Quantitative Measurement of Cyber Resilience: Modeling and Experimentation

03/28/2023
by   Michael J. Weisman, et al.
0

Cyber resilience is the ability of a system to resist and recover from a cyber attack, thereby restoring the system's functionality. Effective design and development of a cyber resilient system requires experimental methods and tools for quantitative measuring of cyber resilience. This paper describes an experimental method and test bed for obtaining resilience-relevant data as a system (in our case – a truck) traverses its route, in repeatable, systematic experiments. We model a truck equipped with an autonomous cyber-defense system and which also includes inherent physical resilience features. When attacked by malware, this ensemble of cyber-physical features (i.e., "bonware") strives to resist and recover from the performance degradation caused by the malware's attack. We propose parsimonious mathematical models to aid in quantifying systems' resilience to cyber attacks. Using the models, we identify quantitative characteristics obtainable from experimental data, and show that these characteristics can serve as useful quantitative measures of cyber resilience.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/09/2023

Mathematical Modeling of Cyber Resilience

We identify quantitative characteristics of responses to cyber compromis...
research
02/15/2023

An Experimentation Infrastructure for Quantitative Measurements of Cyber Resilience

The vulnerability of cyber-physical systems to cyber attack is well know...
research
02/18/2021

To Improve Cyber Resilience, Measure It

We are not very good at measuring – rigorously and quantitatively – the ...
research
05/21/2021

Resilience in the Cyber World: Definitions, Features and Models

Resilience is a feature that is gaining more and more attention in compu...
research
07/18/2023

Dead Man's PLC: Towards Viable Cyber Extortion for Operational Technology

For decades, operational technology (OT) has enjoyed the luxury of being...
research
02/09/2023

Piecewise Linear and Stochastic Models for the Analysis of Cyber Resilience

We model a vehicle equipped with an autonomous cyber-defense system in a...
research
01/26/2022

Cyber Resilience: by Design or by Intervention?

The term "cyber resilience by design" is growing in popularity. Here, by...

Please sign up or login with your details

Forgot password? Click here to reset