Preprint Article Version 1 This version is not peer-reviewed

Digital Twins and Intrusion Detection Systems: A Synergistic Approach to Securing Smart Cities

Version 1 : Received: 10 September 2024 / Approved: 10 September 2024 / Online: 10 September 2024 (09:48:38 CEST)

How to cite: El-Hajj, M. Digital Twins and Intrusion Detection Systems: A Synergistic Approach to Securing Smart Cities. Preprints 2024, 2024090792. https://doi.org/10.20944/preprints202409.0792.v1 El-Hajj, M. Digital Twins and Intrusion Detection Systems: A Synergistic Approach to Securing Smart Cities. Preprints 2024, 2024090792. https://doi.org/10.20944/preprints202409.0792.v1

Abstract

In this research, we investigate the integration of an Intrusion Detection System (IDS) with a Digital Twin (DT) to enhance the cybersecurity of physical devices in cyber-physical systems. Using Eclipse Ditto as the DT platform and Snort as the IDS, we developed a near-realistic test environment that included a Raspberry Pi as the physical device and a Kali Linux virtual machine to perform common cyberattacks such as Hping3 flood attacks and NMAP reconnaissance scans. The results demonstrated that the IDS effectively detected Hping3-based flood attacks but showed limitations in identifying NMAP scans, suggesting areas for IDS configuration improvements. Furthermore, the study uncovered significant system resource impacts, including high CPU usage during SYN and ACK flood attacks and persistent memory usage after NMAP scans, highlighting the need for enhanced recovery mechanisms. This research presents a novel approach by coupling a Digital Twin with an IDS, enabling real-time monitoring and providing a dual perspective on both system performance and security. The integration offers a holistic method for identifying vulnerabilities and understanding resource impacts during cyberattacks. The work contributes new insights into the use of Digital Twins for cybersecurity and paves the way for further research into automated defense mechanisms, real-world validation of the proposed model, and the incorporation of additional attack scenarios. The results suggest that this combined approach holds significant promise for enhancing the security and resilience of IoT devices and other cyber-physical systems.

Keywords

Cybersecurity; Digital Twin; Intrusion Detection System; Hping3; NMAP; Eclipse Ditto; Cyber-Physical Systems

Subject

Computer Science and Mathematics, Security Systems

Comments (0)

We encourage comments and feedback from a broad range of readers. See criteria for comments and our Diversity statement.

Leave a public comment
Send a private comment to the author(s)
* All users must log in before leaving a comment
Views 0
Downloads 0
Comments 0


×
Alerts
Notify me about updates to this article or when a peer-reviewed version is published.
We use cookies on our website to ensure you get the best experience.
Read more about our cookies here.