A controller design for mitigation of passive system identification attacks in networked control systems

被引:8
作者
de Sa, Alan O. [1 ,2 ]
da Costa Carmo, Luiz F. R. [1 ,3 ]
Machado, Raphael C. S. [3 ,4 ]
机构
[1] Univ Fed Rio de Janeiro, Inst Math, NCE, Av Athos da Silveira Ramos 274, BR-68530 Rio De Janeiro, Brazil
[2] Brazilian Navy, Admiral Wandenkolk Instruct Ctr, Rio De Janeiro, Brazil
[3] Natl Inst Metrol Qual & Technol, Av Nossa Senhora das Gracas 50, Rio De Janeiro, Brazil
[4] Rio De Janeiro Fed Ctr Technol Educ, Av Maracana 229, Rio De Janeiro, Brazil
关键词
Networked control system (NCS); Cyber-physical systems; Security; System identification attacks; Switching controller;
D O I
10.1186/s13174-017-0074-z
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The literature regarding attacks in Networked Control Systems (NCS) indicates that covert and accurate attacks must be designed based on an accurate knowledge about the model of the attacked system. In this context, the literature on NCS presents the Passive System Identification attack as a metaheuristic-based tool to provide the attacker with the required system models. However, the scientific literature does not report countermeasures to mitigate the identification process performed by such passive metaheuristic-based attack. In this sense, this work proposes the use of a randomly switching controller as a countermeasure for the Passive System Identification attack, in case of failure of other conventional security mechanisms - such as encryption, network segmentation and firewall policies. This novel countermeasure aims to hinder the identification of the controller, so that the model obtained by the attacker is imprecise or ambiguous, in such a way that the attacker hesitates to launch covert or model-dependent attacks against the NCS. The simulation results indicate that this countermeasure is capable to mitigate the mentioned attack at the same time that it performs a satisfactory plant control.
引用
收藏
页数:19
相关论文
共 50 条
[1]   Detection and Mitigation of False Data Injection Attacks in Networked Control Systems [J].
Sargolzaei, Arman ;
Yazdani, Kasra ;
Abbaspour, Alireza ;
Crane, Carl D., III ;
Dixon, Warren E. .
IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2020, 16 (06) :4281-4292
[3]   Exponential stabilization of networked control systems and design of switching controller [J].
Dan Ma ;
Jun Zhao .
Journal of Control Theory and Applications, 2006, 4 (1) :96-101
[4]   Countermeasure for Identification of Controlled Data Injection Attacks in Networked Control Systems [J].
de Sa, Alan Oliveira ;
Carmo, Luiz Fernando Rust da C. ;
Santos Machado, Raphael C. .
2019 IEEE INTERNATIONAL WORKSHOP ON METROLOGY FOR INDUSTRY 4.0 AND INTERNET OF THINGS (METROIND4.0&IOT), 2019, :455-459
[5]   Enhancing Networked Control System Resilience to TCP/IP Protocol DoS Attacks: Performance Analysis and Intelligent Controller Design [J].
Cai, Xiao ;
Sun, Yanbin ;
Shi, Kaibo ;
Xie, Xiangpeng ;
Soh, Yeng Chai ;
Qiao, Cheng ;
Tian, Zhihong .
IEEE TRANSACTIONS ON AUTOMATION SCIENCE AND ENGINEERING, 2025, 22 :6608-6618
[6]   An Intrusion Detection System for Cyber Attacks in Wireless Networked Control Systems [J].
Al-Dabbagh, Ahmad W. ;
Li, Yuzhe ;
Chen, Tongwen .
IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS II-EXPRESS BRIEFS, 2018, 65 (08) :1049-1053
[7]   Identification of Data Injection Attacks in Networked Control Systems Using Noise Impulse Integration [J].
de Sa, Alan Oliveira ;
Casimiro, Antonio ;
Machado, Raphael C. S. ;
Carmo, Luiz F. R. da C. .
SENSORS, 2020, 20 (03)
[8]   Dynamic Network Path Provisioning and Selection for the Detection and Mitigation of Data Tampering Attacks in Networked Control Systems [J].
Aida, Kento ;
Yamada, Kenta ;
Hotchi, Ryosuke ;
Kubo, Ryogo .
IEEE ACCESS, 2021, 9 :147430-147441
[9]   Estimation and Control of Networked Control Systems under Joint Attacks [J].
Yang, Jinghui ;
Hu, Songlin ;
Chen, Xiaoli ;
Xie, Xiangpeng ;
Ma, Yong .
2022 34TH CHINESE CONTROL AND DECISION CONFERENCE, CCDC, 2022, :1370-1375
[10]   Securing Networked Control Systems: Modeling Attacks and Defenses [J].
Jithish, J. ;
Sankaran, Sriram .
2017 IEEE INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS-ASIA (ICCE-ASIA), 2017, :7-11