CYBER RESILIENCY SUPPORT BASED ON METHODS OF GRAPH ANALYSIS AND FUNCTIONAL NETWORK VIRTUALIZATION
E. V. Zavadskii, M. O. Kalinin Peter the Great St. Petersburg Polytechnic University (SPbPU)
Annotation: An integrated approach to the maintenance of the cyber resiliency of cyber-physical systems represented as a network of functional nodes has been proposed. Based on the analysis of the graph of functional dependencies and the graph of attacks, this approach makes it possible to detect compromised nodes and rebuild the functional network of the system, moving the compromised nodes to an isolated virtual network similar to the one actually attacked, and then adapt the functional sequence of nodes that implement the technological process, thereby preventing the development of a cyber threat. The experimental results have demonstrated the correct operation of the proposed solution and the formation of an adequate counteraction to the intruders.
Keywords: attack graph, cyber resiliency, cyber-physical system, functional dependencies graph, functional infrastructure, virtual isolated network.