A Framework for Attack-Resilient Industrial Control Systems: Attack Detection and Controller Reconfiguration

被引:93
|
作者
Paridari, Kaveh [1 ,2 ]
O'Mahony, Niamh [3 ]
Mady, Alie El-Din [4 ]
Chabukswar, Rohan [4 ]
Boubekeur, Menouer [4 ]
Sandberg, Henrik [1 ,2 ]
机构
[1] KTH Royal Inst Technol, ACCESS Linnaeus Ctr, S-11428 Stockholm, Sweden
[2] KTH Royal Inst Technol, Dept Automat Control, S-11428 Stockholm, Sweden
[3] Dell EMC Res Europe, Cork, Ireland
[4] United Technol Res Ctr, Cork, Ireland
基金
瑞典研究理事会;
关键词
Artifical intelligence; building management systems; cyber-physical security; energy management; industrial control; knowledge-based systems; resilient control; SCADA systems; security analytics; stability; virtual sensor; FAULT-DIAGNOSIS;
D O I
10.1109/JPROC.2017.2725482
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Most existing industrial control systems (ICSs), such as building energy management systems (EMSs), were installed when potential security threats were only physical. With advances in connectivity, ICSs are now, typically, connected to communications networks and, as a result, can be accessed remotely. This extends the attack surface to include the potential for sophisticated cyber attacks, which can adversely impact ICS operation, resulting in service interruption, equipment damage, safety concerns, and associated financial implications. In this work, a novel cyber-physical security framework for ICSs is proposed, which incorporates an analytics tool for attack detection and executes a reliable estimation-based attack-resilient control policy, whenever an attack is detected. The proposed framework is adaptable to already implemented ICS and the stability and optimal performance of the controlled system under attack has been proved. The performance of the proposed framework is evaluated using a reduced order model of a real EMS site and simulated attacks.
引用
收藏
页码:113 / 128
页数:16
相关论文
共 50 条
  • [41] Attack-resilient framework for wind power forecasting against civil and adversarial attacks
    Akter, Khadija
    Rahman, M. A.
    Islam, Md. Rashidul
    Sheikh, Md. Rafiqul Islam
    Hossain, M. J.
    ELECTRIC POWER SYSTEMS RESEARCH, 2025, 238
  • [42] Adaptive attack-resilient control for Markov jump system with additive attacks
    He, Hangfeng
    Qi, Wenhai
    Liu, Zhitao
    Wang, Maoli
    NONLINEAR DYNAMICS, 2021, 103 (02) : 1585 - 1598
  • [43] Attack-Resilient Supervisory Control under Energy-Bounded Attacks
    Yao, Jingshi
    Li, Shaoyuan
    Yin, Xunyuan
    Yin, Xiang
    IFAC PAPERSONLINE, 2023, 56 (02): : 9624 - 9629
  • [44] An attack-resilient distributed energy management strategy for integrated energy systems
    Li, Tong
    Sun, Feng
    Chen, Jian
    Wang, Lei
    Yang, Zhibin
    Liu, Ruitong
    Qi, Jun
    FRONTIERS IN ENERGY RESEARCH, 2024, 11
  • [45] Attack-resilient Estimation of Switched Nonlinear Cyber-Physical Systems
    Kim, Hunmin
    Guo, Pinyao
    Zhu, Minghui
    Liu, Peng
    2017 AMERICAN CONTROL CONFERENCE (ACC), 2017, : 4328 - 4333
  • [46] Adaptive attack-resilient control for Markov jump system with additive attacks
    Hangfeng He
    Wenhai Qi
    Zhitao Liu
    Maoli Wang
    Nonlinear Dynamics, 2021, 103 : 1585 - 1598
  • [47] GANTouch: An Attack-Resilient Framework for Touch-Based Continuous Authentication System
    Agrawal, Mohit
    Mehrotra, Pragyan
    Kumar, Rajesh
    Shah, Rajiv Ratn
    IEEE TRANSACTIONS ON BIOMETRICS, BEHAVIOR, AND IDENTITY SCIENCE, 2022, 4 (04): : 533 - 543
  • [48] Attack detection/prevention system against cyber attack in industrial control systems
    Yilmaz, Ercan Nurcan
    Gonen, Serkan
    COMPUTERS & SECURITY, 2018, 77 : 94 - 105
  • [49] Dynamic Attack-Resilient Routing in Software Defined Networks
    Mohan, Purnima Murali
    Gurusamy, Mohan
    Lim, Teng Joon
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2018, 15 (03): : 1146 - 1160
  • [50] An Attack-Resilient Cooperative Control Strategy of Multiple Distributed Generators in Distribution Networks
    Liu, Yun
    Xin, Huanhai
    Qu, Zhihua
    Gan, Deqiang
    IEEE TRANSACTIONS ON SMART GRID, 2016, 7 (06) : 2923 - 2932