A security policy hardening framework for Socio-Cyber-Physical Systems

被引:5
|
作者
Ouchani, Samir [1 ]
机构
[1] Ecole Ingn CESI, LINEACT, F-13545 Aix En Provence, France
关键词
Cyber-physical systems; Socio-technical systems; Security policies; Security hardening; Security requirements; Markov decision process; Model checking;
D O I
10.1016/j.sysarc.2021.102259
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Modern systems are heterogeneous inter-operating subsystems of different aspects that can be physical, technical, cybernetics, and even social like agent operators in smart grids or smart transportations. With the social dimension, we name these systems by Socio-Cyber-Physical Systems (SCPS). However, ensuring safety, correctness, and security against attacks that can be either technical or socio-technical based threats is challenging in the presence of components of different aspects. The main difficulty resides on how well security policies are expressed, integrated, and reinforced within a SCPS; in addition to how SCPS are designed and precisely specified. For a better precision, we rely on formal methods to develop a sound approach that models SCPS entities, especially their demeanour and interactions. Further, we formally specify security requirements and policies in SCPS. For security analysis, we develop an algorithm that automatically reinforces the specified security policies and also checks the validity of the requirements for a SCPS model in the presence or absence of attacks. Finally, we validate the approach on a real case scenario of SCPS in the presence of social and technical threats.
引用
收藏
页数:13
相关论文
共 50 条
  • [21] Systems engineering framework for cyber physical security and resilience
    DiMase D.
    Collier Z.A.
    Heffner K.
    Linkov I.
    [J]. Environment Systems and Decisions, 2015, 35 (2) : 291 - 300
  • [22] A PHYSICAL LAYER SECURITY FRAMEWORK FOR COGNITIVE CYBER-PHYSICAL SYSTEMS
    Topal, Ozan Alp
    Demir, Mehmet Ozgun
    Liang, Zekai
    Pusane, Ali Emre
    Dartmann, Guido
    Ascheid, Gerd
    Kurt, Gunes Karabulut
    [J]. IEEE WIRELESS COMMUNICATIONS, 2020, 27 (04) : 32 - 39
  • [23] An integrated socio-cyber-physical system framework to assess responsible digitalisation in agriculture: A first application with Living Labs in Europe
    Metta, Matteo
    Ciliberti, Stefano
    Obi, Chinedu
    Bartolini, Fabio
    Klerkx, Laurens
    Brunori, Gianluca
    [J]. AGRICULTURAL SYSTEMS, 2022, 203
  • [24] A Security Cost Modelling Framework for Cyber-Physical Systems
    Ivki, Igor
    Sailer, Patrizia
    Gouglidis, Antonios
    Mauthe, Andreas
    Tauber, Markus
    [J]. ACM TRANSACTIONS ON INTERNET TECHNOLOGY, 2022, 22 (02)
  • [25] Security Requirements Engineering: A Framework for Cyber-Physical Systems
    Rehman, Shafiq Ur
    Allgaier, Christopher
    Gruhn, Volker
    [J]. 2018 INTERNATIONAL CONFERENCE ON FRONTIERS OF INFORMATION TECHNOLOGY (FIT 2018), 2018, : 315 - 320
  • [26] Between on-site and the clouds: Socio-cyber-physical assemblages in on-farm diversification
    Metta, Matteo
    Dessein, Joost
    Brunori, Gianluca
    [J]. JOURNAL OF RURAL STUDIES, 2024, 105
  • [27] A Modelling & Simulation Based Engineering Approach for Socio-Cyber-Physical Systems From Prospective Studies to Operation, Maintenance and Upgrades
    Thuy Nguyen
    [J]. PROCEEDINGS OF THE 2017 IEEE 14TH INTERNATIONAL CONFERENCE ON NETWORKING, SENSING AND CONTROL (ICNSC 2017), 2017, : 702 - 707
  • [28] An Effective Security Requirements Engineering Framework for Cyber-Physical Systems
    Rehman, Shafiq Ur
    Gruhn, Volker
    [J]. TECHNOLOGIES, 2018, 6 (03):
  • [29] A CYBER-PHYSICAL SECURITY FRAMEWORK FOR RAIL TRANSPORTATION DATA SYSTEMS
    Aziminejad, Arash
    [J]. PROCEEDINGS OF 2022 JOINT RAIL CONFERENCE (JRC2022), 2022,
  • [30] Network steganography based security framework for cyber-physical systems
    Zhang, Xiao-Guang
    Yang, Guang-Hong
    Ren, Xiu-Xiu
    [J]. INFORMATION SCIENCES, 2022, 609 : 963 - 983