CyberDefender: an integrated intelligent defense framework for digital-twin-based industrial cyber-physical systems

被引:5
|
作者
Krishnaveni, S. [1 ]
Chen, Thomas M. [2 ]
Sathiyanarayanan, Mithileysh [3 ]
Amutha, B. [4 ]
机构
[1] SRM Inst Sci & Technol, Dept Computat Intelligence, Chennai, Tamil Nadu, India
[2] City Univ London, London, England
[3] MIT Sq, London, England
[4] SRM Inst Sci & Technol, Dept Comp Technol, Chennai 603203, Tamil Nadu, India
来源
CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS | 2024年 / 27卷 / 06期
关键词
Industrial cyber physical systems (ICPSs); Digital twin (DT); Intrusion detection system (IDS); Software-defined networking (SDN); Explainable AI (XAI); Honeynet; Deep learning (DL); ATTACK DETECTION; SECURITY; INTERNET; NETWORKS; SDN;
D O I
10.1007/s10586-024-04320-x
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The rise of digital twin-based operational improvements poses a challenge to protecting industrial cyber-physical systems. It is crucial to safeguard digital twins while disclosing internals, which can create an increased attack surface. However, leveraging digital twins to simulate attacks on physical infrastructure becomes essential for enhancing ICPS cybersecurity resilience. This paper introduces an integrated intelligent defense framework called CyberDefender to study various attacks on digital twin-based ICPS from a four-layer perspective (i.e., digital twin-based industrial cyber-physical systems infrastructure layer, honeynet and software-defined industrial network layer, intelligent security platform layer, and smart industrial application layer). To demonstrate its feasibility, we implemented a proof-of-concept (PoC) solution using open-source tools, including AWS for cloud infrastructure, T-Pot for Honeynet, Mininet for SDN support, ELK tools for data management, and Docker for containerization. This framework utilizes an integrated intelligent approach to enhance intrusion detection and classification capabilities for digital twin-based industrial cyber-physical systems (DT-ICPS). The proposed intrusion detection system (IDS) combines two strategies to improve security. First, we present an innovative approach to identifying essential features using explainable AI and ensemble-based filter feature selection (XAI-EFFS). By using Shapley Additive Explanations (SHAP), we analyze the impact of different variables on predictive outcomes. Secondly, we propose a hybrid GRU-LSTM deep-learning model for detecting and classifying intrusions. We optimize the hyperparameters of the GRU-LSTM model by using a Bayesian optimization algorithm. The proposed method demonstrates excellent performance, outperforming conventional state-of-the-art techniques with an accuracy rate of 98.96%, which is a remarkable improvement. Additionally, it effectively detects zero-day attacks, contributing to digital twin-based ICPS cybersecurity resilience.
引用
收藏
页码:7273 / 7306
页数:34
相关论文
共 50 条
  • [21] Coordinated Cyber Physical Attacks and Defense Strategy in Cyber-Physical Power Systems Based on Game Theory
    Yang, Jun
    Zhao, Yulong
    Dong, Chenchen
    JOURNAL OF ELECTRICAL ENGINEERING & TECHNOLOGY, 2025,
  • [22] Cyber-Physical Systems Improving Building Energy Management: Digital Twin and Artificial Intelligence
    Agostinelli, Sofia
    Cumo, Fabrizio
    Guidi, Giambattista
    Tomazzoli, Claudio
    ENERGIES, 2021, 14 (08)
  • [23] Digital Twin for Secure Peer-to-Peer Trading in Cyber-Physical Energy Systems
    Li, Yushuai
    Guan, Peiyuan
    Li, Tianyi
    Larsen, Kim Guldstrand
    Aiello, Marco
    Pedersen, Torben Bach
    Huang, Tingwen
    Zhang, Yan
    IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING, 2025, 12 (02): : 669 - 683
  • [24] CommandFence: A Novel Digital-Twin-Based Preventive Framework for Securing Smart Home Systems
    Xiao, Yinhao
    Jia, Yizhen
    Hu, Qin
    Cheng, Xiuzhen
    Gong, Bei
    Yu, Jiguo
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (03) : 2450 - 2465
  • [25] An integrated data-driven scheme for the defense of typical cyber-physical attacks
    Wu, Shimeng
    Jiang, Yuchen
    Luo, Hao
    Zhang, Jiusi
    Yin, Shen
    Kaynak, Okyay
    RELIABILITY ENGINEERING & SYSTEM SAFETY, 2022, 220
  • [26] Towards the Integration of Modern Power Systems into a Cyber-Physical Framework
    Konstantopoulos, George C.
    Alexandridis, Antonio T.
    Papageorgiou, Panos C.
    ENERGIES, 2020, 13 (09)
  • [27] Digital-Twin-Based Fire Safety Management Framework for Smart Buildings
    Almatared, Manea
    Liu, Hexu
    Abudayyeh, Osama
    Hakim, Obaidullah
    Sulaiman, Mohammed
    BUILDINGS, 2024, 14 (01)
  • [28] Assessing the Physical Impact of Cyberattacks on Industrial Cyber-Physical Systems
    Huang, Kaixing
    Zhou, Chunjie
    Tian, Yu-Chu
    Yang, Shuanghua
    Qin, Yuanqing
    IEEE TRANSACTIONS ON INDUSTRIAL ELECTRONICS, 2018, 65 (10) : 8153 - 8162
  • [29] A Blockchain-based Security Management Framework for Cyber-Physical Systems
    Das, Debashis
    Banerjee, Sourav
    Chakraborty, Rakhi
    Dasgupta, Kousik
    Chatterjee, Pushpita
    Ghosh, Uttam
    2023 IEEE/ACM 23RD INTERNATIONAL SYMPOSIUM ON CLUSTER, CLOUD AND INTERNET COMPUTING WORKSHOPS, CCGRIDW, 2023, : 39 - 44
  • [30] A decision-making framework for dynamic scheduling of cyber-physical production systems based on digital twins
    Villalonga, Alberto
    Negri, Elisa
    Biscardo, Giacomo
    Castano, Fernando
    Haber, Rodolfo E.
    Fumagalli, Luca
    Macchi, Marco
    ANNUAL REVIEWS IN CONTROL, 2021, 51 : 357 - 373