A non-intrusive runtime enforcement on behaviors of open supervisory control and data acquisition systems

被引:1
|
作者
Mao, Yan-Fang [1 ,2 ]
Zhang, Yang [1 ]
Chen, Jun-Liang [1 ]
机构
[1] Beijing Univ Posts & Telecommun, State Key Lab Networking & Switching Technol, Beijing 100876, Peoples R China
[2] Zhengzhou Univ Light Ind, Software Engn Coll, Zhengzhou, Peoples R China
基金
中国博士后科学基金; 中国国家自然科学基金;
关键词
Supervisory control and data acquisition; Internet of things service; runtime monitoring; runtime enforcement; semantic reconstruction;
D O I
10.1177/1550147716664231
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the development of Web-based services and related technologies, today's supervisory control and data acquisition is regarded as an Internet of things service system for industrial infrastructures and ensuring open supervisory control and data acquisition systems in a secure and safe state at runtime becomes a critical and mandatory requirement. Existing host-based monitoring automata are vulnerable because "inside" malware may compromise and subvert the monitoring mechanism itself, and the virtual machine-based monitoring cannot provide observable running traces of the protected services because of the isolation between these services and the runtime monitor. In this article, we propose a non-intrusive solution to guarantee runtime state of open supervisory control and data acquisition systems. In this solution, the running traces of protected services are obtained in an "out-of-box" framework, which is built on abstract execution of network events on Internet of things service models and virtual machine semantic reconstruction of the protected services. In addition, a property checking procedure is employed to check the states of physical devices in advance to guarantee the runtime behavior in compliance with the security policies of open supervisory control and data acquisition systems. In such a way, the solution provides a fine-grained protection for open supervisory control and data acquisition systems and physical devices running in safety.
引用
收藏
页数:15
相关论文
共 50 条
  • [31] Holonic supervisory control and data acquisition
    Yu, HB
    Guo, W
    Liu, K
    [J]. ISTM/2005: 6th International Symposium on Test and Measurement, Vols 1-9, Conference Proceedings, 2005, : 777 - 780
  • [32] SUPERVISORY CONTROL AND DATA ACQUISITION FOR PROCESS
    HARRISON, B
    RUZICKA, J
    [J]. SUGAR JOURNAL, 1985, 48 (01): : 5 - 9
  • [33] ICSPatch: Automated Vulnerability Localization and Non-Intrusive Hotpatching in Industrial Control Systems using Data Dependence Graphs
    Rajput, Prashant Hari Narayan
    Doumanidis, Constantine
    Maniatakos, Michail
    [J]. PROCEEDINGS OF THE 32ND USENIX SECURITY SYMPOSIUM, 2023, : 6861 - 6876
  • [34] Securing Supervisory Control and Data Acquisition Systems: Factors and Research Direction
    Ayaburi, Emmanuel
    Sobrevinas, Lucia
    [J]. AMCIS 2015 PROCEEDINGS, 2015,
  • [36] Mobile Communication Solutions for Remote Data Acquisition, Supervisory and Control Systems
    Jurian, Mariana
    Lita, Ioan
    Visan, Daniel Alexandru
    [J]. PROCEEDINGS OF THE 8TH WSEAS INTERNATIONAL CONFERENCE ON APPLIED INFORMATICS AND COMMUNICATIONS, PTS I AND II: NEW ASPECTS OF APPLIED INFORMATICS AND COMMUNICATIONS, 2008, : 229 - +
  • [37] Non-Intrusive Dynamic Profiler for Multicore Embedded Systems
    Sargur, Sudarshan
    Lysecky, Roman
    [J]. 2017 22ND ASIA AND SOUTH PACIFIC DESIGN AUTOMATION CONFERENCE (ASP-DAC), 2017, : 500 - 505
  • [38] Supervisory control and data acquisition for Standalone Hybrid Power Generation Systems
    Lee, Jaekyu
    Lee, Sangyub
    Cho, Hyeonjoong
    Ham, Kyung Sun
    Hong, Jiman
    [J]. SUSTAINABLE COMPUTING-INFORMATICS & SYSTEMS, 2018, 20 : 141 - 154
  • [39] Non-intrusive model combination for learning dynamical systems
    Wu, Shiqi
    Chamoin, Ludovic
    Li, Qianxiao
    [J]. PHYSICA D-NONLINEAR PHENOMENA, 2024, 463
  • [40] Equipment- and Time-Constrained Data Acquisition Protocol for Non-Intrusive Appliance Load Monitoring
    Koasidis, Konstantinos
    Marinakis, Vangelis
    Doukas, Haris
    Doumouras, Nikolaos
    Karamaneas, Anastasios
    Nikas, Alexandros
    [J]. ENERGIES, 2023, 16 (21)