Attack-Resilient State Estimation with Intermittent Data Authentication
Amir Khazraei, Miroslav Pajic

TL;DR
This paper investigates the resilience of state estimators in control systems against stealthy sensor attacks, analyzing conditions for perfect attackability and demonstrating that intermittent data authentication can prevent unbounded estimation errors.
Contribution
It introduces necessary and sufficient conditions for perfect attackability in linear systems and shows how intermittent data authentication enhances resilience against stealthy attacks.
Findings
Perfect attackability can occur even in stable plants.
Intermittent data authentication prevents unbounded estimation errors.
Cryptographic mechanisms can prevent perfect attackability but are costly.
Abstract
Network-based attacks on control systems may alter sensor data delivered to the controller, effectively causing degradation in control performance. As a result, having access to accurate state estimates, even in the presence of attacks on sensor measurements, is of critical importance. In this paper, we analyze performance of resilient state estimators (RSEs) when any subset of sensors may be compromised by a stealthy attacker. Specifically, we consider systems with the well-known l0-based RSE and two commonly used sound intrusion detectors (IDs). For linear time-invariant plants with bounded noise, we define the notion of perfect attackability (PA) when attacks may result in unbounded estimation errors while remaining undetected by the employed ID (i.e., stealthy). We derive necessary and sufficient PA conditions, showing that a system can be perfectly attackable even if the plant is…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
MethodsBeneš Block with Residual Switch Units · Residual Shuffle-Exchange Network
