The dramatic increase in the use of Information and Communication Technologies (ICT) within Networked Critical Infrastructures (NCIs), e.g. the power grid, has lead to more efficient and flexible installations as well as new services and features, e.g. remote monitoring and control. Nevertheless, this has not only exposed NCIs to typical ICT systems attacks, but also to a new breed of cyber-physical attacks. To alleviate these issues, in this paper we propose a novel approach for detecting cyber-physical anomalies in NCIs using the concept of cyber-physical data fusion. By employing Dempster-Shafer's "Theory of Evidence" we combine knowledge from the cyber and physical dimension of NCIs in order to achieve an Anomaly Detection System (ADS) capable to detect even small disturbances that are not detected by traditional approaches. The proposed ADS is validated in a scenario assessing the consequences of Distributed Denial of Service (DDoS) attacks on Multi Protocol Label Switching (MPLS) Virtual Private Networks (VPNs) and the propagation of such disturbances to the operation of a simulated power grid.
GENGE Bela;
SIATERLIS Christos;
KAROPOULOS Georgios;
2017-09-13
IEEE Computer Society
JRC80644
978-1-4799-0181-4,
http://ieeexplore.ieee.org/document/6615505/,
https://publications.jrc.ec.europa.eu/repository/handle/JRC80644,
10.1109/DSNW.2013.6615505,
| Name | Country | City | Type |
|---|
This document is only visible at the Commission level.
You are not authorized to publish or distribute it outside the European Commission.
This is a public document. You can share this publication.
Datasets
| ID | Title | Public URL |
|---|
Dataset collections
| ID | Acronym | Title | Public URL |
|---|
Scripts / source codes
| Description | Public URL |
|---|
Additional supporting files
| File name | Description | File type |
|---|