Title
Detection and Mitigation of Classes of Attacks in Supervisory Control Systems.
Abstract
The deployment of control systems with network-connected components has made feedback control systems vulnerable to attacks over the network. This paper considers the problem of intrusion detection and mitigation in supervisory control systems, where the attacker has the ability to enable or disable vulnerable actuator commands and erase or insert vulnerable sensor readings. We present a mathematical model for the system under certain classes of actuator enablement attacks, sensor erasure attacks, or sensor insertion attacks. We then propose a defense strategy that aims to detect such attacks online and disables all controllable events after an attack is detected. We develop an algorithmic procedure for verifying whether the system can prevent damage from the attacks considered with the proposed defense strategy, where damage is modeled as the reachability of a pre-defined set of unsafe system states. The technical condition of interest that is necessary and sufficient in this context, termed “GF-safe controllability”, is characterized. We show that the verification of GF-safe controllability can be performed using diagnoser or verifier automata. Finally, we illustrate the methodology with a traffic control system example.
Year
DOI
Venue
2018
10.1016/j.automatica.2018.07.017
Automatica
Keywords
DocType
Volume
Discrete event systems,Automata,Failure diagnosis,Cyber-attacks
Journal
97
Issue
ISSN
Citations 
1
0005-1098
9
PageRank 
References 
Authors
0.64
9
4
Name
Order
Citations
PageRank
Lilian K. Carvalho1576.84
Yi-Chin Wu2322.77
Raymond Y. Kwong391.31
StéPhane Lafortune41738181.23