ARTINALI plus plus : Multi-dimensional Specification Mining for Complex Cyber-Physical System Security

被引:4
|
作者
Aliabadi, Maryam Raiyat [1 ]
Asl, Mojtaba Vahidi [1 ]
Ghavamizadeh, Ramak [1 ]
机构
[1] Shahid Beheshti Univ, Fac Comp Sci & Engn, Tehran, Iran
基金
加拿大自然科学与工程研究理事会;
关键词
Program analysis; Specification mining; Intrusion Detection Systems; Cyber-Physical Systems; Security; Safety; INTRUSION DETECTION; INVARIANTS;
D O I
10.1016/j.jss.2021.111016
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Cyber-Physical Systems (CPSes) have been investigated as a key area of research since they are the core of Internet of Things. CPSs integrate computing and communication with control and monitoring of entities in the physical world. Due to the tight coupling of cyber and physical domains, and to the possible catastrophic consequences of the malicious attacks on critical infrastructures, security is one of the key concerns. However, the exponential growth of IoT has led to deployment of CPSes without support for enforcing important security properties. Specification-based Intrusion Detection Systems (IDS) have been shown to be effective for securing these systems. Mining the specifications of CPSes by experts is a cumbersome and error-prone task. Therefore, it is essential to dynamically monitor the CPS to learn its common behaviors and formulate specifications for detecting malicious bugs and security attacks. Existing solutions for specification mining only combine data and events, but not time. However, time is a semantic property in CPS systems, and hence incorporating time in addition to data and events, is essential for obtaining high accuracy. This paper proposes ARTINALI++, which dynamically mines specifications in CPS systems with arbitrary size and complexity. ARTINALI++ captures the security properties by incorporating time as a substantial property of the system, and generate a multi-dimensional model for the general CPS systems. Moreover, it enhances the model through discovering invariants that represent the physical motions and distinct operational modes in complex CPS systems. We build Intrusion Detection Systems based on ARTINALI++ for three CPSes with various levels of complexity including smart meter, smart artificial pancreas and unmanned aerial vehicle, and measure their detection accuracy. We find that the ARTINALI++ significantly reduces the ratio of false positives and false negatives by 23.45% and 73.6% on average, respectively, over other dynamic specification mining tools on the three CPS platforms. (C) 2021 Elsevier Inc. All rights reserved.
引用
收藏
页数:21
相关论文
共 50 条
  • [31] Complex Cyber-Physical Networks: From Cybersecurity to Security Control
    Wen Guanghui
    Yu Wenwu
    Yu Xinghuo
    Lue Jinhu
    JOURNAL OF SYSTEMS SCIENCE & COMPLEXITY, 2017, 30 (01) : 46 - 67
  • [32] AADL plus : a simulation-based methodology for cyber-physical systems
    Liu, Jing
    Li, Tengfei
    Ding, Zuohua
    Qian, Yuqing
    Sun, Haiying
    He, Jifeng
    FRONTIERS OF COMPUTER SCIENCE, 2019, 13 (03) : 516 - 538
  • [33] Portable Vectorization and Parallelization of C plus plus Multi-dimensional Array Computations
    Plagne, Laurent
    Bojnourdi, Kavoos
    ARRAY'17: PROCEEDINGS OF THE 4TH ACM SIGPLAN INTERNATIONAL WORKSHOP ON LIBRARIES, LANGUAGES, AND COMPILERS FOR ARRAY PROGRAMMING, 2017, : 33 - 39
  • [34] Security of Multi-Agent Cyber-Physical Systems: A Survey
    Owoputi, Richard
    Ray, Sandip
    IEEE ACCESS, 2022, 10 : 121465 - 121479
  • [35] Security for a Multi-Agent Cyber-Physical Conveyor System using Machine Learning
    Funchal, Gustavo
    Pedrosa, Tiago
    Vallim, Marcos
    Leitao, Paulo
    2020 IEEE 18TH INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), VOL 1, 2020, : 47 - 52
  • [36] Cyber security of railway cyber-physical system (CPS) - A risk management methodology
    Wang, Zezhou
    Liu, Xiang
    COMMUNICATIONS IN TRANSPORTATION RESEARCH, 2022, 2
  • [37] Securing Financial Network System through Multilevel Security Using Cyber-Physical System and Data Mining Concepts
    Mangipudi, Sharada Varalaxmi
    Verma, P. Suresh
    Rao, M. Srinivasa
    2014 INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND APPLICATIONS (ICHPCA), 2014,
  • [38] A Cyber-Security Methodology for a Cyber-Physical Industrial Control System Testbed
    Noorizadeh, Mohammad
    Shakerpour, Mohammad
    Meskin, Nader
    Unal, Devrim
    Khorasani, Khashayar
    IEEE ACCESS, 2021, 9 : 16239 - 16253
  • [39] Cyber-Physical System Dependability Enhancement through Data Mining
    Sanislav, Teodora
    Merza, Karla
    Mois, George
    Miclea, Liviu
    PROCEEDING OF 2016 IEEE INTERNATIONAL CONFERENCE ON AUTOMATION, QUALITY AND TESTING, ROBOTICS (AQTR), 2016, : 119 - 123
  • [40] Complex system governance for critical cyber-physical systems
    Katina P.F.
    Keating C.B.
    Gheorghe A.V.
    Masera M.
    Katina, Polinpapilinho F. (pkatina@odu.edu), 2017, Inderscience Publishers, 29, route de Pre-Bois, Case Postale 856, CH-1215 Geneva 15, CH-1215, Switzerland (13) : 168 - 183