A Distributed IDS for Industrial Control Systems

被引:4
|
作者
Cruz, Tiago [1 ]
Proenca, Jorge [1 ]
Simoes, Paulo [1 ]
Aubigny, Matthieu [2 ]
Ouedraogo, Moussa [3 ]
Graziano, Antonio [4 ]
Maglaras, Leandros [5 ]
机构
[1] Univ Coimbra, Coimbra, Portugal
[2] iTrust Consulting, Niederanven, Luxembourg
[3] Luxembourg Inst Sci & Technol, Kirchberg, Luxembourg
[4] Selex ES, Rome, Italy
[5] Univ Surrey, Guildford, Surrey, England
关键词
Critical Infrastructure Protection; ICS Security; Information Management; Information Operations; Perception Management;
D O I
10.4018/ijcwt.2014040101
中图分类号
D0 [政治学、政治理论];
学科分类号
0302 ; 030201 ;
摘要
Cyber-threats are one of the most significant problems faced by modern Industrial Control Systems (ICS), such as SCADA (Supervisory Control and Data Acquisition) systems, as the vulnerabilities of ICS technology become serious threats that can ultimately compromise human lives. This situation demands a domainspecific approach to cyber threat detection within ICS, which is one of the most important contributions of the CockpitCI FP7 project (http://CockpitCI.eu). Specifically, this paper will present the CockpitCI distributed Intrusion Detection System (IDS) for ICS, which provides its core cyber-detection and analysis capabilities, also including a description of its components, in terms of role, operation, integration, and remote management. Moreover, it will also introduce and describe new domain-specific solutions for ICS security such as the SCADA Honeypot and the Shadow Security Unit, which are part of the CockcpitCI IDS framework.
引用
收藏
页码:1 / 22
页数:22
相关论文
共 50 条
  • [41] A multiagent-based distributed control platform for industrial flexible production systems
    Schoop, R
    Neubert, R
    Colombo, AW
    IECON'01: 27TH ANNUAL CONFERENCE OF THE IEEE INDUSTRIAL ELECTRONICS SOCIETY, VOLS 1-3, 2001, : 279 - 284
  • [42] Industrial Petrochemical Applications: Analysis of Progrmmable Logic Controllers and Distributed Control Systems
    Mazur, David Christopher
    Stewart, Bill G.
    Clark, Henry E.
    Paes, Richard
    IEEE INDUSTRY APPLICATIONS MAGAZINE, 2021, 27 (04) : 36 - 44
  • [43] A fully distributed IDS for MANET
    Puttini, R
    Percher, JM
    Mé, L
    de Sousa, R
    ISCC2004: NINTH INTERNATIONAL SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS, VOLS 1 AND 2, PROCEEDINGS, 2004, : 331 - 338
  • [44] Hierarchical reliability and safety models of fault tolerant distributed industrial control systems
    Campelo, JC
    Yuste, P
    Rodríguez, F
    Gil, PJ
    Serrano, JJ
    COMPUTER SAFETY, RELIABILITY AND SECURITY, 1999, 1698 : 202 - 215
  • [45] Online Distributed Schedule Randomization to Mitigate Timing Attacks in Industrial Control Systems
    Samaddar, Ankita
    Easwaran, Arvind
    ACM TRANSACTIONS ON EMBEDDED COMPUTING SYSTEMS, 2023, 22 (06)
  • [46] Improving the IDS Performance through Early Detection Approach in Local Area Networks Using Industrial Control Systems of Honeypot
    Pashaei, Abbasgholi
    Akbari, Mohammad Esmail
    Lighvan, Mina Zolfy
    Teymorzade, Hamzeh Ali
    2020 20TH IEEE INTERNATIONAL CONFERENCE ON ENVIRONMENT AND ELECTRICAL ENGINEERING AND 2020 4TH IEEE INDUSTRIAL AND COMMERCIAL POWER SYSTEMS EUROPE (EEEIC/I&CPS EUROPE), 2020,
  • [47] A Distributed Systems Perspective on Industrial IoT
    Iwanicki, Konrad
    2018 IEEE 38TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS), 2018, : 1164 - 1170
  • [48] Distributed Approach for Integration in Industrial Systems
    Lacroix, Sylvain
    Eynard, Benoit
    Le Duigou, Julien
    Godart, Xavier
    Danjou, Christophe
    PRODUCT LIFECYCLE MANAGEMENT PLM IN TRANSITION TIMES: THE PLACE OF HUMANS AND TRANSFORMATIVE TECHNOLOGIES, PLM 2022, 2023, 667 : 116 - 125
  • [49] Distributed Coordination Control and Industrial Applications
    Shi, Yang
    Qin, Jiahu
    Ahn, Hyo-Sung
    IEEE TRANSACTIONS ON INDUSTRIAL ELECTRONICS, 2017, 64 (06) : 4967 - 4971
  • [50] The use of distributed network-based IDS systems in detection of evasion attacks
    Basicevic, I
    Popovic, M
    Kovacevic, V
    Telecommunications 2005, Proceedings, 2005, : 78 - 82