DEVELOPMENT OF THREAT CLASSIFIER IN SOCIO-CYBER-PHYSICAL SYSTEMS

Authors

DOI:

https://doi.org/10.18372/2225-5036.29.18070

Keywords:

socio-cyber-physical systems, information security, cyber security, security of information, information threat classifier of socio-cyber-physical systems, multi-contour information security system

Abstract

The article presents a new approach to forming a classifier of threats in socio-cyber-physical systems, which, as a rule, refer to complex systems based on the synthesis of cyber-physical systems with smart technologies and social networks. In addition, such systems belong to objects of critical infrastructure, which requires a new approach to the formation of multi-contour security systems. The proposed classifier allows for the formation of an expert approach at the first stage for the formation of weighting factors for the impact of threats (anomalies, deviations from normal operation, computer incidents). On the second stage, the properties of the influence of threats on the platforms of socio-cyber-physical systems, as well as their influence on the external and internal contours of the system, are formed. And also, the influence of social engineering methods, which allows criminals to significantly increase the level of threat implementation probability, and to form several channels of threat implementation – mixed (targeted) attacks. Based on the proposed threat classification approach, a technique for assessing the actual state of the security (protection) level of socio-cyber-physical systems is proposed, as well as the ability to determine the critical points of the system infrastructure, the possibility of countermeasures, and the ability of the mechanisms of multi-loop security systems to ensure infrastructure protection.

References

IoT Security Maturity Model: Description and Intended Use. URL: http://www.iiconsortium.org/ pdf/ SMM_Description_and_Intended_Use_2018-04-09.pdf.

IoT Security Maturity Model: Practitioner’s Guide. URL: IoT Security Maturity Model: Practitioner’s Guide.

Edited by Serhii Yevseiev, Volodymir Ponoma-renko, Oleksandr Laptiev, Oleksandr Milov. Synergy of building cybersecurity systems: monograph/S. Yevseiev, V. Ponomarenko, O. Laptiev, O. Milov and others. Kharkiv: PC TECHNOLOGY CENTER, 2021. 188 p.

Hryshchuk R. The synergetic approach for providing bank information security: the problem formulation // R. Hryshchuk , S. Yevseiev/Безпека інформації. 2016. № 22 (1). С. 64-74.

Грищук Р.В. Основи кібернетичної безпеки: Монографія/Р.В. Грищук, Ю.Г. Даник; за заг. ред. Ю.Г. Данника. Житомир: ЖНАЕУ, 2016. 636 с.

Modeling of security systems for critical infra-structure facilities: monograph / S. Yevseiev, R. Hryshchuk, K. Molodetska, M. Nazarkevych and others. Kharkiv: PC TECHNOLOGY CENTER, 2022. 196 p.

Serhii Yevseiev, Oleksandr Milov, Ivan Opirskyy, Olha Dunaievska, Oleksandr Huk, Volodymyr Pogorelov, Kyrylo Bondarenko, Nataliia Zviertseva, Yevgen Melenti, Bogdan Tomashevsky. Development of concepts for the cyber security metrics classification. Eastern-European Journal of Enterprise Technologies. 4/4 (118). 2022. pp. 6-18.

S. Pohasii and other. Development of conception for building a critical infrastructure facilities security system. Eastern-European Journal of Enterprise Technologies. 2021. 3/9 (111). pp. 63-83.

Models of socio-cyber-physical systems security: monograph / S. Yevseiev, Yu. Khokhlachova, S. Ostapov, O. Laptiev and others. Kharkiv: PC TECHNOLO-GY CENTER, 2023. 168 p.

O. Shmatko, S. Balakireva, А. Vlasov, N. Zagorodna, О. Korol, O. Milov, O. Petrov, S. Pohasii, Kh. Rzayev, V. Khvostenko. Development of methodo-logical fou¬ndations for a classifier of threats to cyber-physical systems design. Eastern-European Journal of Enterprise Technologies. 3/9 (105), 2020, pp. 6-19

Serhii Yevseiev, Pierre Murr, Stanislav Milevskyi,

Olha Korol, Marharyta Melnyk. Development of a Sociocyberphysical Systems Cyber Threats Classifier. 2023 7th International Symposium on Multidisciplinary Studies and Innovative Technologies (ISMSIT).

Published

2023-12-25

Issue

Section

Cybersecurity & Critical Information Infrastructure Protection (CIIP)