A multi-modelling based approach to assessing the security of smart buildings
Title | A multi-modelling based approach to assessing the security of smart buildings |
Publication Type | Conference Paper |
Year of Publication | 2018 |
Authors | Mace, J.C., Morisset, C., Pierce, K., Gamble, C., Maple, C., Fitzgerald, J. |
Conference Name | Living in the Internet of Things: Cybersecurity of the IoT – 2018 |
Date Published | March 2018 |
Publisher | IEEE |
ISBN Number | 978-1-78561-843-7 |
Keywords | Access Control, adversary model, building management systems, Co-Simulation, composability, CPS modeling, critical services, Cyber-physical systems, fan coil unit, Fans, home automation, INTO-CPS tool chain, man-in-the-middle attacks, methodology, Metrics, multimodel methodology, multimodelling based approach, physical attacks, pubcrawl, resilience, Resiliency, security of data, simulations, Smart buildings, system components, ubiquitous computing |
Abstract | Smart buildings are controlled by multiple cyber-physical systems that provide critical services such as heating, ventilation, lighting and access control. These building systems are becoming increasingly vulnerable to both cyber and physical attacks. We introduce a multi-model methodology for assessing the security of these systems, which utilises INTO-CPS, a suite of modelling, simulation, and analysis tools for designing cyber-physical systems. Using a fan coil unit case study we show how its security can be systematically assessed when subjected to Man-in-the-Middle attacks on the data connections between system components. We suggest our methodology would enable building managers and security engineers to design attack countermeasures and refine their effectiveness. |
URL | https://ieeexplore.ieee.org/document/8379718 |
DOI | 10.1049/cp.2018.0031 |
Citation Key | mace_multi-modelling_2018 |
- methodology
- ubiquitous computing
- system components
- smart buildings
- simulations
- security of data
- Resiliency
- resilience
- pubcrawl
- physical attacks
- multimodelling based approach
- multimodel methodology
- Metrics
- Access Control
- man-in-the-middle attacks
- INTO-CPS tool chain
- home automation
- Fans
- fan coil unit
- cyber-physical systems
- critical services
- CPS modeling
- composability
- co-simulation
- building management systems
- adversary model