We gratefully acknowledge support from
the Simons Foundation and member institutions.
Full-text links:

Download:

Current browse context:

cs.CR

Change to browse by:

cs

References & Citations

DBLP - CS Bibliography

Bookmark

(what is this?)
CiteULike logo BibSonomy logo Mendeley logo del.icio.us logo Digg logo Reddit logo

Computer Science > Cryptography and Security

Title: Towards Systematically Deriving Defence Mechanisms from Functional Requirements of Cyber-Physical Systems

Abstract: The threats faced by cyber-physical systems (CPSs) in critical infrastructure have motivated the development of different attack detection mechanisms, such as those that monitor for violations of invariants, i.e. properties that always hold in normal operation. Given the complexity of CPSs, several existing approaches focus on deriving invariants automatically from data logs, but these can miss possible system behaviours if they are not represented in that data. Furthermore, resolving any design flaws identified in this process is costly, as the CPS is already built. In this position paper, we propose a systematic method for deriving invariants before a CPS is built by analysing its functional requirements. Our method, inspired by the axiomatic design methodology for systems, iteratively analyses dependencies in the design to construct equations and process graphs that model the invariant relationships between CPS components. As a preliminary study, we applied it to the design of a water treatment plant testbed, implementing checkers for two invariants by using decision trees, and finding that they could detect some examples of attacks on the testbed with high accuracy and without false positives. Finally, we explore how developing our method further could lead to more robust CPSs and reduced costs by identifying design weaknesses before systems are implemented.
Comments: Accepted by the ACM Cyber-Physical System Security Workshop (CPSS 2020)
Subjects: Cryptography and Security (cs.CR)
Journal reference: In Proc. ACM Cyber-Physical System Security Workshop (CPSS 2020), pages 11-22. ACM, 2020
DOI: 10.1145/3384941.3409589
Cite as: arXiv:2007.03651 [cs.CR]
  (or arXiv:2007.03651v2 [cs.CR] for this version)

Submission history

From: Christopher M. Poskitt [view email]
[v1] Tue, 7 Jul 2020 17:40:13 GMT (300kb,D)
[v2] Fri, 25 Sep 2020 05:31:03 GMT (300kb,D)

Link back to: arXiv, form interface, contact.