Assessing Cyber-Physical Security in Industrial Control Systems

11/21/2019
by   Martín Barrère, et al.
0

Over the last years, Industrial Control Systems (ICS) have become increasingly exposed to a wide range of cyber-physical threats. Efficient models and techniques able to capture their complex structure and identify critical cyber-physical components are therefore essential. AND/OR graphs have proven very useful in this context as they are able to semantically grasp intricate logical interdependencies among ICS components. However, identifying critical nodes in AND/OR graphs is an NP-complete problem. In addition, ICS settings normally involve various cyber and physical security measures that simultaneously protect multiple ICS components in overlapping manners, which makes this problem even harder. In this paper, we present an extended security metric based on AND/OR hypergraphs which efficiently identifies the set of critical ICS components and security measures that should be compromised, with minimum cost (effort) for an attacker, in order to disrupt the operation of vital ICS assets. Our approach relies on MAX-SAT techniques, which we have incorporated in META4ICS, a Java-based security metric analyser for ICS. We also provide a thorough performance evaluation that shows the feasibility of our method. Finally, we illustrate our methodology through a case study in which we analyse the security posture of a realistic Water Transport Network (WTN).

READ FULL TEXT

page 1

page 8

page 9

research
05/12/2019

Identifying Security-Critical Cyber-Physical Components in Industrial Control Systems

In recent years, Industrial Control Systems (ICS) have become an appeali...
research
11/01/2019

MaxSAT Evaluation 2019 – Benchmark: Identifying Security-Critical Cyber-Physical Components in Weighted AND/OR Graphs

This paper presents a MaxSAT benchmark focused on identifying critical n...
research
10/25/2021

Anomaly-Based Intrusion Detection System for Cyber-Physical System Security

Over the past decade, industrial control systems have experienced a mass...
research
08/28/2018

Synergistic Security for the Industrial Internet of Things: Integrating Redundancy, Diversity, and Hardening

As the Industrial Internet of Things (IIot) becomes more prevalent in cr...
research
09/12/2018

Distorting an Adversary's View in Cyber-Physical Systems

In Cyber-Physical Systems (CPSs), inference based on communicated data i...
research
06/28/2021

Chaos Engineering for Enhanced Resilience of Cyber-Physical Systems

Cyber-physical systems (CPS) incorporate the complex and large-scale eng...
research
10/10/2020

A Distributed Hierarchy Framework for Enhancing Cyber Security of Control Center Applications

Recent cyber-attacks on power grids highlight the necessity to protect t...

Please sign up or login with your details

Forgot password? Click here to reset