A Cyber-Physical Risk Assessment Approach for Internet of Things Enabled Transportation Infrastructure

被引:13
作者
Ntafloukas, Konstantinos [1 ]
McCrum, Daniel P. [1 ]
Pasquale, Liliana [2 ]
机构
[1] Univ Coll Dublin, Sch Civil Engn, Dublin D07 R2WY, Ireland
[2] Univ Coll Dublin, Sch Comp Sci, Dublin D07 R2WY, Ireland
来源
APPLIED SCIENCES-BASEL | 2022年 / 12卷 / 18期
关键词
IoT; transportation infrastructure; threat source; vulnerability; physical impact; cyber-physical risk; control barriers; Monte Carlo; sensitivity analysis; SECURITY; BRIDGES; THREATS;
D O I
10.3390/app12189241
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Featured Application Cyber and physical security of transportation infrastructure. A critical transportation infrastructure integrated with the Internet of Things based wireless sensor network, operates as a cyber-physical system. However, the new form of IoT enabled transportation infrastructure is susceptible to cyber-physical attacks in the sensing area, due to inherent cyber vulnerabilities of IoT devices and deficient control barriers that could protect it. Traditional risk assessment processes, consider the physical and cyber space as isolated environments, resulting in IoT enabled transportation infrastructure not being assessed by stakeholders (i.e., operators, civil and security engineers) for cyber-physical attacks. In this paper, a new risk assessment approach for cyber-physical attacks against IoT based wireless sensor network is proposed. The approach relies on the identification and proposal of novel cyber-physical characteristics, in the aspect of threat source (e.g., motives), vulnerability (e.g., lack of authentication mechanisms) and types of physical impacts (e.g., casualties). Cyber-physical risk is computed as a product of the level and importance of these characteristics. Monte Carlo simulations and sensitivity analysis are performed to evaluate the results of an IoT enabled bridge subjected to cyber-physical attack scenarios. The results indicate that 76.6% of simulated cases have high-risk and control barriers operating in physical and cyber space can reduce the cyber-physical risk by 71.8%. Additionally, cyber-physical risk differentiates when the importance of the characteristics that are considered during risk assessment is overlooked. The approach is of interest to stakeholders who attempt to incorporate the cyber domain in risk assessment procedures of their system.
引用
收藏
页数:20
相关论文
共 77 条
[1]  
Agadakos I., 2017, P 2017 WORKSHOP CYBE
[2]  
[Anonymous], 2018, TERRORISM CYBER TERR
[3]  
[Anonymous], 2012, GUID COND RISK ASS
[4]   Smart Infrastructure: A Vision for the Role of the Civil Engineering Profession in Smart Cities [J].
Berglund, Emily Zechman ;
Monroe, Jacob G. ;
Ahmed, Ishtiak ;
Noghabaei, Mojtaba ;
Do, Jinung ;
Pesantez, Jorge E. ;
Fasaee, Mohammad Ali Khaksar ;
Bardaka, Eleni ;
Han, Kevin ;
Proestos, Giorgio T. ;
Levis, James .
JOURNAL OF INFRASTRUCTURE SYSTEMS, 2020, 26 (02)
[5]  
Bocchetti G, 2009, 2009 THIRD ACM/IEEE INTERNATIONAL CONFERENCE ON DISTRIBUTED SMART CAMERAS, P217, DOI 10.1109/ICDSC.2009.5289385
[6]   Security of the Internet of Things: Vulnerabilities, Attacks, and Countermeasures [J].
Butun, Ismail ;
Osterberg, Patrik ;
Song, Houbing .
IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2020, 22 (01) :616-644
[7]   Ghost-in-ZigBee: Energy Depletion Attack on ZigBee-Based Wireless Networks [J].
Cao, Xianghui ;
Shila, Devu Manikantan ;
Cheng, Yu ;
Yang, Zequ ;
Zhou, Yang ;
Chen, Jiming .
IEEE INTERNET OF THINGS JOURNAL, 2016, 3 (05) :816-829
[8]  
CAPEC Common Attack Pattern Enumeration and Classification, 2022, AB AS
[9]  
CARONTE, 2016, CREAT AG RES ON TRAN
[10]   Development of a wireless sensor network system for suspension bridge health monitoring [J].
Chae, M. J. ;
Yoo, H. S. ;
Kim, J. Y. ;
Cho, M. Y. .
AUTOMATION IN CONSTRUCTION, 2012, 21 :237-252