Novel Stealthy Attack and Defense Strategies for Networked Control Systems

被引:31
|
作者
Mao, Yanbing [1 ]
Jafarnejadsani, Hamidreza [2 ]
Zhao, Pan [1 ]
Akyol, Emrah [3 ]
Hovakimyan, Naira [1 ]
机构
[1] Univ Illinois, Dept Mech Sci & Engn, Urbana, IL 61801 USA
[2] Stevens Inst Technol, Dept Mech Engn, Hoboken, NJ 07310 USA
[3] Binghamton Univ SUNY, Dept Elect & Comp Engn, Binghamton, NY 13902 USA
基金
美国国家科学基金会;
关键词
Topology; Network topology; Monitoring; Switches; Privacy; System dynamics; Attack detection; multiagent systems; privacy; security; topology attack; zero-dynamics attack (ZDA); SYNCHRONIZATION; FLOCKING;
D O I
10.1109/TAC.2020.2997363
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This article studies novel attack and defense strategies, based on a class of stealthy attacks, namely the zero-dynamics attack (ZDA), for multiagent control systems. ZDA poses a formidable security challenge since its attack signal is hidden in the null space of the state-space representation of the control system and hence it can evade conventional detection methods. An intuitive defense strategy builds on changing the aforementioned representation via switching through a set of carefully crafted topologies. In this article, we propose realistic ZDA variations where the attacker is aware of this topology-switching strategy, and hence employs the following policies to avoid detection: first, pause, update, and resume ZDA according to the knowledge of switching topologies; and second, cooperate with a concurrent stealthy topology attack that alters network topology at switching times, such that the original ZDA is feasible under the corrupted topology. We first systematically study the proposed ZDA variations, and then develop defense strategies against them under the realistic assumption that the defender has no knowledge of attack starting, pausing, and resuming times and the number of misbehaving agents. Particularly, we characterize conditions for detectability of the proposed ZDA variations, in terms of the network topologies to be maintained, the set of agents to be monitored, and the measurements of the monitored agents that should be extracted, while simultaneously preserving the privacy of the states of the nonmonitored agents. We then propose an attack detection algorithm based on the Luenberger observer, using the characterized detectability conditions. We provide numerical simulation results to demonstrate our theoretical findings.
引用
收藏
页码:3847 / 3862
页数:16
相关论文
共 50 条
  • [41] Attack Detection in Linear Networked Control Systems by Using Learning Methodology
    Niu, Haifeng
    Sahoo, A.
    Bhowmick, C.
    Jagannathan, S.
    2019 3RD IEEE CONFERENCE ON CONTROL TECHNOLOGY AND APPLICATIONS (IEEE CCTA 2019), 2019, : 148 - 153
  • [42] Analysis of Stealthy False Data Injection Attacks Against Networked Control Systems: Three Case Studies
    Zhonghua Pang
    Yuan Fu
    Haibin Guo
    Jian Sun
    Journal of Systems Science and Complexity, 2023, 36 : 1407 - 1422
  • [43] GPU Obfuscation: Attack and Defense Strategies
    Chakraborty, Abhishek
    Xie, Yang
    Srivastava, Ankur
    2018 55TH ACM/ESDA/IEEE DESIGN AUTOMATION CONFERENCE (DAC), 2018,
  • [44] Kullback-Leibler Divergence-Based Optimal Stealthy Sensor Attack Against Networked Linear Quadratic Gaussian Systems
    Ren, Xiu-Xiu
    Yang, Guang-Hong
    IEEE TRANSACTIONS ON CYBERNETICS, 2022, 52 (11) : 11539 - 11548
  • [45] Optimal Secure Control of Networked Control Systems Under False Data Injection Attacks: A Multi-Stage Attack-Defense Game Approach
    Du, Dajun
    Zhang, Yi
    Xu, Baoyue
    Fei, Minrui
    IEEE-CAA JOURNAL OF AUTOMATICA SINICA, 2025, 12 (04) : 821 - 823
  • [46] Novel Smith Predictor and Fuzzy Control for Networked Control Systems
    Du, Wencai
    Du, Feng
    2009 ASIA-PACIFIC CONFERENCE ON INFORMATION PROCESSING (APCIP 2009), VOL 1, PROCEEDINGS, 2009, : 75 - 78
  • [47] Networked Control Systems with Nonlinear Control and Novel Smith Predictor
    Du, Feng
    Du, Wencai
    Lei, Zhi
    2009 ASIA-PACIFIC CONFERENCE ON INFORMATION PROCESSING (APCIP 2009), VOL 1, PROCEEDINGS, 2009, : 71 - +
  • [48] Analysis of Stealthy False Data Injection Attacks Against Networked Control Systems:Three Case Studies
    PANG Zhonghua
    FU Yuan
    GUO Haibin
    SUN Jian
    JournalofSystemsScience&Complexity, 2023, 36 (04) : 1407 - 1422
  • [49] Collusion Attack Detection in Networked Systems
    Bhuiyan, Md Zakirul Alam
    Wu, Jie
    2016 IEEE 14TH INTL CONF ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, 14TH INTL CONF ON PERVASIVE INTELLIGENCE AND COMPUTING, 2ND INTL CONF ON BIG DATA INTELLIGENCE AND COMPUTING AND CYBER SCIENCE AND TECHNOLOGY CONGRESS (DASC/PICOM/DATACOM/CYBERSC, 2016, : 286 - 293
  • [50] Analysis of Stealthy False Data Injection Attacks Against Networked Control Systems: Three Case Studies
    Pang, Zhonghua
    Fu, Yuan
    Guo, Haibin
    Sun, Jian
    JOURNAL OF SYSTEMS SCIENCE & COMPLEXITY, 2023, 36 (04) : 1407 - 1422