A passivity framework for modeling and mitigating wormhole attacks on networked control systems

  • Phillip Lee
  • , Andrew Clark
  • , Linda Bushnell
  • , Radha Poovendran

Research output: Contribution to journalArticlepeer-review

95 Scopus citations

Abstract

Networked control systems consist of distributed sensors and actuators that communicate via a wireless network. The use of an open wireless medium and unattended deployment leaves these systems vulnerable to intelligent adversaries whose goal is to disrupt the system performance. In this paper, we study the wormhole attack on a networked control system, in which an adversary establishes a link between two geographically distant regions of the network by using either high-gain antennas, as in the out-of-band wormhole, or colluding network nodes as in the in-band wormhole. Wormholes allow the adversary to violate the timing constraints of real-time control systems by first creating low-latency links, which attract network traffic, and then delaying or dropping packets. Since the wormhole attack reroutes and replays valid messages, it cannot be detected using cryptographic mechanisms alone. We study the impact of the wormhole attack on the network flows and delays and introduce a passivity-based control-theoretic framework for modeling and mitigating the wormhole attack. We develop this framework for both the in-band and out-of-band wormhole attacks as well as complex, hereto-unreported wormhole attacks consisting of arbitrary combinations of in-and out-of band wormholes. By integrating existing mitigation strategies into our framework, we analyze the throughput, delay, and stability properties of the overall system. Through simulation study, we show that, by selectively dropping control packets, the wormhole attack can cause disturbances in the physical plant of a networked control system, and demonstrate that appropriate selection of detection parameters mitigates the disturbances due to the wormhole while satisfying the delay constraints of the physical system.

Original languageEnglish
Article number6882790
Pages (from-to)3224-3237
Number of pages14
JournalIEEE Transactions on Automatic Control
Volume59
Issue number12
DOIs
StatePublished - Oct 2014

Keywords

  • Cyber-physical systems
  • networked control systems
  • passivity
  • wireless networks
  • wormhole attack

Fingerprint

Dive into the research topics of 'A passivity framework for modeling and mitigating wormhole attacks on networked control systems'. Together they form a unique fingerprint.

Cite this