返回
Extending critical infrastructure element longevity using constellation-based ID verification
DOI:10.1016/j.cose.2020.102073.png)
摘要
En 中文
This work supports a technical cradle-to-grave protection strategy aimed at extending the useful lifespan of Critical Infrastructure (CI) elements. This is done by improving mid-life operational protection measures through integration of reliable physical (PHY) layer security mechanisms. The goal is to improve existing protection that is heavily reliant on higher-layer mechanisms that are commonly targeted by cyberattack. Relative to prior device ID discrimination works, results herein reinforce the exploitability of constellation-based PHY layer features and the ability for those features to be practically implemented to enhance CI security. Prior work is extended by formalizing a device ID verification process that enables rogue device detection demonstration under physical access attack conditions that include unauthorised devices mimicking bit-level credentials of authorized network devices. The work transitions from distance-based to probability-based measures of similarity derived from empirical Multi-Variate Normal Probability Density Function (MVNPDF) statistics of multiple discriminant analysis radio frequency fingerprint projections. Demonstration results for Constellation-Based Distinct Native Attribute (CB-DNA) fingerprinting of WirelessHART adapters from two manufacturers includes 1) average cross-class percent correct classification of %C 90% across 28 different networks comprised of six authorized devices, and 2) average rogue rejection rate of 83.4% <= RRR <= 99.9% based on two held-out devices serving as attacking rogue devices for each network (a total of 120 individual rogue attacks). Using the MVNPDF measure proved most effective and yielded nearly 12% RRR improvement over a Euclidean distance measure. Published by Elsevier Ltd.
Keyword:
Classification
Verification
Rogue detection
Critical infrastructure
CI
Distinct native attribute
DNA
Multiple discriminant analysis
MDA
WirelessHART
AI总结
对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。
期刊
C
IF:
5.4
论文数:
4.6K
被引数:
1.4W
机构
引用论文
A Survey of Distance and Similarity Measures Used Within Network Intrusion Anomaly Detection网络入侵异常检测中使用的距离和相似性度量综述
没有更多内容

