The Impact of Network Design Interventions on CPS Security
Pradeep Sharma Oruganti, Parinaz Naghizadeh, Qadeer Ahmed

TL;DR
This paper models how network design changes in cyber-physical systems can enhance security against attackers, using a game-theoretic approach and a case study on automotive networks to evaluate intervention effectiveness.
Contribution
It introduces a game-theoretic framework for analyzing network design interventions in CPS security, incorporating CVSS and ISO-26262 metrics for parameter selection.
Findings
Network interventions can significantly improve CPS security.
Game-theoretic analysis guides optimal network design choices.
Numerical experiments demonstrate practical security improvements.
Abstract
We study a game-theoretic model of the interactions between a Cyber-Physical System's (CPS) operator (the defender) against an attacker who launches stepping-stone attacks to reach critical assets within the CPS. We consider that, in addition to optimally allocating its security budget to protect the assets, the defender may choose to modify the CPS through network design interventions. In particular, we propose and motivate four ways in which the defender can introduce additional nodes in the CPS: these nodes may be intended as additional safeguards, be added for functional or structural redundancies, or introduce additional functionalities in the system. We analyze the security implications of each of these design interventions, and evaluate their impacts on the security of an automotive network as our case study. We motivate the choice of the attack graph for this case study and…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
