Kayan, Hakan, Heartfield, Ryan, Rana, Omer ORCID: https://orcid.org/0000-0003-3597-2646, Burnap, Peter ORCID: https://orcid.org/0000-0003-0396-633X and Perera, Charith ORCID: https://orcid.org/0000-0002-0190-3346 2024. CASPER: Context-aware IoT anomaly detection system for industrial robotic arms. ACM Transactions on Internet of Things 18 , pp. 1-36. 10.1145/3670414 |
Preview |
PDF
- Accepted Post-Print Version
Download (28MB) | Preview |
Abstract
Industrial cyber-physical systems (ICPS) are widely employed in supervising and controlling critical infrastructures (CIs), with manufacturing systems that incorporate industrial robotic arms being a prominent example. The increasing adoption of ubiquitous computing technologies in these systems has led to benefits such as real-time monitoring, reduced maintenance costs, and high interconnectivity. This adoption has also brought cybersecurity vulnerabilities exploited by adversaries disrupting manufacturing processes via manipulating actuator behaviors. Previous incidents in the industrial cyber domain prove that adversaries launch sophisticated attacks rendering network-based anomaly detection mechanisms insufficient as the "physics" involved in the process is overlooked. To address this issue, we propose an IoT-based cyber-physical anomaly detection system that can detect motion-based behavioral changes in an industrial robotic arm. We apply both statistical and state-of-the-art machine learning (ML) methods to real-time Inertial Measurement Unit (IMU) data collected from an edge development board attached to an arm doing a pick-and-place operation. To generate anomalies, we modify the joint velocity of the arm. Our goal is to create an air-gapped secondary protection layer to detect "physical" anomalies without depending on the integrity of network data, thus augmenting overall anomaly detection capability. Our empirical results show that the proposed system, which utilizes 1D-CNNs, can successfully detect motion-based anomalies on a real-world industrial robotic arm. The significance of our work lies in its contribution to developing a comprehensive solution for ICPS security, which goes beyond conventional network-based methods.
Item Type: | Article |
---|---|
Date Type: | Publication |
Status: | Published |
Schools: | Computer Science & Informatics |
Publisher: | ACM |
Date of First Compliant Deposit: | 8 August 2024 |
Date of Acceptance: | 13 May 2024 |
Last Modified: | 08 Nov 2024 19:15 |
URI: | https://orca.cardiff.ac.uk/id/eprint/165098 |
Actions (repository staff only)
Edit Item |