Proactive Measures for Cyber-Physical Systems Cybersecurity

Kamal Taha
{"title":"Proactive Measures for Cyber-Physical Systems Cybersecurity","authors":"Kamal Taha","doi":"10.1109/CSR57506.2023.10224929","DOIUrl":null,"url":null,"abstract":"Reactive security measures for cyber-physical systems (CPS) are ineffective. It is imperative for replacing these measures with proactive ones for the sustainability of the CPS cybersecurity. We introduce a novel proactive methodology for CPS cybersecurity. We implemented this methodology in a system called CPM-CPS. The methodology is summarized as follows: (a) clustering the CPS devices with LAN-based network sharing, (b) identifying the influential devices in each cluster, and (c) identifying the central devices at the WAN level that have network sharing with the influential devices in the different clusters. The file sharing of the identified influential devices at both LAN and WAN levels needs to be paid more attention to. Such measures can help in detecting potential security risks and preventing cyber-attacks against these influential devices before they share their infected files with other devices. Security equipment like intrusion detection systems can be provided to these influential devices. We introduce in this paper novel k-clique-based modeling techniques for clustering LAN devices. We introduce novel techniques for identifying LAN and WAN influential devices using coefficient-based and Independent Cascades-based modeling techniques. We experimentally evaluated our system CPM-CPS and compared it with four methods. Results showed marked improvement.","PeriodicalId":354918,"journal":{"name":"2023 IEEE International Conference on Cyber Security and Resilience (CSR)","volume":"79 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-07-31","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2023 IEEE International Conference on Cyber Security and Resilience (CSR)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CSR57506.2023.10224929","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

Reactive security measures for cyber-physical systems (CPS) are ineffective. It is imperative for replacing these measures with proactive ones for the sustainability of the CPS cybersecurity. We introduce a novel proactive methodology for CPS cybersecurity. We implemented this methodology in a system called CPM-CPS. The methodology is summarized as follows: (a) clustering the CPS devices with LAN-based network sharing, (b) identifying the influential devices in each cluster, and (c) identifying the central devices at the WAN level that have network sharing with the influential devices in the different clusters. The file sharing of the identified influential devices at both LAN and WAN levels needs to be paid more attention to. Such measures can help in detecting potential security risks and preventing cyber-attacks against these influential devices before they share their infected files with other devices. Security equipment like intrusion detection systems can be provided to these influential devices. We introduce in this paper novel k-clique-based modeling techniques for clustering LAN devices. We introduce novel techniques for identifying LAN and WAN influential devices using coefficient-based and Independent Cascades-based modeling techniques. We experimentally evaluated our system CPM-CPS and compared it with four methods. Results showed marked improvement.
网络物理系统网络安全的主动措施
针对网络物理系统(CPS)的被动安全措施是无效的。为了CPS网络安全的可持续性,必须采取主动措施来取代这些措施。我们为CPS网络安全引入了一种新颖的主动方法。我们在一个叫做CPM-CPS的系统中实现了这个方法。该方法总结如下:(a)将CPS设备与基于lan的网络共享聚类,(b)确定每个集群中有影响力的设备,以及(c)确定WAN级别的中心设备,这些设备与不同集群中有影响力的设备共享网络。确定的影响设备在局域网和广域网两级的文件共享需要得到更多的关注。这些措施可以帮助检测潜在的安全风险,防止这些有影响力的设备在与其他设备共享受感染的文件之前受到网络攻击。可以为这些有影响的设备提供入侵检测系统等安全设备。本文介绍了一种新的基于k-团的局域网设备集群建模技术。我们介绍了使用基于系数和基于独立级联的建模技术来识别LAN和WAN影响设备的新技术。实验评估了该系统的CPM-CPS,并与四种方法进行了比较。结果显示明显改善。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信