Show simple item record

dc.contributor.advisorReddy, A. L. Narasimha
dc.contributor.advisorAlnuweiri, Hussein
dc.creatorZheng, Zhiyuan
dc.date.accessioned2018-09-21T15:36:45Z
dc.date.available2018-09-21T15:36:45Z
dc.date.created2017-12
dc.date.issued2017-12-09
dc.date.submittedDecember 2017
dc.identifier.urihttps://hdl.handle.net/1969.1/169599
dc.description.abstractCritical infrastructures such as power grids, water treatment and distribution facilities, and Building Automation Systems (BAS) have come to employ Cyber-Physical Systems (CPSs) in which physical devices or components are coordinated and controlled through communication networks. Due to the criticalness of the infrastructures in which CPSs are deployed, they have become a ripe target for cyber-attacks. This work focuses on developing solutions to protect CPSs from cyber-attacks. To understand the network traffic behavior in a CPS, a collection of BACnet traffic was collected from a real-world BAS network. We conducted in-depth traffic analysis and observed that BACnet traffic can be classified into three categories: Time-driven, Human-driven, and Event-driven. Based on the observed traffic behavior, we developed “THE-driven” anomaly detector which adopts different mechanisms for each category of traffic. In addition, Commensurate Response (CR) was introduced to improve the system resilience and attack survivability of the CPS. CR forces the footprint of the attack to be commensurate with its impact on the system. Next, Path Redundancy was proposed to counter compromised embedded controllers which could be leveraged by attackers to launch data integrity attacks and false command attacks. As an extension of Path Redundancy, a new CPS architecture is introduced to provide data replica and enable control switching when a controller is attacked. The new architecture leverages virtualization to overcome Single-Point-of-Failures (SPOFs) without requiring additional hardware devices.en
dc.format.mimetypeapplication/pdf
dc.language.isoen
dc.subjectCyber-Physical Systemsen
dc.subjectAnomaly Detectionen
dc.subjectCPS Securityen
dc.subjectSCADAen
dc.subjectPath Redundancyen
dc.subjectCommensurate Responseen
dc.titleProtecting Cyber-Physical Systems with Special Emphasis on Building Automation Networksen
dc.typeThesisen
thesis.degree.departmentElectrical and Computer Engineeringen
thesis.degree.disciplineComputer Engineeringen
thesis.degree.grantorTexas A & M Universityen
thesis.degree.nameDoctor of Philosophyen
thesis.degree.levelDoctoralen
dc.contributor.committeeMemberBettati, Riccardo
dc.contributor.committeeMemberKumar, P. R.
dc.contributor.committeeMemberXie, Le
dc.type.materialtexten
dc.date.updated2018-09-21T15:36:46Z
local.etdauthor.orcid0000-0002-7828-0255


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record