Integrated behavior-based infrastructure command validation
Abstract
A cybersecurity infrastructure command validation system is provided herein for validating asset commands issued within an infrastructure network. The cybersecurity infrastructure command validation system can be integrated into an infrastructure network to monitor and validate infrastructure asset commands in real-time or while the infrastructure network is active. The cybersecurity infrastructure command validation system can receive or intercept commands issued by asset controllers. The cybersecurity infrastructure command validation system can validate the commands based on a command validation model. The command validation model can represent normal operating behavior of the infrastructure network. The cybersecurity infrastructure command validation system can provide valid commands to the intended infrastructure asset, or can reject invalid commands. The cybersecurity infrastructure command validation system can store validation results for use in updating the command validation model. The cybersecurity infrastructure command validation system can flag or otherwise warn the infrastructure network or administrators of invalid commands.
- Inventors:
- Issue Date:
- Research Org.:
- Pacific Northwest National Laboratory (PNNL), Richland, WA (United States)
- Sponsoring Org.:
- USDOE
- OSTI Identifier:
- 2221990
- Patent Number(s):
- 11706192
- Application Number:
- 16/655,071
- Assignee:
- Battelle Memorial Institute (Richland, WA)
- DOE Contract Number:
- AC05-76RL01830
- Resource Type:
- Patent
- Resource Relation:
- Patent File Date: 10/16/2019
- Country of Publication:
- United States
- Language:
- English
Citation Formats
Akyol, Bora A., Haack, Jereme N., Carroll, Thomas E., Monson, Kyle E., McKenzie, Penny L., Thornhill, Keith W., and Mylrea, Michael E. Integrated behavior-based infrastructure command validation. United States: N. p., 2023.
Web.
Akyol, Bora A., Haack, Jereme N., Carroll, Thomas E., Monson, Kyle E., McKenzie, Penny L., Thornhill, Keith W., & Mylrea, Michael E. Integrated behavior-based infrastructure command validation. United States.
Akyol, Bora A., Haack, Jereme N., Carroll, Thomas E., Monson, Kyle E., McKenzie, Penny L., Thornhill, Keith W., and Mylrea, Michael E. Tue .
"Integrated behavior-based infrastructure command validation". United States. https://www.osti.gov/servlets/purl/2221990.
@article{osti_2221990,
title = {Integrated behavior-based infrastructure command validation},
author = {Akyol, Bora A. and Haack, Jereme N. and Carroll, Thomas E. and Monson, Kyle E. and McKenzie, Penny L. and Thornhill, Keith W. and Mylrea, Michael E.},
abstractNote = {A cybersecurity infrastructure command validation system is provided herein for validating asset commands issued within an infrastructure network. The cybersecurity infrastructure command validation system can be integrated into an infrastructure network to monitor and validate infrastructure asset commands in real-time or while the infrastructure network is active. The cybersecurity infrastructure command validation system can receive or intercept commands issued by asset controllers. The cybersecurity infrastructure command validation system can validate the commands based on a command validation model. The command validation model can represent normal operating behavior of the infrastructure network. The cybersecurity infrastructure command validation system can provide valid commands to the intended infrastructure asset, or can reject invalid commands. The cybersecurity infrastructure command validation system can store validation results for use in updating the command validation model. The cybersecurity infrastructure command validation system can flag or otherwise warn the infrastructure network or administrators of invalid commands.},
doi = {},
journal = {},
number = ,
volume = ,
place = {United States},
year = {2023},
month = {7}
}
Works referenced in this record:
Method and a tester for testing and verifying the conductivity of optical cable segments linked within a cascaded infrastructure of smart residences
patent, June 2019
- Elberbaum, David
- US Patent Document 10,313,141
Intelligent sensor and controller framework for the power grid
patent, March 2018
- Akyol, Bora; Haack, Jereme Nathan; Craig, Jr., Philip Allen
- US Patent Document 9,923,723
Computing platform for improved aesthetic outcomes and patient safety in medical and surgical cosmetic procedures
patent, September 2021
- Sweis, Iliana E.; Cressey, Bryan C.
- US Patent Document 11,123,140
Dynamic resource allocation and media access control for a wireless ATM network
patent, May 2005
- Akyol, Bora; Cox, Donald C.
- US Patent Document 6,895,248
Distributed micro-grid controller
patent-application, February 2016
- Beauregard, Graham; Tuli, Tarun; Leigh, Robert
- US Patent Application 14/774213; 20160043549
Integration of network admission control functions in network access devices
patent, June 2015
- Yadav, Navindra; Mahamuni, Atul; Ozakil, Azim
- US Patent Document 9,071,611
Extracting Dependences between Network Assets Using Deep Learning
patent-application, May 2016
- Carroll, Thomas E.; Chikkagoudar, Satish; Edgar, Thomas W.
- US Patent Application 14/548159; 20160142266
Intelligent sensor and controller framework for the power grid
patent, April 2019
- Akyol, Bora; Haack, Jereme Nathan; Craig, Jr., Philip Allen
- US Patent Document 10,263,786
Compliance-as-Code for Cybersecurity Automation in Hybrid Cloud
conference, July 2022
- Agarwal, Vikas; Butler, Chris; Degenaro, Lou
- 2022 IEEE 15th International Conference on Cloud Computing (CLOUD)
Modular power supply system with control command verification
patent, July 2001
- Suntio, Teuvo
- US Patent Document 6,262,900
Method and system for managing power grid data
patent, November 2015
- Yin, Jian; Akyol, Bora; Gorton, Ian
- US Patent Document 9,183,153
SecWater
conference, April 2017
- Mathur, Aditya
- Proceedings of the 3rd International Workshop on Cyber-Physical Systems for Smart Water Networks
Dynamic Distributed Power Grid Control System
patent-application, February 2012
- Cherian, Sunil; Pacific, Oliver
- US Patent Application 13/099322; 20120029897
Intelligent sensor and controller framework for the power grid
patent, July 2015
- Akyol, Bora; Haack, Jereme Nathan; Craig, Jr., Philip Allen
- US Patent Document 9,094,385
Securing virtual machine orchestration with blockchains
conference, October 2017
- Bozic, Nikola; Pujolle, Guy; Secci, Stefano
- 2017 1st Cyber Security in Networking Conference (CSNet)
Well valve control system
patent, January 1987
- Schwendemann, Kenneth L.; McCracken, Oliver W.; Mondon, Cary Gorten
- US Patent Document 4,636,934