Distributed Detection of Single-Stage Multipoint Cyber Attacks in a Water Treatment Plant
- 30 May 2016
- conference paper
- conference paper
- Published by Association for Computing Machinery (ACM) in Proceedings of the 11th ACM on Asia Conference on Computer and Communications Security
- p. 449-460
- https://doi.org/10.1145/2897845.2897855
Abstract
A distributed detection method is proposed to detect single stage multi-point (SSMP) attacks on a Cyber Physical System (CPS). Such attacks aim at compromising two or more sensors or actuators at any one stage of a CPS and could totally compromise a controller and prevent it from detecting the attack. However, as demonstrated in this work, using the flow properties of water from one stage to the other, a neighboring controller was found effective in detecting such attacks. The method is based on physical invariants derived for each stage of the CPS from its design. The attack detection effectiveness of the method was evaluated experimentally against an operational water treatment testbed containing 42 sensors and actuators. Results from the experiments point to high effectiveness of the method in detecting a variety of SSMP attacks but also point to its limitations. Distributing the attack detection code among various controllers adds to the scalability of the proposed method.Keywords
Funding Information
- National Research Foundation (NRF), Prime Minister's Office, Singapore (NRF2014NCR-NCR001-40)
This publication has 15 references indexed in Scilit:
- Introducing Cyber Security at the Design Stage of Public Infrastructures: A Procedure and Case StudyPublished by Springer Science and Business Media LLC ,2016
- Intrusion Detection in Cyber-Physical Systems: Techniques and ChallengesIEEE Systems Journal, 2014
- Cyber-attack detection based on controlled invariant setsPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2014
- Aspect-oriented Modeling of Attacks in Automotive Cyber-Physical SystemsPublished by Association for Computing Machinery (ACM) ,2014
- Distributed estimation and control of water distribution networks by logical consensusPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2014
- Security analysis for Cyber-Physical Systems against stealthy deception attacksPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2013
- Water distribution systems event detectionPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2012
- Robust and resilient control design for cyber-physical systems with an application to power systemsPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2011
- Safe and Secure Networked Control Systems under Denial-of-Service AttacksLecture Notes in Computer Science, 2009
- Set invariance in controlAutomatica, 1999