• DocumentCode
    2898115
  • Title

    Automatic security assessment of critical cyber-infrastructures

  • Author

    Anwar, Zahid ; Shankesi, Ravinder ; Campbell, Roy H.

  • Author_Institution
    Univ. of Illinois at Urbana-Champaign, Urbana, IL
  • fYear
    2008
  • fDate
    24-27 June 2008
  • Firstpage
    366
  • Lastpage
    375
  • Abstract
    This research investigates the automation of security assessment of the static and dynamic properties of cyber infrastructures, with emphasis on the electrical power grid. We describe a network model representing the static elements of a cyber infrastructure including devices, services, network connectivity, vulnerabilities, and access controls. The dynamic elements include workflow models of the operating procedures, processes and the state of a working power grid. We introduce a toolkit that with a little manual assistance can automatically generate these models from specifications, continuously update attributes from online event aggregators, and perform security assessment. The assessment reveals whether observed anomalies about the system could indicate possible security problems and permit dynamic ranking of alternative recovery procedures to minimize the total risk. We motivate the use of the tool-chain by showing an example scenario where the recovery procedure recommended to minimize security risk depends on the current state of system as well as the network topology.
  • Keywords
    SCADA systems; authorisation; graph theory; power grids; power system control; SCADA system; access control; attack graph; automatic security assessment; dynamic critical cyber-infrastructure; electrical power grid; network connectivity; network model; online event aggregator; static critical cyber-infrastructure; workflow model; Computer security; Control systems; Data security; Nuclear power generation; Power generation; Power grids; Power system dynamics; Power system modeling; Power system security; SCADA systems;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Dependable Systems and Networks With FTCS and DCC, 2008. DSN 2008. IEEE International Conference on
  • Conference_Location
    Anchorage, AK
  • Print_ISBN
    978-1-4244-2397-2
  • Electronic_ISBN
    978-1-4244-2398-9
  • Type

    conf

  • DOI
    10.1109/DSN.2008.4630105
  • Filename
    4630105