Skip to main content

Research Repository

Advanced Search

Incorporating Cyber Threat Intelligence into Complex Cyber-Physical Systems: A STIX Model for Active Buildings

Czekster, Ricardo M.; Metere, Roberto; Morisset, Charles

Authors

Ricardo M. Czekster

Roberto Metere



Abstract

Active buildings can be briefly described as smart buildings with distributed and renewable energy resources able to energise other premises in their neighbourhood. As their energy capacity is significant, they can provide ancillary services to the traditional power grid. As such, they can be a worthy target of cyber-attacks potentially more devastating than if targeting traditional smart buildings. Furthermore, to handshake energy transfers, they need additional communications that add up to their attack surface. In such a context, security analysis would benefit from collection of cyber threat intelligence (CTI). To facilitate the analysis, we provide a base active building model in STIX in the tool cyberaCTIve that handles complex models. Active buildings are expected to implement standard network security measures, such as intrusion-detection systems. However, to timely respond to incidents, real-time detection should promptly update CTI, as it would significantly speed up the understanding of the nature of incidents and, as such, allow for a more effective response. To fill this gap, we propose an extension to the tool cyberaCTIve with a web service able to accept (incursion) feeds in real-time and apply the necessary modifications to a STIX model of interest.

Citation

Czekster, R. M., Metere, R., & Morisset, C. (2022). Incorporating Cyber Threat Intelligence into Complex Cyber-Physical Systems: A STIX Model for Active Buildings. Applied Sciences, 12(10), Article 5005. https://doi.org/10.3390/app12105005

Journal Article Type Article
Acceptance Date May 13, 2022
Online Publication Date May 16, 2022
Publication Date May 16, 2022
Deposit Date Jan 20, 2025
Journal Applied Sciences
Electronic ISSN 2076-3417
Publisher MDPI
Peer Reviewed Peer Reviewed
Volume 12
Issue 10
Article Number 5005
DOI https://doi.org/10.3390/app12105005
Public URL https://durham-repository.worktribe.com/output/3342462


You might also like



Downloadable Citations