CyberDefender: an integrated intelligent defense framework for digital-twin-based industrial cyber-physical systems

被引:5
|
作者
Krishnaveni, S. [1 ]
Chen, Thomas M. [2 ]
Sathiyanarayanan, Mithileysh [3 ]
Amutha, B. [4 ]
机构
[1] SRM Inst Sci & Technol, Dept Computat Intelligence, Chennai, Tamil Nadu, India
[2] City Univ London, London, England
[3] MIT Sq, London, England
[4] SRM Inst Sci & Technol, Dept Comp Technol, Chennai 603203, Tamil Nadu, India
来源
CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS | 2024年 / 27卷 / 06期
关键词
Industrial cyber physical systems (ICPSs); Digital twin (DT); Intrusion detection system (IDS); Software-defined networking (SDN); Explainable AI (XAI); Honeynet; Deep learning (DL); ATTACK DETECTION; SECURITY; INTERNET; NETWORKS; SDN;
D O I
10.1007/s10586-024-04320-x
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The rise of digital twin-based operational improvements poses a challenge to protecting industrial cyber-physical systems. It is crucial to safeguard digital twins while disclosing internals, which can create an increased attack surface. However, leveraging digital twins to simulate attacks on physical infrastructure becomes essential for enhancing ICPS cybersecurity resilience. This paper introduces an integrated intelligent defense framework called CyberDefender to study various attacks on digital twin-based ICPS from a four-layer perspective (i.e., digital twin-based industrial cyber-physical systems infrastructure layer, honeynet and software-defined industrial network layer, intelligent security platform layer, and smart industrial application layer). To demonstrate its feasibility, we implemented a proof-of-concept (PoC) solution using open-source tools, including AWS for cloud infrastructure, T-Pot for Honeynet, Mininet for SDN support, ELK tools for data management, and Docker for containerization. This framework utilizes an integrated intelligent approach to enhance intrusion detection and classification capabilities for digital twin-based industrial cyber-physical systems (DT-ICPS). The proposed intrusion detection system (IDS) combines two strategies to improve security. First, we present an innovative approach to identifying essential features using explainable AI and ensemble-based filter feature selection (XAI-EFFS). By using Shapley Additive Explanations (SHAP), we analyze the impact of different variables on predictive outcomes. Secondly, we propose a hybrid GRU-LSTM deep-learning model for detecting and classifying intrusions. We optimize the hyperparameters of the GRU-LSTM model by using a Bayesian optimization algorithm. The proposed method demonstrates excellent performance, outperforming conventional state-of-the-art techniques with an accuracy rate of 98.96%, which is a remarkable improvement. Additionally, it effectively detects zero-day attacks, contributing to digital twin-based ICPS cybersecurity resilience.
引用
收藏
页码:7273 / 7306
页数:34
相关论文
共 50 条
  • [1] TwinSec-IDS: An Enhanced Intrusion Detection System in SDN-Digital-Twin-Based Industrial Cyber-Physical Systems
    Krishnaveni, S.
    Sivamohan, S.
    Jothi, B.
    Chen, Thomas M.
    Sathiyanarayanan, Mithileysh
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2025, 37 (03)
  • [2] Digital Twin-Based Cyber-Attack Detection Framework for Cyber-Physical Manufacturing Systems
    Balta, Efe C.
    Pease, Michael
    Moyne, James
    Barton, Kira
    Tilbury, Dawn M.
    IEEE TRANSACTIONS ON AUTOMATION SCIENCE AND ENGINEERING, 2024, 21 (02) : 1695 - 1712
  • [3] The architectural framework of a cyber physical logistics system for digital-twin-based supply chain control
    Park, Kyu Tae
    Son, Yoo Ho
    Noh, Sang Do
    INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 2021, 59 (19) : 5721 - 5742
  • [4] An intelligent cognitive computing based intrusion detection for industrial cyber-physical systems
    Althobaiti, Maha M.
    Kumar, K. Pradeep Mohan
    Gupta, Deepak
    Kumar, Sachin
    Mansour, Romany F.
    MEASUREMENT, 2021, 186
  • [5] Cybersecurity of Industrial Cyber-Physical Systems: A Review
    Kayan, Hakan
    Nunes, Matthew
    Rana, Omer
    Burnap, Pete
    Perera, Charith
    ACM COMPUTING SURVEYS, 2022, 54 (11S)
  • [6] A Moving Target Defense Control Framework for Cyber-Physical Systems
    Kanellopoulos, Aris
    Vamvoudakis, Kyriakos G.
    IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2020, 65 (03) : 1029 - 1043
  • [7] A Smart Digital Twin Enabled Security Framework for Vehicle-to-Grid Cyber-Physical Systems
    Ali, Mansoor
    Kaddoum, Georges
    Li, Wen-Tai
    Yuen, Chau
    Tariq, Muhammad
    Poor, H. Vincent
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 5258 - 5271
  • [8] ENIGMA: An explainable digital twin security solution for cyber-physical systems
    Suhail, Sabah
    Iqbal, Mubashar
    Hussain, Rasheed
    Jurdak, Raja
    COMPUTERS IN INDUSTRY, 2023, 151
  • [9] Cloud-assisted industrial cyber-physical systems: An insight
    Yue, Xuejun
    Cai, Hu
    Yan, Hehua
    Zou, Caifeng
    Zhou, Keliang
    MICROPROCESSORS AND MICROSYSTEMS, 2015, 39 (08) : 1262 - 1270
  • [10] Cyber-Physical Systems for Industrial Applications
    Gaiceanu, Marian
    2019 6TH INTERNATIONAL SYMPOSIUM ON ELECTRICAL AND ELECTRONICS ENGINEERING (ISEEE), 2019,