Association Analysis-Based Cybersecurity Risk Assessment for Industrial Control Systems

被引:20
|
作者
Qin, Yuanqing [1 ]
Peng, Yuan [1 ]
Huang, Kaixing [1 ]
Zhou, Chunjie [1 ]
Tian, Yu-Chu [2 ]
机构
[1] Huazhong Univ Sci & Technol, Sch Artificial Intelligence & Automat, MOE Key Lab Image Proc & Intelligent Control, Wuhan 430074, Peoples R China
[2] Queensland Univ Technol, Sch Elect Engn & Comp Sci, Brisbane, Qld 4001, Australia
来源
IEEE SYSTEMS JOURNAL | 2021年 / 15卷 / 01期
基金
澳大利亚研究理事会; 美国国家科学基金会;
关键词
Risk management; Computer security; Adaptation models; Control systems; Correlation; Data mining; Association network (AN); data driven; industrial cybersecurity; risk assessment; INTERNET;
D O I
10.1109/JSYST.2020.3010977
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the adoption of various information and communication technologies and commercial off-the-shelf components, industrial control systems (ICSs) become highly vulnerable to cyberattacks. Dynamic cybersecurity risk assessment (CSRA) plays a vital role in the security protection of ICSs. To reduce the complexity of the modeling process in the dynamic CSRA, an association analysis-based CSRA approach is proposed in this article. It designs a three-layer association network (AN) to infer the probabilities of security incidents. The parameters of the AN are derived through mining the data of historical attack records. From a distance correlation analysis of the process data of the target system, an association matrix is obtained between the system state variables and the key security variables to quantify the cybersecurity risk of the system. A case study is conducted on a coupling tanks control system to demonstrate the effectiveness and timeliness of the proposed approach.
引用
收藏
页码:1423 / 1432
页数:10
相关论文
共 50 条
  • [1] Cybersecurity Risk Assessment Strategies in Industrial Control Systems
    Gale, Tim
    CHEMICAL ENGINEERING PROGRESS, 2023, 119 (12) : 35 - 39
  • [2] A cybersecurity risk assessment methodology for industrial automation control systems
    Brancati, Francesco
    Mongelli, Diamantea
    Mariotti, Francesco
    Lollini, Paolo
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2025, 24 (02)
  • [3] Multimodel-Based Incident Prediction and Risk Assessment in Dynamic Cybersecurity Protection for Industrial Control Systems
    Zhang, Qi
    Zhou, Chunjie
    Xiong, Naixue
    Qin, Yuanqing
    Li, Xuan
    Huang, Shuang
    IEEE TRANSACTIONS ON SYSTEMS MAN CYBERNETICS-SYSTEMS, 2016, 46 (10): : 1429 - 1444
  • [4] Analysis of Affordance, Time, and Adaptation in the Assessment of Industrial Control System Cybersecurity Risk
    Busby, J. S.
    Green, B.
    Hutchison, D.
    RISK ANALYSIS, 2017, 37 (07) : 1298 - 1314
  • [5] A Fuzzy Probability Bayesian Network Approach for Dynamic Cybersecurity Risk Assessment in Industrial Control Systems
    Zhang, Qi
    Zhou, Chunjie
    Tian, Yu-Chu
    Xiong, Naixue
    Qin, Yuanqing
    Hu, Bowen
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2018, 14 (06) : 2497 - 2506
  • [6] Cybersecurity for industrial automation and control systems
    Haas, Christian
    Bretthauer, Georg
    Beyerer, Jurgen
    AT-AUTOMATISIERUNGSTECHNIK, 2023, 71 (09) : 723 - 725
  • [7] Cybersecurity issues in industrial control systems
    Szabo, Zsolt
    2018 IEEE 16TH INTERNATIONAL SYMPOSIUM ON INTELLIGENT SYSTEMS AND INFORMATICS (SISY 2018), 2018, : 231 - 234
  • [8] Cybersecurity for industrial control systems: A survey
    Bhamare, Deval
    Zolanvari, Maede
    Erbad, Aiman
    Jain, Raj
    Khan, Khaled
    Meskin, Nader
    COMPUTERS & SECURITY, 2020, 89
  • [9] The Cybersecurity Landscape in Industrial Control Systems
    McLaughlin, Stephen
    Konstantinou, Charalambos
    Wang, Xueyang
    Davi, Lucas
    Sadeghi, Ahmad-Reza
    Maniatakos, Michail
    Karri, Ramesh
    PROCEEDINGS OF THE IEEE, 2016, 104 (05) : 1039 - 1057
  • [10] Improving Cybersecurity for Industrial Control Systems
    Graham, James
    Hieb, Jeffrey
    Naber, John
    PROCEEDINGS 2016 IEEE 25TH INTERNATIONAL SYMPOSIUM ON INDUSTRIAL ELECTRONICS (ISIE), 2016, : 618 - 623