Better Safe Than Sorry: Risk Management Based on a Safety-Augmented Network Intrusion Detection System

11Citations
Citations of this article
47Readers
Mendeley users who have this article in their library.

This article is free to access.

Abstract

Interconnected industrial control system (ICS) networks based on routable protocols are susceptible to remote attacks similar to classical information technology (IT) networks. However, addressing ICS security in an isolated view is dangerous since ICSs have to ensure safety measures for people, processes, and the environment. The safety and security of ICSs are often addressed separately, without considering their important interrelation. Safety measures can violate security policies (e.g., an emergency stop function accessible by anyone); likewise, a security incident can violate safety policies (e.g., by increasing reaction time). In this article, we propose a network-based intrusion detection system with the interrelation between safety and security in mind. It detects security incidents while evaluating possible safety-related consequences of both the detected attack and possible countermeasures. We evaluate our approach with a Proof of Concept (PoC). The alerts generated by the PoC prototype serve as the basis for a risk management strategy proposed in this article. Our approach provides a basis for safety-aware intrusion detection in smart factories and other cyber-physical systems.

References Powered by Scopus

Intrusion detection system: A comprehensive review

1198Citations
1758Readers
Get full text
1011Citations
3676Readers

This article is free to access.

Get full text

Cited by Powered by Scopus

Communications Security in Industry X: A Survey

8Citations
82Readers

This article is free to access.

This article is free to access.

This article is free to access.

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Cite

CITATION STYLE

APA

Brenner, B., Hollerer, S., Bhosale, P., Sauter, T., Kastner, W., Fabini, J., & Zseby, T. (2023). Better Safe Than Sorry: Risk Management Based on a Safety-Augmented Network Intrusion Detection System. IEEE Open Journal of the Industrial Electronics Society, 4, 287–303. https://doi.org/10.1109/OJIES.2023.3297057

Readers over time

‘23‘24‘25010203040

Readers' Seniority

Tooltip

PhD / Post grad / Masters / Doc 7

88%

Lecturer / Post doc 1

13%

Readers' Discipline

Tooltip

Computer Science 4

50%

Engineering 3

38%

Business, Management and Accounting 1

13%

Save time finding and organizing research with Mendeley

Sign up for free
0