Protocol Analytics to enable Forensics of Industrial Control Systems

The goal of this research is to discover methods and technologies to bridge gaps between the various industrial control systems (ICS) communication protocols and standard Ethernet to enable existing cybersecurity tools defend ICS networks and empower cybersecurity analysts to detect compromise before threat actors can disrupt infrastructure, damage property, and inflict harm. Research focuses on electronic signal analysis of captured communication to determine the protocol, using use machine learning to identify unknown protocols. Findings will be incorporated into a prototype device.

Date

Oct 2022

Organization Type

Government