Home // CYBER 2021, The Sixth International Conference on Cyber-Technologies and Cyber-Systems // View article


Enhancing Attack Resilience in the Presence of Manipulated IoT Devices within a Cyber Physical System

Authors:
Rainer Falk
Steffen Fries

Keywords: cyber security; cyber resilience; system integrity; cyber physical systems; industrial automation and control system; Internet of Things

Abstract:
Industrial cyber physical systems are exposed to attacks. Security standards define how such systems and the used devices can be protected against attacks (prevent). Despite all efforts to protect from attacks, it should always be assumed that attacks may happen. Security monitoring allows to detect successful attacks (detect), so that corresponding measures can be performed (react). This prevent-detect-react cycle is common approach in security of information technology and operation technology. This paper describes an additional approach for protecting cyber physical systems. The devices are designed in a way that makes it harder to use them for launching attacks on other devices. A device-internal hardware-based or isolated firewall limits the network traffic that the device software executed on the device can send or receive. Even if the device software contains a vulnerability allowing an attacker to compromise the device, the possible impact on other connected devices is limited, thereby enhancing the resilience of the cyber physical system in the presence of manipulated devices.

Pages: 1 to 6

Copyright: Copyright (c) IARIA, 2021

Publication date: October 3, 2021

Published in: conference

ISSN: 2519-8599

ISBN: 978-1-61208-893-8

Location: Barcelona, Spain

Dates: from October 3, 2021 to October 7, 2021