TY - GEN
T1 - Taxonomy of Severity of Cyber-Attacks in Cyber-Manufacturing Systems
AU - Espinoza-Zelaya, Carlos
AU - Moon, Young
N1 - Publisher Copyright:
Copyright © 2022 by ASME.
PY - 2022
Y1 - 2022
N2 - Increasingly named as the number one non-traditional risk cyber-attacks against Cyber-manufacturing Systems (CMS) can cause a wide variety of losses. As the 4th industrial revolution is taking place CMS have become more resilient with the implementation of prevention, detection, redundancy, withstanding, and recovery mechanisms against cyber-attacks. However, the ever-evolving nature of these threats require systems to still be prepared for their eventual occurrence as it’s been demonstrated in the increasingly more common advent of successful cyber-attacks. While multiple generic threat models have been proposed by academics and government organizations for assessing the impact of cyber-attacks against Cyber-Physical Systems there is a research gap when it comes to manufacturing specific applications and how to assess their severity. In order to evaluate the impact of a cyber-attack against CMS this taxonomy proposes a classification of threats severity comprising three general themes: i) Operational Impact: Effective production time loss that incur in inability to yield the expected output, ii) Economic Impacts: Direct financial cost of the attack, mitigation, and recovery, and iii) Intangible Losses: Integrity breaches against original patents, models, or intangible actives.
AB - Increasingly named as the number one non-traditional risk cyber-attacks against Cyber-manufacturing Systems (CMS) can cause a wide variety of losses. As the 4th industrial revolution is taking place CMS have become more resilient with the implementation of prevention, detection, redundancy, withstanding, and recovery mechanisms against cyber-attacks. However, the ever-evolving nature of these threats require systems to still be prepared for their eventual occurrence as it’s been demonstrated in the increasingly more common advent of successful cyber-attacks. While multiple generic threat models have been proposed by academics and government organizations for assessing the impact of cyber-attacks against Cyber-Physical Systems there is a research gap when it comes to manufacturing specific applications and how to assess their severity. In order to evaluate the impact of a cyber-attack against CMS this taxonomy proposes a classification of threats severity comprising three general themes: i) Operational Impact: Effective production time loss that incur in inability to yield the expected output, ii) Economic Impacts: Direct financial cost of the attack, mitigation, and recovery, and iii) Intangible Losses: Integrity breaches against original patents, models, or intangible actives.
KW - Cyber-Manufacturing Systems
KW - Cyber-attacks
KW - Severity
KW - Taxonomy
UR - http://www.scopus.com/inward/record.url?scp=85148689497&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=85148689497&partnerID=8YFLogxK
U2 - 10.1115/IMECE2022-94492
DO - 10.1115/IMECE2022-94492
M3 - Conference contribution
AN - SCOPUS:85148689497
T3 - ASME International Mechanical Engineering Congress and Exposition, Proceedings (IMECE)
BT - Advanced Manufacturing
PB - American Society of Mechanical Engineers (ASME)
T2 - ASME 2022 International Mechanical Engineering Congress and Exposition, IMECE 2022
Y2 - 30 October 2022 through 3 November 2022
ER -