Multimodel-Based Incident Prediction and Risk Assessment in Dynamic Cybersecurity Protection for Industrial Control Systems

被引:91
|
作者
Zhang, Qi [1 ]
Zhou, Chunjie [1 ]
Xiong, Naixue [2 ]
Qin, Yuanqing [1 ]
Li, Xuan [1 ]
Huang, Shuang [1 ]
机构
[1] Huazhong Univ Sci & Technol, Sch Automat, Minist Educ Image Proc & Intelligent Control, Key Lab, Wuhan 430074, Peoples R China
[2] Southwestern Oklahoma State Univ, Dept Business & Comp Sci, Weatherford, OK 73096 USA
基金
中国国家自然科学基金;
关键词
Bayesian network; cybersecurity; incident prediction; industrial control system (ICS); multiple models; risk assessment; BAYESIAN NETWORKS; BELIEF NETWORKS; FAULT-TREES; SECURITY; SCADA; INFERENCE; NETS;
D O I
10.1109/TSMC.2015.2503399
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Currently, an increasing number of information/communication technologies are adopted into the industrial control systems (ICSs). While these IT technologies offer high flexibility, interoperability, and convenient administration of ICSs, they also introduce cybersecurity risks. Dynamic cybersecurity risk assessment is a key foundational component of security protection. However, due to the characteristics of ICSs, the risk assessment for IT systems is not completely applicable for ICSs. In this paper, through the consideration of the characteristics of ICSs, a targeted multilevel Bayesian network containing attack, function, and incident models is proposed. Following this proposal, a novel multimodel-based hazardous incident prediction approach is designed. On this basis, a dynamic cybersecurity risk assessment approach, which has the ability to assess the risk caused by unknown attacks, is also devised. Furthermore, to improve the accuracy of the risk assessment, which may be reduced by the redundant accumulation of overlaps amongst different consequences, a unified consequence quantification method is presented. Finally, to verify the effectiveness of the proposed approach, a simulation of a simplified chemical reactor control system is conducted in MATLAB. The simulation results can clearly demonstrate that the proposed approach has the ability to dynamically calculate the cybersecurity risk of ICSs in a timely manner. Additionally, the result of a different comparative simulation shows that our approach has the ability to assess the risk caused by unknown attacks.
引用
收藏
页码:1429 / 1444
页数:16
相关论文
共 50 条
  • [1] A Risk-Based Dynamic Decision-Making Approach for Cybersecurity Protection in Industrial Control Systems
    Qin, Yuanqing
    Zhang, Qi
    Zhou, Chunjie
    Xiong, Naixue
    [J]. IEEE TRANSACTIONS ON SYSTEMS MAN CYBERNETICS-SYSTEMS, 2020, 50 (10): : 3863 - 3870
  • [2] Extended multilevel flow model-based dynamic risk assessment for cybersecurity protection in industrial production systems
    Zhu, Qianxiang
    Qin, Yuanqing
    Zhou, Chunjie
    Gao, Weiwei
    [J]. INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2018, 14 (06):
  • [3] Cybersecurity Risk Assessment Strategies in Industrial Control Systems
    Gale, Tim
    [J]. CHEMICAL ENGINEERING PROGRESS, 2023, 119 (12) : 35 - 39
  • [4] Association Analysis-Based Cybersecurity Risk Assessment for Industrial Control Systems
    Qin, Yuanqing
    Peng, Yuan
    Huang, Kaixing
    Zhou, Chunjie
    Tian, Yu-Chu
    [J]. IEEE SYSTEMS JOURNAL, 2021, 15 (01): : 1423 - 1432
  • [5] A Dynamic Cybersecurity Protection Method based on Software-defined Networking for Industrial Control Systems
    Wang, Fang
    Qi, Weimin
    Qian, Tonghui
    [J]. 2019 CHINESE AUTOMATION CONGRESS (CAC2019), 2019, : 1831 - 1834
  • [6] A Fuzzy Probability Bayesian Network Approach for Dynamic Cybersecurity Risk Assessment in Industrial Control Systems
    Zhang, Qi
    Zhou, Chunjie
    Tian, Yu-Chu
    Xiong, Naixue
    Qin, Yuanqing
    Hu, Bowen
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2018, 14 (06) : 2497 - 2506
  • [7] Design and Analysis of Multimodel-Based Anomaly Intrusion Detection Systems in Industrial Process Automation
    Zhou, Chunjie
    Huang, Shuang
    Xiong, Naixue
    Yang, Shuang-Hua
    Li, Huiyun
    Qin, Yuanqing
    Li, Xuan
    [J]. IEEE TRANSACTIONS ON SYSTEMS MAN CYBERNETICS-SYSTEMS, 2015, 45 (10): : 1345 - 1360
  • [8] Intelligent Risk- Based Cybersecurity Protection for Industrial Systems Control-A Feasibility Study
    Houmb, S. H.
    Iversen, F.
    Ewald, R.
    Faeraas, E.
    [J]. SPE JOURNAL, 2023, 28 (06): : 3272 - 3279
  • [9] Multimodel-based techniques for the identification and adaptive control of delayed multi-input multi-output systems
    Herrera, J.
    Ibeas, A.
    Alcantara, S.
    de la Sen, M.
    [J]. IET CONTROL THEORY AND APPLICATIONS, 2011, 5 (01): : 188 - 202
  • [10] Asset-Based Dynamic Impact Assessment of Cyberattacks for Risk Analysis in Industrial Control Systems
    Li, Xuan
    Zhou, Chunjie
    Tian, Yu-Chu
    Xiong, Naixue
    Qin, Yuanqing
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2018, 14 (02) : 608 - 618