ARTINALI plus plus : Multi-dimensional Specification Mining for Complex Cyber-Physical System Security

被引:4
|
作者
Aliabadi, Maryam Raiyat [1 ]
Asl, Mojtaba Vahidi [1 ]
Ghavamizadeh, Ramak [1 ]
机构
[1] Shahid Beheshti Univ, Fac Comp Sci & Engn, Tehran, Iran
基金
加拿大自然科学与工程研究理事会;
关键词
Program analysis; Specification mining; Intrusion Detection Systems; Cyber-Physical Systems; Security; Safety; INTRUSION DETECTION; INVARIANTS;
D O I
10.1016/j.jss.2021.111016
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Cyber-Physical Systems (CPSes) have been investigated as a key area of research since they are the core of Internet of Things. CPSs integrate computing and communication with control and monitoring of entities in the physical world. Due to the tight coupling of cyber and physical domains, and to the possible catastrophic consequences of the malicious attacks on critical infrastructures, security is one of the key concerns. However, the exponential growth of IoT has led to deployment of CPSes without support for enforcing important security properties. Specification-based Intrusion Detection Systems (IDS) have been shown to be effective for securing these systems. Mining the specifications of CPSes by experts is a cumbersome and error-prone task. Therefore, it is essential to dynamically monitor the CPS to learn its common behaviors and formulate specifications for detecting malicious bugs and security attacks. Existing solutions for specification mining only combine data and events, but not time. However, time is a semantic property in CPS systems, and hence incorporating time in addition to data and events, is essential for obtaining high accuracy. This paper proposes ARTINALI++, which dynamically mines specifications in CPS systems with arbitrary size and complexity. ARTINALI++ captures the security properties by incorporating time as a substantial property of the system, and generate a multi-dimensional model for the general CPS systems. Moreover, it enhances the model through discovering invariants that represent the physical motions and distinct operational modes in complex CPS systems. We build Intrusion Detection Systems based on ARTINALI++ for three CPSes with various levels of complexity including smart meter, smart artificial pancreas and unmanned aerial vehicle, and measure their detection accuracy. We find that the ARTINALI++ significantly reduces the ratio of false positives and false negatives by 23.45% and 73.6% on average, respectively, over other dynamic specification mining tools on the three CPS platforms. (C) 2021 Elsevier Inc. All rights reserved.
引用
收藏
页数:21
相关论文
共 50 条
  • [11] Design of Cyber-Physical Security Testbed for Multi-Stage Manufacturing System
    Coshatt, Stephen J.
    Li, Qi
    Yang, Bowen
    Wu, Shushan
    Shrivastava, Darpan
    Ye, Jin
    Song, WenZhan
    Zahiri, Feraidoon
    2022 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2022), 2022, : 1978 - 1983
  • [12] Voltage Regulation Service Pricing in Cyber-Physical Distribution Networks With Multi-Dimensional Meteorological Uncertainties
    Wei, Zhaobin
    Huang, Zhenyu
    Tang, Zhiyuan
    Chen, Huiming
    Zuo, Xianwang
    Li, Haotang
    Liu, Haoqiang
    Liu, Jichun
    Borghetti, Alberto
    IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING, 2025, 12 (02): : 710 - 726
  • [13] Mining Environment Assumptions for Cyber-Physical System Models
    Mohammadinejad, Sara
    Deshmukh, Jyotirmoy, V
    Puranic, Aniruddh G.
    2020 ACM/IEEE 11TH INTERNATIONAL CONFERENCE ON CYBER-PHYSICAL SYSTEMS (ICCPS 2020), 2020, : 87 - 97
  • [14] Identifying single-phase to ground fault based on line multi-dimensional data in cyber-physical distribution system
    Chen, Qing
    Yang, Shiwu
    Li, Hongbin
    Wen, Xue
    Wang, Xinggang
    Bao, Zhiwei
    Peng, Junran
    IET GENERATION TRANSMISSION & DISTRIBUTION, 2021, 15 (05) : 950 - 959
  • [15] An Integrated Cyber Security Risk Management Approach for a Cyber-Physical System
    Kure, Halima Ibrahim
    Islam, Shareeful
    Razzaque, Mohammad Abdur
    APPLIED SCIENCES-BASEL, 2018, 8 (06):
  • [16] Application of Machine Learning in Cyber Security of Cyber-Physical Power System
    Peng, Sha
    Sun, Mingyang
    Zhang, Zhenyong
    Deng, Ruilong
    Cheng, Peng
    Dianli Xitong Zidonghua/Automation of Electric Power Systems, 2022, 46 (09): : 200 - 215
  • [17] A Review of Cyber-Physical Energy System Security Assessment
    Rasmussen, Theis B.
    Yang, Guangya
    Nielsen, Arne H.
    Dong, Zhaoyang
    2017 IEEE MANCHESTER POWERTECH, 2017,
  • [18] CARMEN: A framework for the verification and diagnosis of the specification of security requirements in cyber-physical systems
    Jesus Varela-Vaca, Angel
    Rosado, David G.
    Sanchez, Luis E.
    Teresa Gomez-Lopez, Maria
    Gasca, Rafael M.
    Fernandez-Medina, Eduardo
    COMPUTERS IN INDUSTRY, 2021, 132
  • [19] Cyber-Physical System Security for the Electric Power Grid
    Sridhar, Siddharth
    Hahn, Adam
    Govindarasu, Manimaran
    PROCEEDINGS OF THE IEEE, 2012, 100 (01) : 210 - 224
  • [20] Cyber-physical system security for networked industrial processes
    Huang S.
    Zhou C.-J.
    Yang S.-H.
    Qin Y.-Q.
    International Journal of Automation and Computing, 2015, 12 (06) : 567 - 578