The cyber-physical topology language: definition and operations
Cheh, Carmen
Loading…
Permalink
https://hdl.handle.net/2142/72850
Description
Title
The cyber-physical topology language: definition and operations
Author(s)
Cheh, Carmen
Issue Date
2015-01-21
Director of Research (if dissertation) or Advisor (if thesis)
Sanders, William H.
Department of Study
Computer Science
Discipline
Computer Science
Degree Granting Institution
University of Illinois at Urbana-Champaign
Degree Name
M.S.
Degree Level
Thesis
Keyword(s)
Cyber-Physical Topology Language (CPTL)
intrusion detection
description logic
graph theory
ontology
Abstract
As the number of security incidents and sophistication of those attacks increase, it is difficult to properly detect and diagnose malicious behavior. We conjecture that detection and diagnosis could be facilitated by an online “world view” that maintains information about the ability of a system to perform its intended function. We have thus developed the Cyber-Physical Topology Language (CPTL) to represent, exchange, and analyze information about a system in a dynamic fashion. In this thesis, we define a CPTL data model to represent cyber-physical assets within a system and the relations among them. We also define operations on CPTL that extract features of the system by generating a new CPTL data model that differs from existing CPTL data models in terms of topological, semantic and property changes. We then show how to integrate heterogenous data sources and detect intrusions by incorporating this model into a feedback loop. Finally, we show the applicability of our approach in an enterprise setting.
Use this login method if you
don't
have an
@illinois.edu
email address.
(Oops, I do have one)
IDEALS migrated to a new platform on June 23, 2022. If you created
your account prior to this date, you will have to reset your password
using the forgot-password link below.