VERCASM-CPS: Vulnerability Analysis and Cyber Risk Assessment for Cyber-Physical Systems

被引:7
|
作者
Northern, Bradley [1 ]
Burks, Trey [1 ]
Hatcher, Marlana [1 ]
Rogers, Michael [1 ]
Ulybyshev, Denis [1 ]
机构
[1] Tennessee Technol Univ, Dept Comp Sci, Cookeville, TN 38505 USA
关键词
cyber-physical systems; industrial control systems; data privacy; moving target defense; cyber-risk score;
D O I
10.3390/info12100408
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Since Cyber-Physical Systems (CPS) are widely used in critical infrastructures, it is essential to protect their assets from cyber attacks to increase the level of security, safety and trustworthiness, prevent failure developments, and minimize losses. It is necessary to analyze the CPS configuration in an automatic mode to detect the most vulnerable CPS components and reconfigure or replace them promptly. In this paper, we present a methodology to determine the most secure CPS configuration by using a public database of cyber vulnerabilities to identify the most secure CPS components. We also integrate the CPS cyber risk analysis with a Controlled Moving Target Defense, which either replaces the vulnerable CPS components or re-configures the CPS to harden it, while the vulnerable components are being replaced. Our solution helps to design a more secure CPS by updating the configuration of existing CPS to make them more resilient against cyber attacks. In this paper, we will compare cyber risk scores for different CPS configurations and show that the Windows(R) 10 build 20H2 operating system is more secure than Linux Ubuntu(R) 20.04, while Red Hat(R) Enterprise(R) Linux is the most secure in some system configurations.
引用
收藏
页数:23
相关论文
共 50 条
  • [41] Cyber-Physical Systems
    Lamnabhi-Lagarrigue, Francoise
    Di Benedetto, Maria Domenica
    Schoitsch, Erwin
    ERCIM NEWS, 2014, (97): : 6 - 7
  • [42] Cyber-physical Systems
    Vogel-Heuser, Birgit
    Kowalewski, Stefan
    AT-AUTOMATISIERUNGSTECHNIK, 2013, 61 (10) : 667 - 668
  • [43] Reliability Modeling and Assessment of Cyber Space in Cyber-Physical Power Systems
    He, Ruiwen
    Xie, Haijun
    Deng, Jianhua
    Feng, Teng
    Lai, Loi Lei
    Shahidehpour, Mohammad
    IEEE TRANSACTIONS ON SMART GRID, 2020, 11 (05) : 3763 - 3773
  • [44] Analysis of security in cyber-physical systems
    CHEN Jie
    ZHANG Fan
    SUN Jian
    Science China(Technological Sciences), 2017, (12) : 1975 - 1977
  • [45] Analysis of security in cyber-physical systems
    Chen, Jie
    Zhang, Fan
    Sun, Jian
    SCIENCE CHINA-TECHNOLOGICAL SCIENCES, 2017, 60 (12) : 1975 - 1977
  • [46] Design and Analysis of Cyber-Physical Systems
    Plakhotnikov, Dmitriy P.
    Kotova, Elena E.
    PROCEEDINGS OF THE 2021 IEEE CONFERENCE OF RUSSIAN YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING (ELCONRUS), 2021, : 589 - 593
  • [47] Robustness Analysis of Cyber-Physical systems based on Discrete Timed Cyber-Physical Models
    Hsieh, Fu-Shiung
    2021 IEEE WORLD AI IOT CONGRESS (AIIOT), 2021, : 250 - 254
  • [48] Reliability Assessment of Cyber-Physical Distribution Systems Considering Cyber Disturbances
    Zhou, Buxiang
    Cai, Yating
    Zang, Tianlei
    Wu, Jiale
    Sun, Binjie
    Chen, Shi
    APPLIED SCIENCES-BASEL, 2023, 13 (06):
  • [49] Analysis of security in cyber-physical systems
    CHEN Jie
    ZHANG Fan
    SUN Jian
    Science China(Technological Sciences), 2017, 60 (12) : 1975 - 1977
  • [50] Reliability Analysis of Cyber-Physical Systems
    Obychaiko, D. S.
    Shikhin, V. A.
    Chrysostomou, George
    2018 INTERNATIONAL CONFERENCE ON INDUSTRIAL ENGINEERING, APPLICATIONS AND MANUFACTURING (ICIEAM), 2018,