论文标题
结合混合输入输出自动机和游戏理论,用于网络物理系统的安全建模
Combining Hybrid Input-Output Automaton and Game Theory for Security Modeling of Cyber-Physical Systems
论文作者
论文摘要
我们考虑一个安全设置,其中网络物理系统(CPS)由子网组成,每个子网都不是一个防御者。这样的CP可以用攻击图表示,在该图表上,捍卫者需要在图表的边缘投资(受预算限制)以保护其关键资产(如果遭到妥协,每个辩护人的关键资产对辩护人都有一定的价值)。我们使用混合输入输出自动机(HIOA)对此类CP进行建模,其中每个子网都由HIOA模块表示。我们首先在我们的环境中建立所需的基础。然后,我们提出了我们的模型,该模型表征了投资的连续时间演变以及在系统内不同状态(每个状态代表不同状态和/或扰动)之间的离散过渡。最后,我们提供了一个现实世界中的CPS示例来验证我们的建模。
We consider a security setting in which the Cyber-Physical System (CPS) is composed of subnetworks where each subnetwork is under ownership of one defender. Such CPS can be represented by an attack graph where the defenders are required to invest (subject to a budget constraint) on the graph's edges in order to protect their critical assets (where each defender's critical asset has a certain value to the defender if compromised). We model such CPS using Hybrid Input-Output Automaton (HIOA) where each subnetwork is represented by a HIOA module. We first establish the building blocks needed in our setting. We then present our model that characterizes the continuous time evolution of the investments and discrete transitions between different states (where each state represents different condition and/or perturbation) within the system. Finally, we provide a real-world CPS example to validate our modeling.