Detecting covert channel attacks on cyber-physical systems

被引:2
作者
Li, Hongwei [1 ]
Chasaki, Danai [1 ]
机构
[1] Villanova Univ, Dept Elect & Comp Engn, Villanova, PA 19085 USA
关键词
cyber-physical systems; entropy; security of data; INTRUSION DETECTION; CLASSIFICATION;
D O I
10.1049/cps2.12078
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyberattacks on cyber-physical systems (CPS) have the potential to cause widespread disruption and affect the safety of millions of people. Machine learning can be an effective tool for detecting attacks on CPS, including the most stealthy types of attacks, known as covert channel attacks. In this study, the authors describe a novel hierarchical ensemble architecture for detecting covert channel attacks in CPS. Our proposed approach uses a combination of TCP payload entropy and network flows for feature engineering. Our approach achieves high detection performance, shortens the model training duration, and shows promise for effective detection of covert channel communications. This novel architecture closely mirrors the CPS attack stages in real-life, providing flexibility and adaptability in detecting new types of attacks. In this work, the authors discuss the advantages of ensemble machine learning techniques in the detection of covert channel attacks in Cyber-Physical systems. The authors then propose a novel machine learning detection system with real-time detection throughput.image
引用
收藏
页码:228 / 237
页数:10
相关论文
共 50 条
[41]   Estimators for cyber-physical systems subjected to sparse attacks and disturbances [J].
Zhang, Mukai ;
Alenezi, Badriah ;
Hui, Stefen ;
Gupta, Vijay ;
Zak, Stanislaw H. .
INTERNATIONAL JOURNAL OF CONTROL, 2025,
[42]   Security Against Communication Network Attacks of Cyber-Physical Systems [J].
Lima, Publio Macedo ;
Silva Alves, Marcos Vinicius ;
Carvalho, Lilian Kawakami ;
Moreira, Marcos Vicente .
JOURNAL OF CONTROL AUTOMATION AND ELECTRICAL SYSTEMS, 2019, 30 (01) :125-135
[43]   The Chatty-Sensor: A Provably-covert Channel in Cyber Physical Systems [J].
Herzberg, Amir ;
Kfir, Yehonatan .
35TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE (ACSA), 2019, :638-649
[44]   Detecting insider attacks in medical cyber-physical networks based on behavioral profiling [J].
Meng, Weizhi ;
Li, Wenjuan ;
Wang, Yu ;
Au, Man Ho .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 108 :1258-1266
[45]   Cyber-physical Systems [J].
Wolf, Wayne .
COMPUTER, 2009, 42 (03) :88-89
[46]   Cyber-Physical Systems [J].
Letichevsky A.A. ;
Letychevskyi O.O. ;
Skobelev V.G. ;
Volkov V.A. .
Letichevsky, A.A. (aaletichevsky78@gmail.com), 2017, Springer Science and Business Media, LLC (53) :821-834
[47]   From Design to Invariants: Detecting Attacks on Cyber Physical Systems [J].
Adepu, Sridhar ;
Mathur, Aditya .
2017 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY COMPANION (QRS-C), 2017, :533-540
[48]   Sliding mode strategies for monitoring and compensation of cyber-attacks to Cyber-Physical Systems [J].
Filho, Jair L. Azevedo ;
Nunes, Eduardo V. L. ;
Hsu, L. .
IFAC PAPERSONLINE, 2020, 53 (02) :5159-5164
[49]   Detecting Cyber-Attacks Against Cyber-Physical Manufacturing System: A Machining Process Invariant Approach [J].
Li, Zedong ;
Chen, Xin ;
Chen, Yuqi ;
Li, Shijie ;
Wang, Hangyu ;
Lv, Shichao ;
Sun, Limin .
IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (10) :17602-17614
[50]   Monitoring Cyber-Physical Systems Using a Tiny Twin to Prevent Cyber-Attacks [J].
Moradi, Fereidoun ;
Bagheri, Maryam ;
Rahmati, Hanieh ;
Yazdi, Hamed ;
Asadollah, Sara Abbaspour ;
Sirjani, Marjan .
MODEL CHECKING SOFTWARE, SPIN 2022, 2022, 13255 :24-43