State-based firewall for industrial protocols with critical-state prediction monitor
Contributo in Atti di convegno
Data di Pubblicazione:
2011
Abstract:
Traditional cyber-security countermeasures are inadequate for protecting modern Industrial Critical Infrastructures. In this paper we present an innovative filtering technique for industrial protocols based on the state analysis of the system being monitored. Since we focus our attention on the system behavior rather than on modeling the behavior of the possible attackers, this approach enables the detection of previously unknown attacks. Moreover, we introduce the concept of Critical State Prediction, function that is used for anticipating the evolution of the system towards possible critical states. Finally we provide experimental comparative results that confirm the validity of the proposed approach.
Tipologia CRIS:
Relazione (in Volume)
Keywords:
critical infrastructures; firewall; SCADA systems; Security
Elenco autori:
Nai Fovino, I.; Carcano, A.; Coletta, A.; Guglielmi, M.; Masera, M.; Trombetta, A.
Link alla scheda completa:
Titolo del libro:
Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Pubblicato in: