Model-based Security Analysis of a Water Treatment System
Title | Model-based Security Analysis of a Water Treatment System |
Publication Type | Conference Paper |
Year of Publication | 2016 |
Authors | Kang, Eunsuk, Adepu, Sridhar, Jackson, Daniel, Mathur, Aditya P. |
Conference Name | Proceedings of the 2Nd International Workshop on Software Engineering for Smart Cyber-Physical Systems |
Publisher | ACM |
Conference Location | New York, NY, USA |
ISBN Number | 978-1-4503-4171-4 |
Keywords | actuator security, Attack generation, composability, cyber-physical system, Human Behavior, Metrics, model checking, pubcrawl, Resiliency, security |
Abstract | An approach to analyzing the security of a cyber-physical system (CPS) is proposed, where the behavior of a physical plant and its controller are captured in approximate models, and their interaction is rigorously checked to discover potential attacks that involve a varying number of compromised sensors and actuators. As a preliminary study, this approach has been applied to a fully functional water treatment testbed constructed at the Singapore University of Technology and Design. The analysis revealed previously unknown attacks that were confirmed to pose serious threats to the safety of the testbed, and suggests a number of research challenges and opportunities for applying a similar type of formal analysis to cyber-physical security. |
URL | http://doi.acm.org/10.1145/2897035.2897041 |
DOI | 10.1145/2897035.2897041 |
Citation Key | kang_model-based_2016 |