Cybersecurity · 2021 · 16 citations · 48 references
Cps TestbedsEngineeringHigh-level Cps DesignVerificationComputer-aided VerificationSystem-level DesignModel CheckingSoftware AnalysisFormal VerificationCps DesignHardware SecurityReliability EngineeringMechanical VerificationCyber MonitoringSystems EngineeringCritical SystemCps SecurityRuntime VerificationComputer EngineeringComputer ScienceCyber Physical SystemsAxiomatic Design PrinciplesAutomated ReasoningFormal MethodsControl System SecurityFunctional Verification
Abstract Cyber-physical systems (CPSs) in critical infrastructure face serious threats of attack, motivating research into a wide variety of defence mechanisms such as those that monitor for violations of invariants , i.e. logical properties over sensor and actuator states that should always be true. Many approaches for identifying invariants attempt to do so automatically, typically using data logs, but these can miss valid system properties if relevant behaviours are not well-represented in the data. Furthermore, as the CPS is already built, resolving any design flaws or weak points identified through this process is costly. In this paper, we propose a systematic method for deriving invariants from an analysis of a CPS design , based on principles of the axiomatic design methodology from design science. Our method iteratively decomposes a high-level CPS design to identify sets of dependent design parameters (i.e. sensors and actuators), allowing for invariants and invariant checkers to be derived in parallel to the implementation of the system. We apply our method to the designs of two CPS testbeds, SWaT and WADI, deriving a suite of invariant checkers that are able to detect a variety of single- and multi-stage attacks without any false positives. Finally, we reflect on the strengths and weaknesses of our approach, how it can be complemented by other defence mechanisms, and how it could help engineers to identify and resolve weak points in a design before the controllers of a CPS are implemented.
48
Classification and Regression Trees.
John Van Ryzin, Leo Breiman, Jerome H. Friedman et al. · Journal of the American Statistical Association · 1986 · 21K citations
Attacks against process control systems
Álvaro A. Cárdenas, Saurabh Amin, Zong-Syun Lin et al. · 2011 · 684 citations
Chuadhry Mujeeb Ahmed, Venkata Reddy Palleti, Aditya P. Mathur · 2017 · 437 citations
Anomaly Detection in Cyber Physical Systems Using Recurrent Neural Networks
Jonathan Goh, Sridhar Adepu, Marcus Chun Jin Tan et al. · 2017 · 385 citations