Advancing Industrial Cybersecurity: Introducing New Cybersecurity Functionalities to ICS Monitoring Tools, based on SMUAP R&D Project

Abstract:

The industrial cybersecurity market is relatively young and still evolving. Nevertheless, it is developing rapidly in response to still growing challenges. As part of our research and development e昀昀orts, we aim to address a key technological challenge facing industries on the brink of the 4.0 revolution, therefore we developed the concept of The Industrial Automation Equipment Monitoring System for cybersecurity (SMUAP). The SMUAP system includes a fully functional prototype of a passive sni昀昀ing device designed to operate seamlessly in high-speed industrial networks. Additionally, there was developed an innovative analytical module with a range of unique functionalities. The synergy between these two components enables the detection of devices within industrial networks, facilitating the monitoring of automation devices. The SMUAP has advanced capabilities to identify sophisticated attacks on industrial infrastructures through rule-based, signature-based, and behavioral detection techniques, leveraging sophisticated machine learning and deep learning models. The origns of the SMUAP system come from R&D project (industrial research and development phase), which was cofounded by National Centre for Research and Development in Poland . The purpose of this article is to present the most important research results of the project, that have been implemented into business activities.