arrow
Return

A method for testing distributed anomaly detectors

delete2019-12-01
delete4
PRE
AI
G
Gayathri Sugumar *
A
Aditya P. Mathur
DOI:10.1016/j.ijcip.2019.100324delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Distributed anomaly detectors are deployed in critical infrastructure to raise alerts when the underlying plant deviates from its expected behaviour. A novel method, referred to as SCM, that uses well defined state and command mutation operators, is proposed to test such detectors prior to their deployment. Cyber-attacks, each modelled as a timed-automaton, serve as reference attacks. A potentially large set of attacks is then created by systematically applying the mutation operators to each reference attack. In a case study, SCM was applied to a timed-automata model of a water treatment plant to assess its effectiveness in testing a distributed anomaly detector. Results attest to the value of SCM in identifying weaknesses in an anomaly detector, prior to its deployment, and improving its effectiveness in detecting process anomalies. (C) 2019 Elsevier B.V. All rights reserved.
Keywords:
Attack model
Distributed anomaly detector
Critical infrastructure
Cyber-attacks
Cyber-physical systems
Industrial control systems
Testing
Timed-automata
Water treatment plant
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

International Journal of Critical Infrastructure Protection cover
International Journal of Critical Infrastructure Protection
IF:
5.3
Papers:
618
Citations:
1.3K

Organization

S
singapore university of technology & design
Scholars:
2.8K
Papers: 3.6K
Citations: 5
Cited Papers

Cited Papers

Stuxnet, the Real Start of Cyber Warfare?
err2010-11-01
err135
PREAI
errChen, Thomas M.
errShare
errSave
Magnetic properties of CoFe1.9RE0.1O4 nanoparticles (RE=La, Ce, Nd, Sm, Eu, Gd, Tb, Ho) prepared in polyol
err2008-12-01
err0
PREAI
errL. Ben Tahar; M. Artus; S. Ammar; L.S. Smiri; F. Herbst; M.-J. Vaulay; V. Richard; J.-M. Grenèche; F. Villain; F. Fiévet
errShare
errSave
Host-Based Intrusion Detection System with System Calls: Review and Future Trends
err2018-11-19
err101
PREAI
errLiu, Ming; Xue, Zhi; Xu, Xianghua; Zhong, Changmin; Chen, Jinjun
errShare
errSave
An Investigation of Coordinated Attack on Load Frequency Control
err2018-01-01
err33
errOAAI
errChen, Chunyu; Cui, Mingjian; Wang, Xinan; Zhang, Kaifeng; Yin, Shengfei
errShare
errSave
Understanding the physical and economic consequences of attacks on control systems
err2009-10-01
err158
PREAI
errHuang, Yu-Lun; Cardenas, Alvaro A.; Amin, Saurabh; Lin, Zong-Syun; Tsai, Hsin-Yi; Sastry, Shankar
errShare
errSave
Physiological and genetic adaptation of desert sheep and goats to heat stress in the arid areas of Egypt
err2021-10-01
err0
errOAAI
errA.M Aboul Naga; T.M. Abdel Khalek; Mona Osman; A.R. Elbeltagy; E.S. Abdel-Aal; F.F. Abou-Ammo; M.H. El-Shafie
errShare
errSave
researcher View more