Javascript must be enabled to continue!
ATTACKS ON CRITICAL CPS INFRASTRUCTURE
View through CrossRef
Smart grids, water treatment facilities, and industrial automation networks are examples of critical Cyber-Physical Systems (CPS) infrastructure which provides the backbone to today's societal functions. The growing convergence of Information Technology (IT) and Operational Technology (OT) also means that the connected environments are subject to new and increasing security challenges – in which an IT security vulnerability becomes an OT security vulnerability with high consequences for physical harm. Enterprise data confidentiality dominates traditional security research, but there is a critical research gap in the recognition and understanding of how advanced and physics-aware attackers can interact with operational control loops using stealthy, data-driven attack approaches that don't generate typical network anomalies. To fill this void, this chapter systematically examines the changing CPS threat landscape and maps vulnerabilities on architectural layers of the Purdue Model. The methodology is based on a control-loop taxonomy which assesses cyber-dependent actions, including False Data Injection Attacks (FDIA) and sensor replay maneuvers, and has been tested against prominent empirical case studies such as Stuxnet and the disruptions of the Ukraine power grid. Results of the key findings show that legacy OT protocols don't include the cryptographic strength needed to withstand coordinated multi-stage attacks, and that network-centric defenses don't detect anomalies at the physical state estimation layer. As such, the chapter is emphasizing the need for a paradigm change in the modern CPS defense that moves from traditional perimeter isolation to physics-aware intrusion detection systems and resilient and fault-tolerant control designs. In sum, this complete synthesis provides researchers, industrial engineers and policy makers with actionable technical advice to design next-generation secure-by-design critical infrastructure that will ensure Authors Ibrar Ahmed Department of Computer Science and Engineering, Noida Institute of Engineering and Technology Greater Noida, India Ibrarahmed@niet.co.in Surya Prakash Sharma Department of Computer Science and Engineering, Noida Institute of Engineering and Technology Greater Noida, India. suryaprakash.sharma@niet.co.in Dr. Mandeep Singh Katre Department of Computer Science Lingayas Vidyapeeth Faridabad, India mandeepkatre@gmail.com Nishu Niharika Department of Computer Science Noida Institute of Engineering and Technology, Greater Noida, India nishuniharika9884@gmail.com operational integrity in the presence of active exploitation.
Iterative International Publishers (IIP)
Title: ATTACKS ON CRITICAL CPS INFRASTRUCTURE
Description:
Smart grids, water treatment facilities, and industrial automation networks are examples of critical Cyber-Physical Systems (CPS) infrastructure which provides the backbone to today's societal functions.
The growing convergence of Information Technology (IT) and Operational Technology (OT) also means that the connected environments are subject to new and increasing security challenges – in which an IT security vulnerability becomes an OT security vulnerability with high consequences for physical harm.
Enterprise data confidentiality dominates traditional security research, but there is a critical research gap in the recognition and understanding of how advanced and physics-aware attackers can interact with operational control loops using stealthy, data-driven attack approaches that don't generate typical network anomalies.
To fill this void, this chapter systematically examines the changing CPS threat landscape and maps vulnerabilities on architectural layers of the Purdue Model.
The methodology is based on a control-loop taxonomy which assesses cyber-dependent actions, including False Data Injection Attacks (FDIA) and sensor replay maneuvers, and has been tested against prominent empirical case studies such as Stuxnet and the disruptions of the Ukraine power grid.
Results of the key findings show that legacy OT protocols don't include the cryptographic strength needed to withstand coordinated multi-stage attacks, and that network-centric defenses don't detect anomalies at the physical state estimation layer.
As such, the chapter is emphasizing the need for a paradigm change in the modern CPS defense that moves from traditional perimeter isolation to physics-aware intrusion detection systems and resilient and fault-tolerant control designs.
In sum, this complete synthesis provides researchers, industrial engineers and policy makers with actionable technical advice to design next-generation secure-by-design critical infrastructure that will ensure Authors Ibrar Ahmed Department of Computer Science and Engineering, Noida Institute of Engineering and Technology Greater Noida, India Ibrarahmed@niet.
co.
in Surya Prakash Sharma Department of Computer Science and Engineering, Noida Institute of Engineering and Technology Greater Noida, India.
suryaprakash.
sharma@niet.
co.
in Dr.
Mandeep Singh Katre Department of Computer Science Lingayas Vidyapeeth Faridabad, India mandeepkatre@gmail.
com Nishu Niharika Department of Computer Science Noida Institute of Engineering and Technology, Greater Noida, India nishuniharika9884@gmail.
com operational integrity in the presence of active exploitation.
Related Results
Analytik von Chlorparaffinen und Mineralöl‐Kohlenwasserstoffen in Lebensmitteln und Bedarfsgegenständen mittels GCxGC‐QTOG/MS
Analytik von Chlorparaffinen und Mineralöl‐Kohlenwasserstoffen in Lebensmitteln und Bedarfsgegenständen mittels GCxGC‐QTOG/MS
ZusammenfassungChlorparaffine (CPs, chlorinated paraffins) und Mineralöl‐Kohlenwasserstoffe (MOH, mineral oil hydrocarbons) sind komplexe Mischungen, die sich aus zehn‐ bis hundert...
Assessment of referrals between primary health centers and CPs and PPMVs for women requiring family planning in Nigeria: A mixed methods study
Assessment of referrals between primary health centers and CPs and PPMVs for women requiring family planning in Nigeria: A mixed methods study
Abstract
Expanding the task-sharing and task-shifting (TSTS) policy to include Community Pharmacists (CPs) and Patent and Proprietary Medicine Vend...
An Efficient Data-Balancing Cyber-Physical System Paradigm for Quality-of-Service (QoS) Provision over Fog Computing
An Efficient Data-Balancing Cyber-Physical System Paradigm for Quality-of-Service (QoS) Provision over Fog Computing
Cyber-physical systems (CPSs) have greatly contributed to many applications. A CPS is capable of integrating physical and computational capabilities to interact with individuals th...
Developing and Evaluating a New Consultation Service for Complex Psychosis in Kent, United Kingdom
Developing and Evaluating a New Consultation Service for Complex Psychosis in Kent, United Kingdom
Aims:
Complex psychosis, characterised by severe, treatment-resistant psychosis with associated functional impairment, is one of the most challenging conditions...
A systematic analysis of hypermucoviscosity and capsule reveals distinct and overlapping genes that impact Klebsiella pneumoniae fitness
A systematic analysis of hypermucoviscosity and capsule reveals distinct and overlapping genes that impact Klebsiella pneumoniae fitness
Hypervirulent
K
.
pneumoniae
(hvKp) is a distinct pathotype that causes invasive community-acquired ...
Community pharmacists’ knowledge, confidence, and perceived need for training on fall-risk increasing drugs and fall prevention: a cross-sectional study in Selangor, Malaysia
Community pharmacists’ knowledge, confidence, and perceived need for training on fall-risk increasing drugs and fall prevention: a cross-sectional study in Selangor, Malaysia
Abstract
Objectives
Community pharmacists (CPs) can offer fall prevention services to minimize fall risks among older people. To...
CO-DESIGNING A CULTURALLY INFORMED DEMENTIA SYMPTOM SELF-MANAGEMENT MHEALTH APP WITH CARE PARTNERS
CO-DESIGNING A CULTURALLY INFORMED DEMENTIA SYMPTOM SELF-MANAGEMENT MHEALTH APP WITH CARE PARTNERS
Abstract
Over 16 million care partners (CPs) in the U.S. provide more than 17 billion hours of unpaid care for family and friends living with dementia. Yet, signific...
A Deep Learning Driven Cloud Edge Intelligence Framework for Real-Time Big Data Based Cyber-Security Threat Detection
A Deep Learning Driven Cloud Edge Intelligence Framework for Real-Time Big Data Based Cyber-Security Threat Detection
Purpose: This paper proposes a Secure Unified Data Model (UDM) Approach that enhances data security, trust, and reliability in Cyber-Physical Systems (CPS) by addressing data secur...

