SwePub
Sök i LIBRIS databas

  Utökad sökning

WFRF:(Johansson Karl Henrik 1967 )
 

Sökning: WFRF:(Johansson Karl Henrik 1967 ) > (2020) > Security Measure Al...

Security Measure Allocation for Industrial Control Systems : Exploiting Systematic Search Techniques and Submodularity

Miloševiç, Jezdimir (författare)
KTH,Reglerteknik
Teixeira, André (författare)
Uppsala universitet,Signaler och system
Tanaka, Takashi (författare)
visa fler...
Johansson, Karl H., 1967- (författare)
KTH,Reglerteknik,KTH, Stockholm
Sandberg, Henrik (författare)
KTH,Reglerteknik
visa färre...
 (creator_code:org_t)
2018-10-17
2020
Engelska.
Ingår i: International Journal of Robust and Nonlinear Control. - : Wiley. - 1049-8923 .- 1099-1239. ; 30:11, s. 4278-4302
  • Tidskriftsartikel (refereegranskat)
Abstract Ämnesord
Stäng  
  • To protect industrial control systems from cyberattacks, multiple layers of security measures need to be allocated to prevent critical security vulnerabilities. However, both finding the critical vulnerabilities and then allocating security measures in a cost‐efficient way become challenging when the number of vulnerabilities and measures is large. This paper proposes a framework that can be used once this is the case. In our framework, the attacker exploits security vulnerabilities to gain control over some of the sensors and actuators. The critical vulnerabilities are those that are not complex to exploit and can lead to a large impact on the physical world through the compromised sensors and actuators. To find these vulnerabilities efficiently, we propose an algorithm that uses the nondecreasing properties of the impact and complexity functions and properties of the security measure allocation problem to speed up the search. Once the critical vulnerabilities are located, the security measure allocation problem reduces to an integer linear program. Since integer linear programs are NP‐hard in general, we reformulate this problem as a problem of minimizing a linear set function subject to a submodular constraint. A polynomial time greedy algorithm can then be applied to obtain a solution with guaranteed approximation bound. The applicability of our framework is demonstrated on a control system used for regulation of temperature within a building.

Ämnesord

TEKNIK OCH TEKNOLOGIER  -- Elektroteknik och elektronik -- Reglerteknik (hsv//swe)
ENGINEERING AND TECHNOLOGY  -- Electrical Engineering, Electronic Engineering, Information Engineering -- Control Engineering (hsv//eng)

Nyckelord

cybersecurity
industrial control systems
risk
security measures
submodularity

Publikations- och innehållstyp

ref (ämneskategori)
art (ämneskategori)

Hitta via bibliotek

Till lärosätets databas

Sök utanför SwePub

Kungliga biblioteket hanterar dina personuppgifter i enlighet med EU:s dataskyddsförordning (2018), GDPR. Läs mer om hur det funkar här.
Så här hanterar KB dina uppgifter vid användning av denna tjänst.

 
pil uppåt Stäng

Kopiera och spara länken för att återkomma till aktuell vy