Leveraging Digital Twins and Intrusion Detection Systems for Enhanced Security in IoT-Based Smart City Infrastructures

被引:4
作者
El-Hajj, Mohammed [1 ,2 ]
机构
[1] Univ Twente, Dept Semant Cybersecur & Serv, NL-7522 Enschede, Netherlands
[2] Arab Open Univ AOU, Fac Comp Studies FCS, Beirut 20584518, Oman
关键词
cybersecurity; Digital Twin; intrusion detection system; Hping3; NMAP; Eclipse Ditto; cyber-physical systems; ARTIFICIAL-INTELLIGENCE;
D O I
10.3390/electronics13193941
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this research, we investigate the integration of an Intrusion Detection System (IDS) with a Digital Twin (DT) to enhance the cybersecurity of physical devices in cyber-physical systems. Using Eclipse Ditto as the DT platform and Snort as the IDS, we developed a near-realistic test environment that included a Raspberry Pi as the physical device and a Kali Linux virtual machine to perform common cyberattacks such as Hping3 flood attacks and NMAP reconnaissance scans. The results demonstrated that the IDS effectively detected Hping3-based flood attacks but showed limitations in identifying NMAP scans, suggesting areas for IDS configuration improvements. Furthermore, the study uncovered significant system resource impacts, including high Central Processing Unit (CPU) usage during SYN and ACK flood attacks and persistent memory usage after Network Mapper (NMAP) scans, highlighting the need for enhanced recovery mechanisms. This research presents a novel approach by coupling a Digital Twin with an IDS, enabling real-time monitoring and providing a dual perspective on both system performance and security. The integration offers a holistic method for identifying vulnerabilities and understanding resource impacts during cyberattacks. The work contributes new insights into the use of Digital Twins for cybersecurity and paves the way for further research into automated defense mechanisms, real-world validation of the proposed model, and the incorporation of additional attack scenarios. The results suggest that this combined approach holds significant promise for enhancing the security and resilience of IoT devices and other cyber-physical systems.
引用
收藏
页数:24
相关论文
共 22 条
[1]   On big data, artificial intelligence and smart cities [J].
Allam, Zaheer ;
Dhunny, Zaynah A. .
CITIES, 2019, 89 :80-91
[2]   Understanding Smart Cities: Innovation ecosystems, technological advancements, and societal challenges [J].
Appio, Francesco Paolo ;
Lima, Marcos ;
Paroutis, Sotirios .
TECHNOLOGICAL FORECASTING AND SOCIAL CHANGE, 2019, 142 :1-14
[3]   Digital Twin Smart Cities for Disaster Risk Management: A Review of Evolving Concepts [J].
Ariyachandra, M. R. Mahendrini Fernando ;
Wedawatta, Gayan .
SUSTAINABILITY, 2023, 15 (15)
[4]   A New Concept of Digital Twin Supporting Optimization and Resilience of Factories of the Future [J].
Becue, Adrien ;
Maia, Eva ;
Feeken, Linda ;
Borchers, Philipp ;
Praca, Isabel .
APPLIED SCIENCES-BASEL, 2020, 10 (13)
[5]  
Damjanovic-Behrendt V, 2018, 2018 9TH INTERNATIONAL CONFERENCE ON INTELLIGENT SYSTEMS (IS), P272, DOI 10.1109/IS.2018.8710526
[6]   Urban Digital Twins for Smart Cities and Citizens: The Case Study of Herrenberg, Germany [J].
Dembski, Fabian ;
Woessner, Uwe ;
Letzgus, Mike ;
Ruddat, Michael ;
Yamu, Claudia .
SUSTAINABILITY, 2020, 12 (06)
[7]   Towards Security-Aware Virtual Environments for Digital Twins [J].
Eckhart, Matthias ;
Ekelhart, Andreas .
CPSS'18: PROCEEDINGS OF THE 4TH ACM WORKSHOP ON CYBER-PHYSICAL SYSTEM SECURITY, 2018, :61-72
[8]  
El-Hajj M., 2020, Secure PUF: physically unclonable function based on arbiter with enhanced resistance against machine learning (ML) attacks
[9]   Systematic literature review: Digital twins' role in enhancing security for Industry 4.0 applications [J].
El-Hajj, Mohammed ;
Itaepelto, Taru ;
Gebremariam, Teklit .
SECURITY AND PRIVACY, 2024, 7 (05)
[10]   A Survey of Internet of Things (IoT) Authentication Schemes [J].
El-hajj, Mohammed ;
Fadlallah, Ahmad ;
Chamoun, Maroun ;
Serhrouchni, Ahmed .
SENSORS, 2019, 19 (05)