A Framework for Attack-Resilient Industrial Control Systems: Attack Detection and Controller Reconfiguration

被引:93
|
作者
Paridari, Kaveh [1 ,2 ]
O'Mahony, Niamh [3 ]
Mady, Alie El-Din [4 ]
Chabukswar, Rohan [4 ]
Boubekeur, Menouer [4 ]
Sandberg, Henrik [1 ,2 ]
机构
[1] KTH Royal Inst Technol, ACCESS Linnaeus Ctr, S-11428 Stockholm, Sweden
[2] KTH Royal Inst Technol, Dept Automat Control, S-11428 Stockholm, Sweden
[3] Dell EMC Res Europe, Cork, Ireland
[4] United Technol Res Ctr, Cork, Ireland
基金
瑞典研究理事会;
关键词
Artifical intelligence; building management systems; cyber-physical security; energy management; industrial control; knowledge-based systems; resilient control; SCADA systems; security analytics; stability; virtual sensor; FAULT-DIAGNOSIS;
D O I
10.1109/JPROC.2017.2725482
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Most existing industrial control systems (ICSs), such as building energy management systems (EMSs), were installed when potential security threats were only physical. With advances in connectivity, ICSs are now, typically, connected to communications networks and, as a result, can be accessed remotely. This extends the attack surface to include the potential for sophisticated cyber attacks, which can adversely impact ICS operation, resulting in service interruption, equipment damage, safety concerns, and associated financial implications. In this work, a novel cyber-physical security framework for ICSs is proposed, which incorporates an analytics tool for attack detection and executes a reliable estimation-based attack-resilient control policy, whenever an attack is detected. The proposed framework is adaptable to already implemented ICS and the stability and optimal performance of the controlled system under attack has been proved. The performance of the proposed framework is evaluated using a reduced order model of a real EMS site and simulated attacks.
引用
收藏
页码:113 / 128
页数:16
相关论文
共 50 条
  • [31] Attack-Resilient Distributed Cooperative Control of Virtually Coupled High-Speed Trains via Topology Reconfiguration
    Xiao, Shunyuan
    Ge, Xiaohua
    Wu, Qing
    IEEE-CAA JOURNAL OF AUTOMATICA SINICA, 2024, 11 (04) : 1066 - 1068
  • [32] ON ATTACK-RESILIENT DISTRIBUTED FORMATION CONTROL IN OPERATOR-VEHICLE NETWORKS
    Zhu, Minghui
    Martinez, Sonia
    SIAM JOURNAL ON CONTROL AND OPTIMIZATION, 2014, 52 (05) : 3176 - 3202
  • [33] Attack-Resilient State Estimation in the Presence of Noise
    Pajic, Miroslav
    Tabuada, Paulo
    Lee, Insup
    Pappas, George J.
    2015 54TH IEEE CONFERENCE ON DECISION AND CONTROL (CDC), 2015, : 5827 - 5832
  • [34] Observer-based attack-resilient control for linear systems against FDI attacks on communication links from controller to actuators
    Xie, Chun-Hua
    Yang, Guang-Hong
    INTERNATIONAL JOURNAL OF ROBUST AND NONLINEAR CONTROL, 2018, 28 (15) : 4382 - 4403
  • [35] Stealthy attacks and attack-resilient interval observers?
    Degue, Kwassi Holali
    Le Ny, Jerome
    Efimov, Denis
    AUTOMATICA, 2022, 146
  • [36] Safeguarding Buyers with Attack-Resilient Reputation Parameters
    Sharma, Neeraj Kumar
    Gaur, Vibha
    Bedi, Punam
    JOURNAL OF THEORETICAL AND APPLIED ELECTRONIC COMMERCE RESEARCH, 2016, 11 (01): : 46 - 66
  • [37] Attack-Resilient Pulse-Coupled Synchronization
    Wang, Zhenqian
    Wang, Yongqiang
    IEEE TRANSACTIONS ON CONTROL OF NETWORK SYSTEMS, 2019, 6 (01): : 338 - 351
  • [38] A FDI Attack-Resilient Distributed Secondary Control Strategy for Islanded Microgrids
    Chen, Yulin
    Qi, Donglian
    Dong, Hangning
    Li, Chaoyong
    Li, Zhenming
    Zhang, Jianliang
    IEEE TRANSACTIONS ON SMART GRID, 2021, 12 (03) : 1929 - 1938
  • [39] Guard: Attack-Resilient Adaptive Load Balancing in Distributed Streaming Systems
    Daghistani, Anas
    Khayat, Mosab
    Felemban, Muhamad
    Aref, Walid G.
    Ghafoor, Arif
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (06) : 4172 - 4186
  • [40] Relaxing Integrity Requirements for Attack-Resilient Cyber-Physical Systems
    Jovanov, Ilija
    Pajic, Miroslav
    IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2019, 64 (12) : 4843 - 4858