Modeling impact of attacks, recovery, and attackability conditions for situational awareness
Title | Modeling impact of attacks, recovery, and attackability conditions for situational awareness |
Publication Type | Conference Paper |
Year of Publication | 2014 |
Authors | Cam, H., Mouallem, P., Yilin Mo, Sinopoli, B., Nkrumah, B. |
Conference Name | Cognitive Methods in Situation Awareness and Decision Support (CogSIMA), 2014 IEEE International Inter-Disciplinary Conference on |
Date Published | March |
ISBN Number | 978-1-4799-3564-2 |
Keywords | actuators, Analytical models, anomaly-based intrusion detection system, assets influence, control theory, controllers, Decentralized control, distributed control system, distributed cyber control system, distributed processing, dynamic analysis, Fires, Intrusion detection, Linear systems, linear time-invariant system, modeling impact, numerical evaluation, Petri nets, scanners, security of data, Sensors, situational awareness, time Petri nets, timing relationships, topological attackability condition |
Abstract | A distributed cyber control system comprises various types of assets, including sensors, intrusion detection systems, scanners, controllers, and actuators. The modeling and analysis of these components usually require multi-disciplinary approaches. This paper presents a modeling and dynamic analysis of a distributed cyber control system for situational awareness by taking advantage of control theory and time Petri net. Linear time-invariant systems are used to model the target system, attacks, assets influences, and an anomaly-based intrusion detection system. Time Petri nets are used to model the impact and timing relationships of attacks, vulnerability, and recovery at every node. To characterize those distributed control systems that are perfectly attackable, algebraic and topological attackability conditions are derived. Numerical evaluation is performed to determine the impact of attacks on distributed control system. |
URL | http://ieeexplore.ieee.org/document/6816560/ |
DOI | 10.1109/CogSIMA.2014.6816560 |
Citation Key | 6816560 |
- Intrusion Detection
- topological attackability condition
- timing relationships
- time Petri nets
- situational awareness
- sensors
- security of data
- scanners
- Petri nets
- numerical evaluation
- modeling impact
- linear time-invariant system
- Linear systems
- actuators
- Fires
- dynamic analysis
- distributed processing
- distributed cyber control system
- distributed control system
- Decentralized Control
- controllers
- Control Theory
- assets influence
- anomaly-based intrusion detection system
- Analytical models