Ants on the Grid: BiologyInspired Monitoring for Incident and - - PowerPoint PPT Presentation

ants on the grid biology inspired monitoring for incident
SMART_READER_LITE
LIVE PREVIEW

Ants on the Grid: BiologyInspired Monitoring for Incident and - - PowerPoint PPT Presentation

A RIZONA S TATE U NIVERSITY CREDC Industrial Workshop 2017 Ants on the Grid: BiologyInspired Monitoring for Incident and Vulnerability Detection Josephine Lamp , Carlos E. Rubio-Medrano, Ziming Zhao and Gail-Joon Ahn 6/27/2017 1 A RIZONA S


slide-1
SLIDE 1

ARIZONA STATE UNIVERSITY

Ants on the Grid: Biology–Inspired Monitoring for Incident and Vulnerability Detection

CREDC Industrial Workshop 2017

6/27/2017 1

Josephine Lamp, Carlos E. Rubio-Medrano, Ziming Zhao and Gail-Joon Ahn

slide-2
SLIDE 2

ARIZONA STATE UNIVERSITY

Motivation

  • Sophisticated attacks target

entire Industrial Control Systems (ICSs):

– Existing solutions focus on a small scale: separate pieces of the system, i.e., end devices – Difficult to detect large-scale attacks

2 6/27/2017

slide-3
SLIDE 3

ARIZONA STATE UNIVERSITY

Our Proposal

  • A system-wide vulnerability and

incident detection system that:

– Places numerous small software/hardware sensors on the grid, aka ants1 – Groups them together to link anomalies to vulnerabilities

3 6/27/2017 1.) Fink, Glenn A., Jereme N. Haack, A. David McKinnon, and Errin W. Fulp. "Defense on the move: ant-based cyber defense." IEEE Security & Privacy 12, no. 2 (2014): 36-43.

slide-4
SLIDE 4

ARIZONA STATE UNIVERSITY

Ant Sensors and Architecture

4 6/27/2017

IED Main Control Server MTU Control Center with control servers, data storage and workstations PLC Internet Connection Ant Colony Colony Health Level

slide-5
SLIDE 5

ARIZONA STATE UNIVERSITY

Ant Sensors and Architecture

5 6/27/2017

IED Main Control Server MTU Ant Control Servers Control Center with control servers, data storage and workstations PLC Transformer Internet Connection

slide-6
SLIDE 6

ARIZONA STATE UNIVERSITY

Colony Health, Ant Fitness

6 6/27/2017

IED Main Control Server MTU Ant Control Servers Control Center with control servers, data storage and workstations PLC

100% 88% 65% 77% 92% 85%

Colony Health Level

slide-7
SLIDE 7

ARIZONA STATE UNIVERSITY

Advantages of Using Ants

  • Ants may be unintelligent and lightweight, reusable

and shareable

  • Correlate anomalous findings across disparate parts
  • f the grid into a distributed, integrated, and

customizable solution

  • Provide evidence of incidents and vulnerabilities
  • Aid for ICS operators and security officers

7 6/27/2017

slide-8
SLIDE 8

ARIZONA STATE UNIVERSITY

Current Work

  • Placement and development of ants
  • Colony definitions and specializations
  • Coordination and correlation of ant finesses with

colony health levels

8 6/27/2017

slide-9
SLIDE 9

ARIZONA STATE UNIVERSITY

Questions and Contact

9 6/27/2017

  • Thank you for listening!
  • CDF Website: https://globalsecurity.asu.edu/cdf
  • Josephine Lamp: jalamp@asu.edu

Q A