Towards Systematically Deriving Defence Mechanisms from Functional Requirements of Cyber-Physical Systems

07/07/2020
by   Cheah Huei Yoong, et al.
0

The threats faced by cyber-physical systems (CPSs) in critical infrastructure have motivated the development of different attack detection mechanisms, such as those that monitor for violations of invariants, i.e. properties that always hold in normal operation. Given the complexity of CPSs, several existing approaches focus on deriving invariants automatically from data logs, but these can miss possible system behaviours if they are not represented in that data. Furthermore, resolving any design flaws identified in this process is costly, as the CPS is already built. In this position paper, we propose a systematic method for deriving invariants before a CPS is built by analysing its functional requirements. Our method, inspired by the axiomatic design methodology for systems, iteratively analyses dependencies in the design to construct equations and process graphs that model the invariant relationships between CPS components. As a preliminary study, we applied it to the design of a water treatment plant testbed, implementing checkers for two invariants by using decision trees, and finding that they could detect some examples of attacks on the testbed with high accuracy and without false positives. Finally, we explore how developing our method further could lead to more robust CPSs and reduced costs by identifying design weaknesses before systems are implemented.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/14/2022

A Data-Centric Approach to Generate Invariants for a Smart Grid Using Machine Learning

Cyber-Physical Systems (CPS) have gained popularity due to the increased...
research
01/07/2019

Deriving Cyber-security Requirements for Cyber Physical Systems

Today's cyber physical systems (CPS) are not well protected against cybe...
research
09/12/2019

Learning-Guided Network Fuzzing for Testing Cyber-Physical System Defences

The threat of attack faced by cyber-physical systems (CPSs), especially ...
research
01/03/2018

Learning from Mutants: Using Code Mutation to Learn and Monitor Invariants of a Cyber-Physical System

Cyber-physical systems (CPS) consist of sensors, actuators, and controll...
research
05/28/2020

Active Fuzzing for Testing and Securing Cyber-Physical Systems

Cyber-physical systems (CPSs) in critical infrastructure face a pervasiv...
research
05/22/2021

Adversarial Attacks and Mitigation for Anomaly Detectors of Cyber-Physical Systems

The threats faced by cyber-physical systems (CPSs) in critical infrastru...
research
07/08/2022

Decision Trees for Analyzing Influences on the Accuracy of Indoor Localization Systems

Absolute position accuracy is the key performance criterion of an Indoor...

Please sign up or login with your details

Forgot password? Click here to reset