems
    [J]. Journal of the Institute of Electrical Engineers of Japan, 2022, 142 (04): : 197 - 199
  • [46] Exploration of Quantum Cryptography Security Applications for Industrial Control Systems
    Li, Hengyu
    Dong, Yun
    Zhang, Yusheng
    Wang, Haiping
    [J]. Applied Mathematics and Nonlinear Sciences, 2024, 9 (01)
  • [47] AFMT: Maintaining the safety-security of industrial control systems
    Kumar, Rajesh
    Narra, Bhavesh
    Kela, Rohan
    Singh, Siddhant
    [J]. COMPUTERS IN INDUSTRY, 2022, 136
  • [48] Network Monitoring of Industrial Control Systems: the Lessons of SecurityMatters
    Etalle, Sandro
    [J]. CPS-SPC'19: PROCEEDINGS OF THE ACM WORKSHOP ON CYBER-PHYSICAL SYSTEMS SECURITY & PRIVACY, 2019, : 1 - 1
  • [49] Optimal Deployment of Security Policies: Application to Industrial Control Systems
    Ismail, Ziad
    Leneutre, Jean
    Fourati, Alia
    [J]. 2018 14TH EUROPEAN DEPENDABLE COMPUTING CONFERENCE (EDCC 2018), 2018, : 120 - 127
  • [50] Protection architecture of endogenous safety and security for industrial control systems
    Yaozhong Xin
    [J]. Security and Safety, 2023, 2 (03) : 20 - 28