Defense as a Service Cloud for Cyber-Physical Systems

被引:8
|
作者
Azab, Mohamed [1 ]
Eltoweissy, Mohamed [2 ,3 ,4 ]
机构
[1] Virginia Tech, Bradley Dept Elect & Comp Engn, Blacksburg, VA 24061 USA
[2] Pacific Northwest Natl Lab, Richland, WA USA
[3] Virginia Tech, Bradley Dept ECE, Blacksburg, VA USA
[4] Univ Arizona, ECE Dept, Tucson, AZ 85721 USA
关键词
Cyber Physical Systems; Security; Resilience; Cloud Computing; Autonomic Management;
D O I
10.4108/icst.collaboratecom.2011.247118
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Modernizing our critical infrastructure often involves upgrades with Cyber-Physical Systems (CPS) to enhance efficiency, safety and reliability. New security and resilience requirements and challenges arise given the mission- and time-critical nature of CPS applications. These applications are always targeted by sophisticated persistent attacks exploiting potential cyber-physical integration vulnerabilities. In this paper, we present CyPhyCARD (Cooperative Autonomous Resilient Defense "CARD" platform for Cyber Physical Systems) as a resilient and secure defense cloud. The foundation of CyPhyCARD is our Cell-Oriented Architecture (COA) that enables distributed, dynamically configurable, and runtime-programmable platforms. COA comprises composable intrinsically resilient, active components termed "Cells" that dynamically manage heterogeneous resources and executable software code variants to execute CyPhyCARD defense missions. CyPhyCARD uses our generic Evolutionary Sensory system (EvoSense) to circulate context-driven, functionally customizable sensors and effectors through the target of defense. EvoSense provides cooperative autonomous control and sharing amongst interconnected defense service providers (CyPhyCARD) and/or their target of defense to enhance attack detection and deterrence. Further, CyPhyCARD uses our ChameleonSoft system to secure its infrastructure of cells. ChameleonSoft is a multidimensional software diversity system that autonomously induces runtime confusion and diffusion thereby, in effect, encrypting the spatiotemporal software behavior and realizing a moving target defense. Both EvoSense and ChameleonSoft are built using the COA. CyPhyCARD is designed to increase the cost for the attacker at all times through persistently asymmetric operations achieved, in part, using a moving target defense construction and automated recovery provided by ChameleonSoft; rabid global attack detection and mitigation through EvoSense; and Operation resilience in presence of attacks using attack containment and honeypots defense missions. We demonstrate, using an attack scenario, how our proposed solution reacts to threats targeting CyPhyCARD and/or its target of defense systems.
引用
收藏
页码:392 / 401
页数:10
相关论文
共 50 条
  • [1] Semantic Cyber-physical Cloud Systems
    Beres, Adela
    [J]. 2017 5TH INTERNATIONAL SYMPOSIUM ON DIGITAL FORENSIC AND SECURITY (ISDFS), 2017,
  • [2] Cloud-based cyber-physical systems in manufacturing Cloud-based cyber-physical systems in manufacturing
    Majstorovic, Vidosav D.
    [J]. PRODUCTION PLANNING & CONTROL, 2020, 31 (07) : 611 - 612
  • [3] Optimal Defense and Control for Cyber-Physical Systems
    Niu, Haifeng
    Jagannathan, S.
    [J]. 2015 IEEE SYMPOSIUM SERIES ON COMPUTATIONAL INTELLIGENCE (IEEE SSCI), 2015, : 634 - 639
  • [4] Cyber-Physical Systems in Manufacturing and Service Systems
    Chang, Qing
    Gao, Robert
    Lei, Yong
    Wang, Lihui
    Wu, Changxu
    [J]. MATHEMATICAL PROBLEMS IN ENGINEERING, 2015, 2015
  • [5] Process execution in Cyber-Physical Systems using cloud and Cyber-Physical Internet services
    Bordel, Borja
    Alcarria, Ramon
    Sanchez de Rivera, Diego
    Robles, Tomas
    [J]. JOURNAL OF SUPERCOMPUTING, 2018, 74 (08): : 4127 - 4169
  • [6] Process execution in Cyber-Physical Systems using cloud and Cyber-Physical Internet services
    Borja Bordel
    Ramón Alcarria
    Diego Sánchez de Rivera
    Tomás Robles
    [J]. The Journal of Supercomputing, 2018, 74 : 4127 - 4169
  • [7] Energy Management for Cyber-Physical Cloud Systems
    Kumar, Neeraj
    Vasilakos, Athanasios V.
    Choo, Kim-Kwang Raymond
    Yang, Laurence T.
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 105 : 754 - 756
  • [8] Architecture of Cyber-Physical Systems Based on Cloud
    Luo, Shaojie
    Zhang, Lichen
    Guo, Nannan
    [J]. 2019 IEEE 5TH INTL CONFERENCE ON BIG DATA SECURITY ON CLOUD (BIGDATASECURITY) / IEEE INTL CONFERENCE ON HIGH PERFORMANCE AND SMART COMPUTING (HPSC) / IEEE INTL CONFERENCE ON INTELLIGENT DATA AND SECURITY (IDS), 2019, : 251 - 257
  • [9] A Moving Target Defense for Securing Cyber-Physical Systems
    Griffioen, Paul
    Weerakkody, Sean
    Sinopoli, Bruno
    [J]. IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2021, 66 (05) : 2016 - 2031
  • [10] Integrated Security Threats and Defense of Cyber-physical Systems
    Liu, Ting
    Tian, Jue
    Wang, Jia-Zhou
    Wu, Hong-Yu
    Sun, Li-Min
    Zhou, Ya-Dong
    Shen, Chao
    Guan, Xiao-Hong
    [J]. Zidonghua Xuebao/Acta Automatica Sinica, 2019, 45 (01): : 5 - 24