Cyber-Physical Systems Security: a Systematic Mapping Study
نویسندگان
چکیده
Context: Cyber-physical systems (CPS) are integrations of computation, networking, and physical processes. Due to the tight cyberphysical coupling and to the potentially disrupting consequences of failures, security is one of the primary concerns for this type of systems. CPS security is attracting several research efforts from different and independent areas (e.g., secure control, intrusion detection in SCADA systems, etc.), each of them with specific peculiarities, features, and capabilities, resulting in a considerably variegated and complex scientific body of knowledge on the topic. Objective: In this study we aim at identifying, classifying, and analyzing existing research on CPS security in order to better understand how security is actually addressed when dealing with cyber-physical systems. Based on this analysis of the state of the art, we also aim at identifying the implications for future research on CPS security. Method: In order to achieve this, we designed and conducted a systematic mapping study to identify, classify, and compare relevant studies proposing a method or technique for cyber-physical systems security. A comparison framework for classifying methods or techniques for CPS security has been empirically defined; identified relevant studies have been classified on the basis of publication trends, their characteristics and focus, and their validation strategies. Results: We selected a total of 118 primary studies as a result of the systematic mapping process. From the collected data we can observe that (i) even if solutions for CPS security has emerged only recently, in the last years they are gaining a sharply increasing scientific interest across heterogeneous publication venues; (ii) the bulk of the works on security for cyber-physical systems is focused on power grids, and the approaches considering attacks on sensors and their protection completely dominate the scene; regardless of application field and considered system components, all the works on CPS security deal with attacks, in order to either implement or to counteract them, and putting together all this studies gives us the possibility to categorize the existing (cyber-physical) attack models; it comes as surprise that very few papers consider communication aspects or imperfections and attempt to provide non-trivial mathematical models of the communication; (iii) most advanced and realistic validation methods have been exploited in the power networks application domain, but even there a benchmark is still missing. Conclusion: The systematic map of research on CPS security provided here is based on, for instance, application fields, various system components, related algorithms and models, attacks characteristics and defense strategies. This work presents a powerful comparison framework for existing and future research on this hot topic, important for both industry and academia.
منابع مشابه
Cyber-Physical Systems Security - A Survey
With the exponential growth of cyber-physical systems (CPS), new security challenges have emerged. Various vulnerabilities, threats, attacks, and controls have been introduced for the new generation of CPS. However, there lack a systematic study of CPS security issues. In particular, the heterogeneity of CPS components and the diversity of CPS systems have made it very difficult to study the pr...
متن کاملA multi-layered and kill-chain based security analysis framework for cyber-physical systems
This paper introduces a novel framework for understanding cyber attacks and the related risks to cyber-physical systems. The framework consists of two elements, a three-layered logical model and reference architecture for cyber-physical systems, and a meta-model of cyber-physical system attacks that is referred to as the cyber-physical system kill-chain. The layered reference architecture provi...
متن کاملA Systematic Review of Studies on Cyber Physical System Security
Cyber-Physical System (CPS) is a system of systems which integrates physical system with cyber capability in order to improve the physical performance [1]. So far, it is being widely applied in areas closely related to national economy and people’s daily lives. Therefore, CPS security problems have drawn a global attention and an appropriate risk assessment for CPS is in urgent need. According ...
متن کاملCyberRadar: A Regression Analysis Approach to the Identification of Cyber-Physical Mappings in Process Control Systems
One of the attack requirements for maximizing physical damage to digitally controlled infrastructures is the identification of a mapping between program variables in a compromised control system and physical parameters related to physical processes or physical equipment. A cyber-physical mapping is quite critical from the offensive perspective as physical parameters are affected via modificatio...
متن کاملA Security Architecture in Cyber-Physical Systems: Security Theories, Analysis, Simulation and Application Fields
Governments, companies, universities and research institutes are pushing the research and development of cyber-physical systems (CPS). However, the development of cyberphysical systems is constrained by security factors. According to this situation, this paper put forward a CPS security model, which contains security objectives, basic theories, simulation, and CPS framework, summarizes security...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
- CoRR
دوره abs/1605.09641 شماره
صفحات -
تاریخ انتشار 2016