Novel Stealthy Attack and Defense Strategies for Networked Control Systems

08/26/2019
by   Yanbing Mao, et al.
0

This paper studies novel attack and defense strategies, based on a class of stealthy attacks, namely the zero-dynamics attack (ZDA), for multi-agent control systems. ZDA poses a formidable security challenge since its attack signal is hidden in the null-space of the state-space representation of the control system and hence it can evade conventional detection methods. An intuitive defense strategy builds on changing the aforementioned representation via switching through a set of carefully crafted topologies. In this paper, we propose realistic ZDA variations where the attacker is aware of this topology-switching strategy, and hence employs the following policies to avoid detection: (i) "pause (update and resume) attack" before (after) topology switching to evade detection; (ii) cooperate with a concurrent stealthy topology attack that alters network topology at switching times, such that the original ZDA is feasible under the corrupted topology. We first systematically study the proposed ZDA variations, and then develop defense strategies against them under the realistic assumption that the defender has no knowledge of attack starting, pausing, and resuming times and the number of misbehaving agents. Particularly, we characterize conditions for detectability of the proposed ZDA variations, in terms of the network topologies to be maintained, the set of agents to be monitored, and the measurements of the monitored agents that should be extracted, while simultaneously preserving the privacy of the states of the non-monitored agents. We then propose an attack detection algorithm based on the Luenberger observer, using the characterized detectability conditions. We provide numerical simulation results to demonstrate our theoretical findings.

READ FULL TEXT
research
11/30/2017

Strategic Topology Switching for Security-Part II: Detection & Switching Topologies

This two-part paper considers strategic topology switching for the secon...
research
11/30/2017

Strategic Topology Switching for Security-Part I: Consensus & Switching Times

This two-part paper considers strategic topology switching for the secon...
research
12/04/2021

A Game-Theoretic Approach for AI-based Botnet Attack Defence

The new generation of botnets leverages Artificial Intelligent (AI) tech...
research
05/27/2023

Rethinking Adversarial Policies: A Generalized Attack Formulation and Provable Defense in Multi-Agent RL

Most existing works consider direct perturbations of victim's state/acti...
research
04/05/2020

Security Analysis and Fault Detection Against Stealthy Replay Attacks

This paper investigates the security issue of the data replay attacks on...
research
04/17/2023

Training Automated Defense Strategies Using Graph-based Cyber Attack Simulations

We implemented and evaluated an automated cyber defense agent. The agent...
research
06/16/2022

On-the-fly Adaptation of Patrolling Strategies in Changing Environments

We consider the problem of efficient patrolling strategy adaptation in a...

Please sign up or login with your details

Forgot password? Click here to reset