IDEAS home Printed from https://ideas.repec.org/a/eee/ijocip/v10y2015icp3-17.html
   My bibliography  Save this article

A system dynamics approach for assessing the impact of cyber attacks on critical infrastructures

Author

Listed:
  • Genge, Béla
  • Kiss, István
  • Haller, Piroska

Abstract

The massive proliferation of information and communications technologies (hardware and software) into the heart of modern critical infrastructures has given birth to a unique technological ecosystem. Despite the many advantages brought about by modern information and communications technologies, the shift from isolated environments to “systems-of-systems” integrated with massive information and communications infrastructures (e.g., the Internet) exposes critical infrastructures to significant cyber threats. Therefore, it is imperative to develop approaches for identifying and ranking assets in complex, large-scale and heterogeneous critical infrastructures. To address these challenges, this paper proposes a novel methodology for assessing the impacts of cyber attacks on critical infrastructures. The methodology is inspired by research in system dynamics and sensitivity analysis. The proposed behavioral analysis methodology computes the covariances of the observed variables before and after the execution of a specific intervention involving the control variables. Metrics are proposed for quantifying the significance of control variables and measuring the impact propagation of cyber attacks.

Suggested Citation

  • Genge, Béla & Kiss, István & Haller, Piroska, 2015. "A system dynamics approach for assessing the impact of cyber attacks on critical infrastructures," International Journal of Critical Infrastructure Protection, Elsevier, vol. 10(C), pages 3-17.
  • Handle: RePEc:eee:ijocip:v:10:y:2015:i:c:p:3-17
    DOI: 10.1016/j.ijcip.2015.04.001
    as

    Download full text from publisher

    File URL: http://www.sciencedirect.com/science/article/pii/S1874548215000244
    Download Restriction: Full text for ScienceDirect subscribers only

    File URL: https://libkey.io/10.1016/j.ijcip.2015.04.001?utm_source=ideas
    LibKey link: if access is restricted and if your library uses this service, LibKey will redirect you to where you can use your library subscription to access this item
    ---><---

    As the access to this document is restricted, you may want to search for a different version of it.

    References listed on IDEAS

    as
    1. Correa-Henao, Gabriel J. & Yusta, Jose M. & Lacal-Arántegui, Roberto, 2013. "Using interconnected risk maps to assess the threats faced by electricity infrastructures," International Journal of Critical Infrastructure Protection, Elsevier, vol. 6(3), pages 197-216.
    2. Filippini, Roberto & Silva, Andrés, 2014. "A modeling framework for the resilience analysis of networked systems-of-systems based on functional dependencies," Reliability Engineering and System Safety, Elsevier, vol. 125(C), pages 82-91.
    3. Krotofil, Marina & Cárdenas, Alvaro & Larsen, Jason & Gollmann, Dieter, 2014. "Vulnerabilities of cyber-physical systems to stale data—Determining the optimal time to launch attacks," International Journal of Critical Infrastructure Protection, Elsevier, vol. 7(4), pages 213-232.
    4. Giani, Annarita & Bent, Russell & Pan, Feng, 2014. "Phasor measurement unit selection for unobservable electric power data integrity attack detection," International Journal of Critical Infrastructure Protection, Elsevier, vol. 7(3), pages 155-164.
    5. Genge, Béla & Siaterlis, Christos, 2013. "Analysis of the effects of distributed denial-of-service attacks on MPLS networks," International Journal of Critical Infrastructure Protection, Elsevier, vol. 6(2), pages 87-95.
    Full references (including those not matched with items on IDEAS)

    Citations

    Citations are extracted by the CitEc Project, subscribe to its RSS feed for this item.
    as


    Cited by:

    1. González, Santiago G. & Dormido Canto, S. & Sánchez Moreno, José, 2020. "Obtaining high preventive and resilience capacities in critical infrastructure by industrial automation cells," International Journal of Critical Infrastructure Protection, Elsevier, vol. 29(C).
    2. Plotnek, Jordan J. & Slay, Jill, 2021. "Power systems resilience: Definition and taxonomy with a view towards metrics," International Journal of Critical Infrastructure Protection, Elsevier, vol. 33(C).
    3. Adrian-Silviu Roman, 2023. "Evaluating the Privacy and Utility of Time-Series Data Perturbation Algorithms," Mathematics, MDPI, vol. 11(5), pages 1-21, March.
    4. A. Sardi & E. Sorano, 2021. "Dynamic Performance Management: An Approach for Managing the Common Goods," Papers 2102.04090, arXiv.org.
    5. Genge, Béla & Haller, Piroska & Kiss, István, 2016. "A framework for designing resilient distributed intrusion detection systems for critical infrastructures," International Journal of Critical Infrastructure Protection, Elsevier, vol. 15(C), pages 3-11.
    6. Baraldi, Piero & Castellano, Andrea & Shokry, Ahmed & Gentile, Ugo & Serio, Luigi & Zio, Enrico, 2020. "A Feature Selection-based Approach for the Identification of Critical Components in Complex Technical Infrastructures: Application to the CERN Large Hadron Collider," Reliability Engineering and System Safety, Elsevier, vol. 201(C).
    7. Palleti, Venkata Reddy & Joseph, Jude Victor & Silva, Arlindo, 2018. "A contribution of axiomatic design principles to the analysis and impact of attacks on critical infrastructures," International Journal of Critical Infrastructure Protection, Elsevier, vol. 23(C), pages 21-32.
    8. Alberto Sardi & Enrico Sorano, 2019. "Dynamic Performance Management: An Approach for Managing the Common Goods," Sustainability, MDPI, vol. 11(22), pages 1-22, November.
    9. Hayes, Darren R. & Cappa, Francesco, 2018. "Open-source intelligence for risk assessment," Business Horizons, Elsevier, vol. 61(5), pages 689-697.
    10. Ahmed Shokry & Piero Baraldi & Andrea Castellano & Luigi Serio & Enrico Zio, 2021. "Identification of Critical Components in the Complex Technical Infrastructure of the Large Hadron Collider Using Relief Feature Ranking and Support Vector Machines," Energies, MDPI, vol. 14(18), pages 1-19, September.
    11. Chatzis, Petros & Stavrou, Eliana, 2022. "Cyber-threat landscape of border control infrastructures," International Journal of Critical Infrastructure Protection, Elsevier, vol. 36(C).
    12. Siwar Kriaa & Marc Bouissou & Youssef Laarouchi, 2019. "A new safety and security risk analysis framework for industrial control systems," Journal of Risk and Reliability, , vol. 233(2), pages 151-174, April.
    13. Bhandari, Pratik & Creighton, Douglas & Gong, Jinzhe & Boyle, Carol & Law, Kris M.Y., 2023. "Evolution of cyber-physical-human water systems: Challenges and gaps," Technological Forecasting and Social Change, Elsevier, vol. 191(C).
    14. Michał Syfert & Andrzej Ordys & Jan Maciej Kościelny & Paweł Wnuk & Jakub Możaryn & Krzysztof Kukiełka, 2022. "Integrated Approach to Diagnostics of Failures and Cyber-Attacks in Industrial Control Systems," Energies, MDPI, vol. 15(17), pages 1-24, August.
    15. Qianxiang Zhu & Yuanqing Qin & Chunjie Zhou & Weiwei Gao, 2018. "Extended multilevel flow model-based dynamic risk assessment for cybersecurity protection in industrial production systems," International Journal of Distributed Sensor Networks, , vol. 14(6), pages 15501477187, June.
    16. Leszczyna, Rafał, 2018. "Standards on cyber security assessment of smart grid," International Journal of Critical Infrastructure Protection, Elsevier, vol. 22(C), pages 70-89.
    17. Galbraith, John W. & Iuliani, Luca, 2019. "Measures of robustness for networked critical infrastructure: An empirical comparison on four electrical grids," International Journal of Critical Infrastructure Protection, Elsevier, vol. 27(C).

    Most related items

    These are the items that most often cite the same works as this one and are cited by the same works as this one.
    1. Genge, Béla & Haller, Piroska & Kiss, István, 2016. "A framework for designing resilient distributed intrusion detection systems for critical infrastructures," International Journal of Critical Infrastructure Protection, Elsevier, vol. 15(C), pages 3-11.
    2. Poulin, Craig & Kane, Michael B., 2021. "Infrastructure resilience curves: Performance measures and summary metrics," Reliability Engineering and System Safety, Elsevier, vol. 216(C).
    3. Genge, Béla & Graur, Flavius & Haller, Piroska, 2015. "Experimental assessment of network design approaches for protecting industrial control systems," International Journal of Critical Infrastructure Protection, Elsevier, vol. 11(C), pages 24-38.
    4. Nweke, Livinus Obiora & Weldehawaryat, Goitom K. & Wolthusen, Stephen D., 2021. "Threat Modelling of Cyber–Physical Systems Using an Applied π-Calculus," International Journal of Critical Infrastructure Protection, Elsevier, vol. 35(C).
    5. Li, Lei & Wang, Wenting & Ma, Qiang & Pan, Kunpeng & Liu, Xin & Lin, Lin & Li, Jian, 2021. "Cyber attack estimation and detection for cyber-physical power systems," Applied Mathematics and Computation, Elsevier, vol. 400(C).
    6. Monsalve, Mauricio & de la Llera, Juan Carlos, 2019. "Data-driven estimation of interdependencies and restoration of infrastructure systems," Reliability Engineering and System Safety, Elsevier, vol. 181(C), pages 167-180.
    7. Kameshwar, Sabarethinam & Cox, Daniel T. & Barbosa, Andre R. & Farokhnia, Karim & Park, Hyoungsu & Alam, Mohammad S. & van de Lindt, John W., 2019. "Probabilistic decision-support framework for community resilience: Incorporating multi-hazards, infrastructure interdependencies, and resilience goals in a Bayesian network," Reliability Engineering and System Safety, Elsevier, vol. 191(C).
    8. Olaf Jonkeren & Ivano Azzini & Luca Galbusera & Stavros Ntalampiras & Georgios Giannopoulos, 2015. "Analysis of Critical Infrastructure Network Failure in the European Union: A Combined Systems Engineering and Economic Model," Networks and Spatial Economics, Springer, vol. 15(2), pages 253-270, June.
    9. Hassan Al-Zarooni & Hamdi Bashir, 2020. "An integrated ISM fuzzy MICMAC approach for modeling and analyzing electrical power system network interdependencies," International Journal of System Assurance Engineering and Management, Springer;The Society for Reliability, Engineering Quality and Operations Management (SREQOM),India, and Division of Operation and Maintenance, Lulea University of Technology, Sweden, vol. 11(6), pages 1204-1226, December.
    10. Pitilakis, Kyriazis & Argyroudis, Sotiris & Fotopoulou, Stavroula & Karafagka, Stella & Kakderi, Kalliopi & Selva, Jacopo, 2019. "Application of stress test concepts for port infrastructures against natural hazards. The case of Thessaloniki port in Greece," Reliability Engineering and System Safety, Elsevier, vol. 184(C), pages 240-257.
    11. Wu, Jingyi & Yu, Yang & Yu, Jianxing & Chang, Xueying & Xu, Lixin & Zhang, Wenhao, 2023. "A Markov resilience assessment framework for tension leg platform under mooring failure," Reliability Engineering and System Safety, Elsevier, vol. 231(C).
    12. Reda, Haftu Tasew & Anwar, Adnan & Mahmood, Abdun, 2022. "Comprehensive survey and taxonomies of false data injection attacks in smart grids: attack models, targets, and impacts," Renewable and Sustainable Energy Reviews, Elsevier, vol. 163(C).
    13. Yampolskiy, Mark & Skjellum, Anthony & Kretzschmar, Michael & Overfelt, Ruel A. & Sloan, Kenneth R. & Yasinsac, Alec, 2016. "Using 3D printers as weapons," International Journal of Critical Infrastructure Protection, Elsevier, vol. 14(C), pages 58-71.
    14. Lee, Seulbi & Choi, Minji & Lee, Hyun-Soo & Park, Moonseo, 2020. "Bayesian network-based seismic damage estimation for power and potable water supply systems," Reliability Engineering and System Safety, Elsevier, vol. 197(C).
    15. Tom M. Logan & Seth D. Guikema, 2020. "Reframing Resilience: Equitable Access to Essential Services," Risk Analysis, John Wiley & Sons, vol. 40(8), pages 1538-1553, August.
    16. Jingjing Kong & Slobodan P. Simonovic & Chao Zhang, 2019. "Resilience Assessment of Interdependent Infrastructure Systems: A Case Study Based on Different Response Strategies," Sustainability, MDPI, vol. 11(23), pages 1-31, November.
    17. Feng, Qiang & Zhao, Xiujie & Fan, Dongming & Cai, Baoping & Liu, Yiqi & Ren, Yi, 2019. "Resilience design method based on meta-structure: A case study of offshore wind farm," Reliability Engineering and System Safety, Elsevier, vol. 186(C), pages 232-244.
    18. Jaradat, Ra’ed M. & Keating, Charles B., 2014. "Fragility of oil as a critical infrastructure problem," International Journal of Critical Infrastructure Protection, Elsevier, vol. 7(2), pages 86-99.
    19. Cai, Baoping & Xie, Min & Liu, Yonghong & Liu, Yiliu & Feng, Qiang, 2018. "Availability-based engineering resilience metric and its corresponding evaluation methodology," Reliability Engineering and System Safety, Elsevier, vol. 172(C), pages 216-224.
    20. Caputo, A.C. & Donati, L. & Salini, P., 2023. "Estimating resilience of manufacturing plants to physical disruptions: Model and application," International Journal of Production Economics, Elsevier, vol. 266(C).

    Corrections

    All material on this site has been provided by the respective publishers and authors. You can help correct errors and omissions. When requesting a correction, please mention this item's handle: RePEc:eee:ijocip:v:10:y:2015:i:c:p:3-17. See general information about how to correct material in RePEc.

    If you have authored this item and are not yet registered with RePEc, we encourage you to do it here. This allows to link your profile to this item. It also allows you to accept potential citations to this item that we are uncertain about.

    If CitEc recognized a bibliographic reference but did not link an item in RePEc to it, you can help with this form .

    If you know of missing items citing this one, you can help us creating those links by adding the relevant references in the same way as above, for each refering item. If you are a registered author of this item, you may also want to check the "citations" tab in your RePEc Author Service profile, as there may be some citations waiting for confirmation.

    For technical questions regarding this item, or to correct its authors, title, abstract, bibliographic or download information, contact: Catherine Liu (email available below). General contact details of provider: https://www.journals.elsevier.com/international-journal-of-critical-infrastructure-protection .

    Please note that corrections may take a couple of weeks to filter through the various RePEc services.

    IDEAS is a RePEc service. RePEc uses bibliographic data supplied by the respective publishers.