Combining switching mechanism with re-initialization and anomaly detection for resiliency of cyber-physical systems

被引:2
作者
Fu, Hao [1 ]
Krishnamurthy, Prashanth [1 ]
Khorrami, Farshad [1 ]
机构
[1] NYU, MetroTech Ctr 5, Tandon Sch Engn, Dept Elect & Comp Engn, Brooklyn, NY 11201 USA
关键词
Cyber-physical system; Redundancy; Switching strategy; Re-initialization; Anomaly detection; Control system; MEAN-SQUARE STABILITY; FAULT-DETECTION; CYBERSECURITY;
D O I
10.1016/j.automatica.2024.111994
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-physical systems (CPS) play a pivotal role in numerous critical real-world applications that have stringent requirements for safety. To enhance the CPS resiliency against attacks, redundancy can be integrated in real-time controller implementations by designing strategies that switch among multiple controllers. However, existing switching strategies typically overlook remediation measures for compromised controllers, opting instead to simply exclude them. Such a solution reduces the CPS redundancy since only a subset of controllers are used. To address this gap, this work proposes a multicontroller switching strategy with periodic re-initialization to remove attacks. Controllers that finish re-initialization can be reused by the switching strategy, preserving the CPS redundancy and resiliency. The proposed switching strategy is designed to ensure that at each switching moment, a controller that has just completed re-initialization is available, minimizing the likelihood of compromise. Additionally, the controller's working period decreases with the number of involved controllers, reducing the controller's exposure time to attacks. An anomaly detector is used to detect CPS attacks during the controller's working period. Upon alarm activation, the current control signal is set to a predefined value, and a switch to an alternative controller occurs at the earliest switching moment. Our switching strategy is shown to be still effective even if the anomaly detector fails to detect (stealthy) attacks. The efficacy of our strategy is analyzed through three derived conditions under a proposed integrated attack-defense model for mean-square boundedness of the CPS states. Simulation results on a third- order system and a single-machine infinite-bus (SMIB) system confirm that our approach significantly bolsters CPS resiliency by leveraging the advantages of re-initialization, anomaly detection, and switching mechanisms. (c) 2024 Elsevier Ltd. All rights are reserved, including those for text and data mining, AI training, and similar technologies.
引用
收藏
页数:12
相关论文
共 36 条
[21]   Resilient redundancy-based control of cyber-physical systems through adaptive randomized switching [J].
Krishnamurthy, Prashanth ;
Khorrami, Farshad .
SYSTEMS & CONTROL LETTERS, 2021, 158
[22]   Process-Aware Covert Channels Using Physical Instrumentation in Cyber-Physical Systems [J].
Krishnamurthy, Prashanth ;
Khorrami, Farshad ;
Karri, Ramesh ;
Paul-Pena, David ;
Salehghaffari, Hossein .
IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (11) :2761-2771
[23]   SoK: Automated Software Diversity [J].
Larsen, Per ;
Homescu, Andrei ;
Brunthaler, Stefan ;
Franz, Michael .
2014 IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP 2014), 2014, :276-291
[24]   Statistical models for the number of successful cyber intrusions [J].
Leslie, Nandi O. ;
Harang, Richard E. ;
Knachel, Lawrence P. ;
Kott, Alexander .
JOURNAL OF DEFENSE MODELING AND SIMULATION-APPLICATIONS METHODOLOGY TECHNOLOGY-JDMS, 2018, 15 (01) :49-63
[25]   A physics-based strategy for cyber resilience of CPS [J].
Mertoguno, J. Sukarno ;
Craven, Ryan M. ;
Koller, Daniel P. ;
Mickelson, Matthew S. .
AUTONOMOUS SYSTEMS: SENSORS, PROCESSING, AND SECURITY FOR VEHICLES AND INFRASTRUCTURE 2019, 2019, 11009
[26]   Detecting Integrity Attacks on SCADA Systems [J].
Mo, Yilin ;
Chabukswar, Rohan ;
Sinopoli, Bruno .
IEEE TRANSACTIONS ON CONTROL SYSTEMS TECHNOLOGY, 2014, 22 (04) :1396-1407
[27]  
Phatak Sujit S., 2010, IFAC Proceedings, V43, P405
[28]   Feasibility Analysis on Optimal Sensor Selection in Cyber-physical Systems [J].
Song, Zhen ;
Sastry, Chellury Ram ;
Tas, Nazif Cihan ;
Chen, YangQuan .
2009 AMERICAN CONTROL CONFERENCE, VOLS 1-9, 2009, :5368-+
[29]   Mean-square stability analysis of numerical schemes for stochastic differential systems [J].
Tocino, A. ;
Senosiain, M. J. .
JOURNAL OF COMPUTATIONAL AND APPLIED MATHEMATICS, 2012, 236 (10) :2660-2672
[30]   TRANSIENT STABILITY ENHANCEMENT AND VOLTAGE REGULATION OF POWER-SYSTEMS [J].
WANG, YY ;
HILL, DJ ;
MIDDLETON, RH ;
GAO, L .
IEEE TRANSACTIONS ON POWER SYSTEMS, 1993, 8 (02) :620-627