Loading...

PLCDefender: Improving remote attestation techniques for PLCs using physical model

Salehi, M ; Sharif University of Technology | 2020

419 Viewed
  1. Type of Document: Article
  2. DOI: 10.1109/JIOT.2020.3040237
  3. Publisher: Institute of Electrical and Electronics Engineers Inc , 2020
  4. Abstract:
  5. In order to guarantee the security of industrial control system (ICS) processes, the proper functioning of the programmable logic controllers (PLCs) must be ensured. In particular, cyber-attacks can manipulate the PLC control logic program and cause terrible damage that jeopardize people’s life when bringing the state of the critical system into an unreliable state. Unfortunately, no remote attestation technique has yet been proposed that can validate the PLC control logic program using a physics-based model that demonstrates device behavior. In this paper, we propose PLCDefender, a mitigation method that combines hybrid remote attestation technique with a physics-based model to preserve the control behavior integrity of ICS. We implemented PLCDefender and evaluated its effectiveness against a wide range of attacks on a Secure Water Treatment (SWaT) facility. As our evaluation shows, we can model PLC physical behavior with accuracy as high as 98%. The evaluation results show that by determining the different threshold values, PLCDefender can accurately detect a wide range of attack scenarios on PLCs. IEEE
  6. Keywords:
  7. Anomaly detection ; Behavior-based attestation ; Internet of things ; Physics-based model ; Logic programming ; Network security ; Programmable logic controllers ; Water treatment ; Attack scenarios ; Critical systems ; Evaluation results ; Industrial control systems ; Mitigation methods ; Physical behaviors ; Physics-based modeling ; Remote attestation ; Computer circuits
  8. Source: IEEE Internet of Things Journal ; 2020
  9. URL: https://ieeexplore.ieee.org/document/9269427