• DocumentCode
    1422007
  • Title

    A Multidimensional Critical State Analysis for Detecting Intrusions in SCADA Systems

  • Author

    Carcano, A. ; Coletta, A. ; Guglielmi, M. ; Masera, M. ; Fovino, I. Nai ; Trombetta, A.

  • Author_Institution
    Dept. of Comput. Sci., Insubria Univ., Varese, Italy
  • Volume
    7
  • Issue
    2
  • fYear
    2011
  • fDate
    5/1/2011 12:00:00 AM
  • Firstpage
    179
  • Lastpage
    186
  • Abstract
    A relatively new trend in Critical Infrastructures (e.g., power plants, nuclear plants, energy grids, etc.) is the massive migration from the classic model of isolated systems, to a system-of-systems model, where these infrastructures are intensifying their interconnections through Information and Communications Technology (ICT) means. The ICT core of these industrial installations is known as Supervisory Control And Data Acquisition Systems (SCADA). Traditional ICT security countermeasures (e.g., classic firewalls, anti-viruses and IDSs) fail in providing a complete protection to these systems since their needs are different from those of traditional ICT. This paper presents an innovative approach to Intrusion Detection in SCADA systems based on the concept of Critical State Analysis and State Proximity. The theoretical framework is supported by tests conducted with an Intrusion Detection System prototype implementing the proposed detection approach.
  • Keywords
    SCADA systems; control engineering computing; security of data; ICT security countermeasure; IDS; SCADA system; antiviruses; classic firewall; critical infrastructure; information and communication technology; intrusion detection; multidimensional critical state analysis; state proximity; supervisory control and data acquisition system; Accuracy; Intrusion detection; Measurement; Monitoring; SCADA systems; Temperature sensors; Turbines; Critical states; intrusion detection; supervisory control and data acquisition (SCADA) systems;
  • fLanguage
    English
  • Journal_Title
    Industrial Informatics, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1551-3203
  • Type

    jour

  • DOI
    10.1109/TII.2010.2099234
  • Filename
    5682374