A critical review of cyber-physical security for building automation systems
Guowen Li, Lingyu Ren, Yangyang Fu, Zhiyao Yang, Veronica Adetola, Jin, Wen, Qi Zhu, Teresa Wu, K. Selcuk Candanf, Zheng O'Neill

TL;DR
This paper provides a comprehensive review of cyber-physical security issues in Building Automation Systems, analyzing vulnerabilities, attack scenarios, detection methods, and resilient control strategies across different system levels.
Contribution
It offers the first systematic, multi-level review of BAS vulnerabilities, attack impacts, detection techniques, and cyber-secure control strategies, filling a significant gap in the literature.
Findings
Identified key vulnerabilities in BAS protocols and components.
Categorized attack impacts as signal corruption, delay, and blocking.
Reviewed existing detection and defense approaches at management, automation, and field levels.
Abstract
Modern Building Automation Systems (BASs), as the brain that enables the smartness of a smart building, often require increased connectivity both among system components as well as with outside entities, such as optimized automation via outsourced cloud analytics and increased building-grid integrations. However, increased connectivity and accessibility come with increased cyber security threats. BASs were historically developed as closed environments with limited cyber-security considerations. As a result, BASs in many buildings are vulnerable to cyber-attacks that may cause adverse consequences, such as occupant discomfort, excessive energy usage, and unexpected equipment downtime. Therefore, there is a strong need to advance the state-of-the-art in cyber-physical security for BASs and provide practical solutions for attack mitigation in buildings. However, an inclusive and systematic…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsSmart Grid Security and Resilience · Advanced Malware Detection Techniques
