Control Behavior Integrity for Distributed Cyber-Physical Systems

12/20/2018
by   Sridhar Adepu, et al.
0

Cyber-physical control systems, such as industrial control systems (ICS), are increasingly targeted by cyberattacks. Such attacks can potentially cause tremendous damage, affect critical infrastructure or even jeopardize human life when the system does not behave as intended. Cyberattacks, however, are not new and decades of security research have developed plenty of solutions to thwart them. Unfortunately, many of these solutions cannot be easily applied to safety-critical cyber-physical systems. Further, the attack surface of ICS is quite different from what can be commonly assumed in classical IT systems. We present Scadman, a system with the goal to preserve the Control Behavior Integrity (CBI) of distributed cyber-physical systems. By observing the system-wide behavior, the correctness of individual controllers in the system can be verified. This allows Scadman to detect a wide range of attacks against controllers, like programmable logic controller (PLCs), including malware attacks, code-reuse and data-only attacks. We implemented and evaluated Scadman based on a real-world water treatment testbed for research and training on ICS security. Our results show that we can detect a wide range of attacks--including attacks that have previously been undetectable by typical state estimation techniques--while causing no false-positive warning for nominal threshold values.

READ FULL TEXT

page 6

page 9

page 11

research
07/06/2021

Automated Malware Design for Cyber Physical Systems

The design of attacks for cyber physical systems is critical to assess C...
research
04/30/2018

Checking is Believing: Event-Aware Program Anomaly Detection in Cyber-Physical Systems

Securing cyber-physical systems (CPS) against malicious attacks is of pa...
research
02/08/2020

BLCS: Brain-Like based Distributed Control Security in Cyber Physical Systems

Cyber-physical system (CPS) has operated, controlled and coordinated the...
research
02/19/2023

Qualification of Proof Assistants, Checkers, and Generators: Where Are We and What Next?

Cyber-physical systems, such as learning robots and other autonomous sys...
research
06/15/2021

Code Integrity Attestation for PLCs using Black Box Neural Network Predictions

Cyber-physical systems (CPSs) are widespread in critical domains, and si...
research
10/25/2021

Anomaly-Based Intrusion Detection System for Cyber-Physical System Security

Over the past decade, industrial control systems have experienced a mass...
research
05/22/2021

Runtime Enforcement of Programmable Logic Controllers

With the advent of Industry 4.0, industrial facilities and critical infr...

Please sign up or login with your details

Forgot password? Click here to reset