Hide and Seek: An Architecture for Improving Attack-Visibility in Industrial Control Systems

Hide and Seek: An Architecture for Improving Attack-Visibility in Industrial Control Systems
复制标题

Hide and Seek:一种提高工业控制系统攻击可见性的架构

DOI:
--
复制
发表时间:
2019
期刊:
International Conference on Applied Cryptography and Network Security
影响因子:
--
通讯作者:
Nils Ole Tippenhauer
Nils Ole Tippenhauer
中科院分区:
--
文献类型:
--
作者:
J. Giraldo;D. Urbina;A. Cárdenas;Nils Ole Tippenhauer

文献摘要

被引文献

相似文献

在过去的几年里,我们已经看到了一个新兴的研究领域,专注于使用网络物理系统的“物理”来检测攻击。在其基本形式中,安全监视器部署在工业控制网络中的某处,观察系统操作的时间序列,并识别这些测量中的异常,以便检测潜在操纵的控制命令或操纵的传感器读数。虽然有越来越多的文献在该研究方向的检测机制,在哪里监测系统的物理行为的问题得到了较少的关注。
In the past years we have seen an emerging field of research focusing on using the “physics” of a Cyber-Physical System to detect attacks. In its basic form, a security monitor is deployed somewhere in the industrial control network, observes a time-series of the operation of the system, and identifies anomalies in those measurements in order to detect potentially manipulated control commands or manipulated sensor readings. While there is a growing literature on detection mechanisms in that research direction, the problem of where to monitor the physical behavior of the system has received less attention.