...
首页> 外文期刊>Computers & Security >Context aware intrusion detection for building automation systems
【24h】

Context aware intrusion detection for building automation systems

机译:建筑自动化系统的上下文意识入侵检测

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

The Internet of Things (loT) will connect not only computers and mobile devices, but also smart cities, buildings, and homes, as well as electrical grids, gas, and water networks, automobiles, airplanes, etc. IoT will lead to extensive interconnection between Building Automation Systems (BAS) communication protocols and the Internet. The connection to Internet and public networks increases significantly the risk of the BAS networks being attacked, since there's a significant lack of detection and defensive mechanisms for BAS networks. In this paper, we present a framework for a context-aware intrusion detection of a widely deployed Building Automation and Control network. We developed runtime models for service interactions and functionality patterns by modeling the heterogeneous information that is continuously acquired from building assets into a novel BAS context aware data structure. Our IDS performs anomaly based behavior analysis to accurately detect anomalous events triggered by cyber-attacks or any functional failure. An attack classification and severity analysis of detected attacks allow our IDS to automatically launch protective countermeasures. We evaluate our approach in the Smart Building testbed developed at the University of Arizona Center for Cloud and Autonomic Computing, by launching several cyber-attacks that exploit the generic vulnerabilities of BACnet protocol. (C) 2019 Elsevier Ltd. All rights reserved.
机译:事物(地段)不仅可以连接计算机和移动设备,还可以连接智能城市,建筑物和房屋,以及电网,天然气和水网络,汽车,飞机等IOT将导致广泛的互连在建筑自动化系统(BAS)通信协议和互联网之间。与互联网和公共网络的联系显着增加了BAS网络遭到攻击的风险,因为BAS网络的检测和防御机制很大。在本文中,我们介绍了一个广泛部署的楼宇自动化和控制网络的上下文知识入侵检测的框架。我们通过将连续获取资产中的异构信息建模到新颖的BAC上下文意识数据结构中,开发了用于服务交互和功能模式的运行时模型。我们的IDS执行基于异常的行为分析,以准确地检测网络攻击触发的异常事件或任何功能故障。检测到的攻击的攻击分类和严重性分析允许我们的ID自动启动保护性对策。我们通过推出若干网络攻击来评估在亚利桑那大学开发的智能建筑测试用智能大厦的方法,通过推出利用BACnet协议的通用漏洞的多种网络攻击。 (c)2019 Elsevier Ltd.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号