Moving Target Cyber Defence for Operational Technology
运营技术的移动目标网络防御
基本信息
- 批准号:2746196
- 负责人:
- 金额:--
- 依托单位:
- 依托单位国家:英国
- 项目类别:Studentship
- 财政年份:2022
- 资助国家:英国
- 起止时间:2022 至 无数据
- 项目状态:未结题
- 来源:
- 关键词:
项目摘要
Those targeted Operation Technology (OT) attacks seen in the public domain to date (e.g. Stuxnet, Triton, CrashOverride, BlackEnergy in Ukraine) demonstrate that attackers require specific OT environment knowledge for their attacks to succeed. Where information is either inaccurate or the attacks mi-programmed (e.g. as with Triton) the attacks become fragile and often fail. Therefore a key question is could we increase the fragility of OT attacks and improve the resiliency of the OT system? As modelled in the ICS Cyber Kill Chain, an attacker spends a lot of their early effort and activities on gathering the necessary information to develop OT payloads and execute a successful attack. If this information changes then this information gathering process must repeat and the malware payloads updated. Therefore if the target system is changed at "regular" time intervals, then any information gathered by an attacker would have an expiration time on usefulness associated with it. If the target system changes frequently enough, this effectively could be a "never ending" loop of activity, or at the very least put pressure on the attacker to act very quickly. The net result of this approach could achieve at least two outcomes; render targeted attacks less effective, frustrate the attackers sufficiently to deter them from targeted that specific OT system. There is of course a balance to be struck, how much can an OT system be changed without impacting the business requirement of that system? Is there a point at which these changes are too frequent and the reliability / resilience of the system is negatively impacted? Therefore, this mitigation approach needs to be investigated to determine the viability, scalability and optimum approach to achieve the defensive benefits with the minimum amount of operational impact.Key Objectives ************** 1. What is the state of the art and what are the results of previous research into moving target defence generally and then also more specifically in the OT sector? 2. Identify what criteria is "moveable" i.e. what are the aspects of an OT system that can be changed, and once known which offer the best "return" in terms of interfering with attacks in an OT system, whilst also minimizing operational impact on the OT system. 3. The mechanisms that could be implemented within OT systems that put this into practice. 4. Understand the other challenges to making this a reality e.g. safety, reluctance, training, etc.. Expected Deliverables ********************* Appreciate with PhDs this is a moving target but to give an idea of expectation; 1. An overview of how this could be achieved technically based on the current "state of art". 2. A proof of concept showing how this could potentially work, practically, in a real OT system (note this is likely to be simplified, Thales will provide a 'real' system to test with). 3. Recommendations on how the potential blockers to such a threat mitigation might be overcome.
迄今为止在公共领域看到的那些有针对性的操作技术(OT)攻击(例如,乌克兰的Stuxnet、Triton、CrashOverride、BlackEnergy)表明,攻击者需要特定的操作技术(OT)环境知识才能成功攻击。如果信息不准确或攻击编程错误(例如,与Triton一样),攻击就会变得脆弱,往往会失败。因此,一个关键的问题是,我们能否增加OT攻击的脆弱性,并提高OT系统的弹性?根据ICS Cyber Kill Chain的模型,攻击者花费大量早期工作和活动来收集必要的信息,以开发OT有效负载并执行成功的攻击。如果此信息发生更改,则必须重复此信息收集过程,并更新恶意软件有效负载。因此,如果以“定期”时间间隔更改目标系统,则攻击者收集的任何信息都将具有与之关联的有用信息的过期时间。如果目标系统的变化足够频繁,这实际上可能是一个“永无止境”的活动循环,或者至少会给攻击者施加压力,迫使其迅速采取行动。这种方法的最终结果至少可以达到两个结果:降低目标攻击的有效性,充分挫败攻击者,阻止他们瞄准特定的OT系统。当然,需要取得平衡,在不影响系统业务需求的情况下,可以对OT系统进行多大程度的更改?是否存在这些更改过于频繁并对系统的可靠性/恢复能力产生负面影响的情况?因此,需要对这种缓解方法进行研究,以确定以最小的作战影响实现防御效益的可行性、可扩展性和最佳方法。关键目标1.移动目标防御总体上的最新水平以及先前研究的结果是什么?2.确定什么标准是可移动的,即,OT系统的哪些方面可以改变,一旦知道,就干扰OT系统中的攻击而言,哪些方面提供了最佳的“回报”,同时还将对加班系统的运营影响降至最低。3.可在实施这一点的OT系统内实施的机制。4.了解实现这一目标的其他挑战,例如安全、不情愿、培训等。预期交付量*2.概念证明,说明这可能在实际的OT系统中如何工作(请注意,这可能会被简化,泰利斯公司将提供一个用于测试的真正的系统)。3.就如何克服这种威胁缓解的潜在障碍提出建议。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
其他文献
吉治仁志 他: "トランスジェニックマウスによるTIMP-1の線維化促進機序"最新医学. 55. 1781-1787 (2000)
Hitoshi Yoshiji 等:“转基因小鼠中 TIMP-1 的促纤维化机制”现代医学 55. 1781-1787 (2000)。
- DOI:
- 发表时间:
- 期刊:
- 影响因子:0
- 作者:
- 通讯作者:
LiDAR Implementations for Autonomous Vehicle Applications
- DOI:
- 发表时间:
2021 - 期刊:
- 影响因子:0
- 作者:
- 通讯作者:
吉治仁志 他: "イラスト医学&サイエンスシリーズ血管の分子医学"羊土社(渋谷正史編). 125 (2000)
Hitoshi Yoshiji 等人:“血管医学与科学系列分子医学图解”Yodosha(涉谷正志编辑)125(2000)。
- DOI:
- 发表时间:
- 期刊:
- 影响因子:0
- 作者:
- 通讯作者:
Effect of manidipine hydrochloride,a calcium antagonist,on isoproterenol-induced left ventricular hypertrophy: "Yoshiyama,M.,Takeuchi,K.,Kim,S.,Hanatani,A.,Omura,T.,Toda,I.,Akioka,K.,Teragaki,M.,Iwao,H.and Yoshikawa,J." Jpn Circ J. 62(1). 47-52 (1998)
钙拮抗剂盐酸马尼地平对异丙肾上腺素引起的左心室肥厚的影响:“Yoshiyama,M.,Takeuchi,K.,Kim,S.,Hanatani,A.,Omura,T.,Toda,I.,Akioka,
- DOI:
- 发表时间:
- 期刊:
- 影响因子:0
- 作者:
- 通讯作者:
的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('', 18)}}的其他基金
An implantable biosensor microsystem for real-time measurement of circulating biomarkers
用于实时测量循环生物标志物的植入式生物传感器微系统
- 批准号:
2901954 - 财政年份:2028
- 资助金额:
-- - 项目类别:
Studentship
Exploiting the polysaccharide breakdown capacity of the human gut microbiome to develop environmentally sustainable dishwashing solutions
利用人类肠道微生物群的多糖分解能力来开发环境可持续的洗碗解决方案
- 批准号:
2896097 - 财政年份:2027
- 资助金额:
-- - 项目类别:
Studentship
A Robot that Swims Through Granular Materials
可以在颗粒材料中游动的机器人
- 批准号:
2780268 - 财政年份:2027
- 资助金额:
-- - 项目类别:
Studentship
Likelihood and impact of severe space weather events on the resilience of nuclear power and safeguards monitoring.
严重空间天气事件对核电和保障监督的恢复力的可能性和影响。
- 批准号:
2908918 - 财政年份:2027
- 资助金额:
-- - 项目类别:
Studentship
Proton, alpha and gamma irradiation assisted stress corrosion cracking: understanding the fuel-stainless steel interface
质子、α 和 γ 辐照辅助应力腐蚀开裂:了解燃料-不锈钢界面
- 批准号:
2908693 - 财政年份:2027
- 资助金额:
-- - 项目类别:
Studentship
Field Assisted Sintering of Nuclear Fuel Simulants
核燃料模拟物的现场辅助烧结
- 批准号:
2908917 - 财政年份:2027
- 资助金额:
-- - 项目类别:
Studentship
Assessment of new fatigue capable titanium alloys for aerospace applications
评估用于航空航天应用的新型抗疲劳钛合金
- 批准号:
2879438 - 财政年份:2027
- 资助金额:
-- - 项目类别:
Studentship
Developing a 3D printed skin model using a Dextran - Collagen hydrogel to analyse the cellular and epigenetic effects of interleukin-17 inhibitors in
使用右旋糖酐-胶原蛋白水凝胶开发 3D 打印皮肤模型,以分析白细胞介素 17 抑制剂的细胞和表观遗传效应
- 批准号:
2890513 - 财政年份:2027
- 资助金额:
-- - 项目类别:
Studentship
Understanding the interplay between the gut microbiome, behavior and urbanisation in wild birds
了解野生鸟类肠道微生物组、行为和城市化之间的相互作用
- 批准号:
2876993 - 财政年份:2027
- 资助金额:
-- - 项目类别:
Studentship
相似国自然基金
应用Target-Seq技术对肉牛生长性状显著关联基因组区域进行精细定位
- 批准号:31402039
- 批准年份:2014
- 资助金额:24.0 万元
- 项目类别:青年科学基金项目
相似海外基金
From corpus to target data as steps for automatic assessment of L2 speech: L2 French phonological lexicon of Japanese learners
从语料库到目标数据作为 L2 语音自动评估的步骤:日语学习者的 L2 法语语音词典
- 批准号:
23K20100 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Grant-in-Aid for Scientific Research (B)
TARGET: Health virtual twins for the personalised management of stroke related to atrial fibrillation
目标:健康虚拟双胞胎,用于房颤相关中风的个性化管理
- 批准号:
10114601 - 财政年份:2024
- 资助金额:
-- - 项目类别:
EU-Funded
TARGET Mineral Resources - Training And Research Group for Energy Transition Mineral Resources
TARGET 矿产资源 - 能源转型矿产资源培训与研究小组
- 批准号:
NE/Y005457/1 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Training Grant
ICF: A novel dual-target gene therapy for safe and efficacious treatment of chronic non-infectious uveitis
ICF:一种安全有效治疗慢性非感染性葡萄膜炎的新型双靶点基因疗法
- 批准号:
MR/Z50385X/1 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Research Grant
Plasma-modified peptides/proteins for multi-target anticancer treatment
用于多靶点抗癌治疗的血浆修饰肽/蛋白质
- 批准号:
23K22483 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Grant-in-Aid for Scientific Research (B)
Developing the toolbox of compounds that target acid-sensing proteins
开发针对酸敏蛋白的化合物工具箱
- 批准号:
DE240101233 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Discovery Early Career Researcher Award
MDM2+MDM4 double target strategyによるMDM2肉腫根治戦略の開発
利用MDM2+MDM4双靶点策略制定MDM2肉瘤根治策略
- 批准号:
24K19562 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Grant-in-Aid for Early-Career Scientists
Understanding how endocrine disruptors and chemical mixtures of concern target the immune system to trigger or perpetuate disease (ENDOMIX)
了解内分泌干扰物和相关化学混合物如何针对免疫系统引发或延续疾病 (ENDOMIX)
- 批准号:
10106479 - 财政年份:2024
- 资助金额:
-- - 项目类别:
EU-Funded
A Semi-Automated Antibody-Discovery Platform to Target Challenging Biomolecules
针对具有挑战性的生物分子的半自动化抗体发现平台
- 批准号:
MR/Y003616/1 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Fellowship
CAREER: Towards Environment-Aware Adaptive Safety for Learning-Enabled Multiagent Systems with Application to Target Drone Capturing
职业:为支持学习的多智能体系统实现环境感知的自适应安全,并应用于目标无人机捕获
- 批准号:
2336189 - 财政年份:2024
- 资助金额:
-- - 项目类别:
Continuing Grant