首页> 外文期刊>IEEE transactions on dependable and secure computing >Distributed Attack Detection in a Water Treatment Plant: Method and Case Study
【24h】

Distributed Attack Detection in a Water Treatment Plant: Method and Case Study

机译:水处理厂的分布攻击检测:方法和案例研究

获取原文
获取原文并翻译 | 示例

摘要

The rise in attempted and successful attacks on critical infrastructure, such as power grid and water treatment plants, has led to an urgent need for the creation and adoption of methods for detecting such attacks often launched either by insiders or state actors. This paper focuses on one such method that aims at the detection of attacks that compromise one or more actuators and sensors in a plant either through successful intrusion in the plant's communication network or directly through the plant computers. The method, labelled as Distributed Attack Detection (DAD), detects attacks in real-time by identifying anomalies in the behavior of the physical process in the plant. Anomalies are identified by using monitors that are implementations of invariants derived from the plant design. Each invariant must hold either throughout the plant operation, or when the plant is in a given state. The effectiveness of DAD was assessed experimentally on an operational water treatment plant named SWaT that is a near-replica of commercially available large treatment plants. The method used in DAD was found to be effective in detecting stealthy and coordinated attacks.
机译:企图和成功攻击对关键基础设施的攻击,如电网和水处理厂,导致迫切需要创建和采用检测经常通过内部人或国家演员推出的攻击的方法。本文侧重于一种这样的方法,该方法旨在通过在工厂的通信网络或直接通过植物计算机中的成功侵入植物中损害植物中的一个或多个执行器和传感器的攻击。该方法标记为分布式攻击检测(爸爸),通过识别工厂中物理过程行为的异常来检测攻击。通过使用来自植物设计的不变量的实施方式来识别异常。每个不变性必须在整个工厂操作中保持,或者当工厂处于给定状态时。在实验上评估爸爸的有效性在名为SWAT的运营水处理厂,是商业上可获得的大型处理厂的近复制品。发现爸爸使用的方法有效地检测隐身和协调的攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号