Modeling and Assessing the Impacts of Cyber Threats on Interdependent Critical Infrastructures

被引:0
作者
Bonagura, Valeria [1 ]
Foglietta, Chiara [1 ]
Panzieri, Stefano [1 ]
Rossi, Massimiliano [2 ]
Santini, Riccardo [2 ]
Scannapieco, Monica [2 ]
Franchina, Luisa [3 ]
机构
[1] Univ Roma Tre, Rome, Italy
[2] Natl Cybersecur Agcy, Rome, Italy
[3] Hermes Bay, Rome, Italy
来源
CRITICAL INFRASTRUCTURE PROTECTION XVII, ICCIP 2023 | 2024年 / 686卷
关键词
Critical Infrastructure Modeling; Simulation; Cyber Attacks; Cyber Impacts; Italian National Security Perimeter for Cyber; SIMULATION; SECURITY;
D O I
10.1007/978-3-031-49585-4_7
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Critical infrastructures are complex networks with physical, geographical, logical and cyber interdependencies whose disruption can cause serious impacts to citizenry and society. Meanwhile, the use of information and communications technology to manage physical processes in critical infrastructure assets has significantly increased their cyber attack surfaces. The increased threats have led to the creation of national and international cyber security agencies to promote awareness of cyber threats and coordinate responses to cyber attacks. In 2019, Italy set up the National Security Perimeter for Cyber, a regulatory construct that stipulates measures for guaranteeing the safety and security of public and private entities that provide essential functions and services. The law associated with the regulatory construct requires the covered entities to accurately describe their networks, information and communications technology systems and related services. The 2021 Italian legislation that established the National Cybersecurity Agency requires all National Security Perimeter for Cyber entities to inform the national agency about their assets. The National Cybersecurity Agency also collects detailed infrastructure information as well as reports about cyber attacks from the entities. This chapter describes an ongoing research effort that supports Italian legislative requirements. In particular, it demonstrates how the consequences of cyber threats can be assessed in complex scenarios using an agent-based simulator that evaluates the National Cybersecurity Agency model under ransomware and distributed-denial-of-service attacks on interconnected Italian infrastructures.
引用
收藏
页码:143 / 163
页数:21
相关论文
共 31 条
[1]   Industrial Control Systems: Cyberattack trends and countermeasures [J].
Alladi, Tejasvi ;
Chamola, Vinay ;
Zeadally, Sherali .
COMPUTER COMMUNICATIONS, 2020, 155 :1-8
[2]   The Challenge of Critical Infrastructure Dependency Modelling and Simulation for Emergency Management and Decision Making by the Civil Security Authorities [J].
Amelie, Grangeat ;
Aurelia, Bony ;
Emmanuel, Lapebie ;
Mohamed, Eid ;
Gilles, Dusserre .
CRITICAL INFORMATION INFRASTRUCTURES SECURITY, CRITIS 2015, 2016, 9578 :255-258
[3]  
Assante M., 2015, White Paper
[4]  
Bernardini E, 2020, INT C CRIT INFR PROT, P325
[5]  
Cyber and Infrastructure Security Centre, 2015, CIPMA: Critical Infrastructure, Program for Modeling and Analysis
[6]  
Digioia G., 2012, 2012 European Intelligence and Security Informatics Conference (EISIC), P123, DOI 10.1109/EISIC.2012.30
[7]  
Dudley R., 2021, ProPublica
[8]  
European Cybersecurity Competence Centre and Network, 2023, About us
[9]  
European Network and Information Security Agency, 2022, ENISA Threat Landscape for Ransomware Attacks
[10]  
European Parliament and the Council of the European Union, 2016, Document 32016L1148