Skip to main navigation Skip to search Skip to main content

Securing Modbus-Based Industrial Control Systems with Refined Multiparty Session Types

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

1 Scopus citations

Abstract

Industrial control systems (ICSs) are vulnerable to sophisticated adversaries who have the goal of creating hazards that jeopardize both human life and business operations. To do so, adversaries tend to "live off the land;"i.e., they exploit nominal system behaviors to create hazardous situations. We present an intrusion detection system (IDS) for Modbus-based ICSs, rooted in refined multiparty session types (RMPSTs) - a typing discipline for specifying behavioral protocols - that detects unsafe uses of nominal system behaviors. In our experiments on a physical testbed, we show that a dynamic RMPST checker can find 100% of behavioral protocol violations - so if the behavioral protocol only permits safe behaviors, an adversary is unable to lead the system into an unsafe state - with low overhead (e.g., <10% overhead for each of latency, CPU usage, and throughput).

Original languageEnglish
Title of host publicationProceedings - 2025 Annual Computer Security Applications Conference Workshops, ACSACW 2025
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages99-109
Number of pages11
ISBN (Electronic)9798331545369
DOIs
StatePublished - Mar 9 2026
Event2025 Annual Computer Security Applications Conference Workshops, ACSACW 2025 - Honolulu, United States
Duration: Dec 8 2025Dec 12 2025

Publication series

NameProceedings - 2025 Annual Computer Security Applications Conference Workshops, ACSACW 2025

Conference

Conference2025 Annual Computer Security Applications Conference Workshops, ACSACW 2025
Country/TerritoryUnited States
CityHonolulu
Period12/8/2512/12/25

Keywords

  • behavioral specifications
  • Intrusion detection systems
  • Modbus
  • Network security

INL Publication Number

  • INL/CON-25-89122
  • 208790

Fingerprint

Dive into the research topics of 'Securing Modbus-Based Industrial Control Systems with Refined Multiparty Session Types'. Together they form a unique fingerprint.

Cite this