METHOD FOR QUANTITATIVE RISK ASSESSMENT OF CYBER-PHYSICAL SYSTEMS BASED ON VULNERABILITY ANALYSIS

被引:0
作者
Alguliyev, Rasim [1 ]
Aliguliyev, Ramiz [1 ]
Sukhostat, Lyudmila [1 ]
机构
[1] Inst Informat Technol, B Vahabzade St,9A, AZ-1141 Baku, Azerbaijan
关键词
cyber-physical system; risk assessment; attack graph; graph centrality measures; Sugeno lambda- measure; fuzzy Sugeno integral; attack path;
D O I
10.14736/kyb-2024-6-0779
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-physical system protection against cyber-attacks is a serious problem that requires methods for assessing the cyber security risks. This paper proposes a quantitative metric to evaluate the risks of cyber-physical systems using the fuzzy Sugeno integral. The simulated attack graph, consisting of vulnerable system components, allows for obtaining various parameters for assessing the risks of attack paths characterizing the elements in the cyber and physical environment and are combined into a single quantitative assessment. Experiments are performed on a threat model using the example of a cyber-physical system for wind energy generation. The model integrates a cyber-physical network's topology and vulnerabilities, proving the proposed method's effectiveness in ensuring cyber resilience.
引用
收藏
页码:779 / 796
页数:18
相关论文
共 50 条
  • [1] Quantitative assessment for the vulnerability of cyber-physical system based on attack graph
    Huang, Jiahui
    Feng, Dongqin
    International Journal of Electrical Engineering, 2015, 22 (06): : 201 - 207
  • [2] Quantitative Risk Assessment of Cyber-Physical System for Cyber-attacks in Distribution Network
    Zhang Y.
    Ni M.
    Sun Y.
    Li M.
    Dianli Xitong Zidonghua/Automation of Electric Power Systems, 2019, 43 (21): : 12 - 22and33
  • [3] Risk Assessment Method for Cybersecurity of Cyber-Physical Systems Based on Inter-Dependency of Vulnerabilities
    Wu, Wenbo
    Kang, Rui
    Li, Zi
    2015 IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL ENGINEERING AND ENGINEERING MANAGEMENT (IEEM), 2015, : 1618 - 1622
  • [4] Risk Assessment Method for Cyber Security of Cyber Physical Systems
    Wu, Wenbo
    Kang, Rui
    Li, Zi
    PROCEEDINGS OF THE 2015 FIRST INTERNATIONAL CONFERENCE ON RELIABILITY SYSTEMS ENGINEERING 2015 ICRSE, 2015,
  • [5] Dependency-based security risk assessment for cyber-physical systems
    Aida Akbarzadeh
    Sokratis K. Katsikas
    International Journal of Information Security, 2023, 22 : 563 - 578
  • [6] Preliminary Risk and Mitigation Assessment in Cyber-Physical Systems
    Foldvari, Andras
    Brancati, Francesco
    Pataricza, Andras
    2023 53RD ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS WORKSHOPS, DSN-W, 2023, : 267 - 274
  • [7] Vulnerability Analysis and Risk Assessment of EV Charging System under Cyber-Physical Threats
    Reeh, Devin
    Tapia, Francisco Cruz
    Chung, Yu-Wei
    Khaki, Behnam
    Chu, Chicheng
    Gadh, Rajit
    2019 IEEE TRANSPORTATION ELECTRIFICATION CONFERENCE AND EXPO (ITEC), 2019,
  • [8] Dependency-based security risk assessment for cyber-physical systems
    Akbarzadeh, Aida
    Katsikas, Sokratis K.
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2023, 22 (03) : 563 - 578
  • [9] Quantitative Risk Modeling and Analysis for Large-Scale Cyber-Physical Systems
    Malik, Adeel A.
    Tosh, Deepak K.
    2020 29TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2020), 2020,
  • [10] Towards automatic discovery and assessment of vulnerability severity in cyber-physical systems
    Jiang, Yuning
    Atif, Yacine
    ARRAY, 2022, 15