Analysing Cognitive-Computing-Based Countermeasures to Cyber Threats against Critical Infrastructures
Copyright (c) 2026 Griffiths Dániel

This work is licensed under a Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International License.
Absztrakt
Critical infrastructures are vital to the functioning of modern societies but are increasingly exposed to sophisticated cyber threats due to heightened convergence of information technology and operational technology environments. The inherent complexity and presence of legacy components within these systems significantly expand the attack surface, making traditional security measures insufficient. This work analyses the evolving threat landscape facing critical infrastructures and presents a comprehensive assessment of cognitive computing-based countermeasures. Emphasising recent advances in cognitive computing, the article explores adaptive defence mechanisms capable of evolving alongside emerging threats. The analysis highlights the effectiveness and limitations of these approaches, their applicability within cyber-physical systems, and their potential to bridge gaps between IT and OT security. Ultimately, the research underscores the importance of integrating these techniques into cybersecurity strategies to enhance the resilience of critical infrastructure systems.
Kulcsszavak:
Hogyan kell idézni
Hivatkozások
ALKAHTANI, Hasan – ALDHYANI, Theyazn H. H. (2022): Developing Cybersecurity Systems Based on Machine Learning and Deep Learning Algorithms for Protecting Food Security Systems: Industrial Control Systems. Electronics, 11(11), 1–25. Online: https://doi.org/10.3390/electronics11111717
ARAGONÉS, Mario Lozano – LLOPIS, Israel Pérez – DOMINGO, Manuel Esteve (2023): Threat Hunting Architecture Using a Machine Learning Approach for Critical Infrastructures Protection. Big Data and Cognitive Computing, 7(2), 1–26. Online: https://doi.org/10.3390/bdcc7020065
ASSENZA, Giacomo – FARAMONDI, Luca – OLIVA, Gabriele – SETOLA, Roberto (2020): Cyber Threats for Operational Technologies. International Journal of System of Systems Engineering, 10(2), 128–142. Online: https://doi.org/10.1504/IJSSE.2020.109127
BAEZNER, Marie – ROBIN, Patrice (2017): Hotspot Analysis: Stuxnet. Zürich: Center for Security Studies, 1–16. Online: https://css.ethz.ch/content/dam/ethz/special-interest/gess/cis/center-for-securities-studies/pdfs/Cyber-Reports-2017-04.pdf
BAKALOS, Nikolaos – VOULODIMOS, Athanasios – DOULAMIS, Nikolaos – DOULAMIS, Anastasios – OSTFELD, Avi – SALOMONS, Elad – CAUBET, Juan – JIMENEZ, Victor – LI, Pau (2019): Protecting Water Infrastructure from Cyber and Physical Threats: Using Multimodal Data Fusion and Adaptive Deep Learning to Monitor Critical Systems. IEEE Signal Processing Magazine, 36(2), 36–48. Online: https://doi.org/10.1109/MSP.2018.2885359
BONDADA, Mahesh Babu – BHANU, S. Mary Saira (2014): Analyzing User Behavior Using Keystroke Dynamics to Protect Cloud from Malicious Insiders. 2014 IEEE International Conference on Cloud Computing in Emerging Markets (CCEM), 1–8. Online: https://doi.org/10.1109/CCEM.2014.7015481
BOOTH, Adrian – DHINGRA, Aman – HEILIGTAG, Sven – NAYFEH, Mahir – WALLANCE, Daniel (2019): Critical Infrastructure Companies and the Global Cybersecurity Threat. New York: McKinsey & Company. Online: https://www.mckinsey.com/~/media/mckinsey/business%20functions/risk/our%20insights/critical%20infrastructure%20companies%20and%20the%20global%20cybersecurity%20threat/critical-infrastructure-companies-and-the-global-cybersecurity-threat-vf.pdf?shouldIndex=false
BUDŽYS, Arnoldas – KURASOVA, Olga – MEDVEDEV, Viktor (2024): Deep Learning-based Authentication for Insider Threat Detection in Critical Infrastructure. Artificial Intelligence Review, 57(10), 1–35. Online: https://doi.org/10.1007/s10462-024-10893-1
DARICILI, A. Burak – ÇELIK, Soner (2022): National Security 2.0: The Cyber Security of Critical Infrastructure. Perceptions: Journal of International Affairs, 26(2), 259–276. Online: https://dergipark.org.tr/en/download/article-file/2181981
GHAFIR, Ibrahim – SALEEM, Jibran – HAMMOUDEH, Mohammad – FAOUR, Hanan – PRENOSIL, Vaclav – JAF, Sardar – JABBAR, Sohail – BAKER, Thar (2018): Security Threats to Critical Infrastructure: The Human Factor. The Journal of Supercomputing, 74(10), 4986 – 5002. Online: https://doi.org/10.1007/s11227-018-2337-2
HAIG, Zsolt – KOVÁCS, László (2012): Kritikus infrastruktúrák és a kritikus információs infrastruktúrák elleni fenygetettségek, támadások. In VÁNYA, László (ed.): Kritikus infrastruktúrák és kritikus információs infrastruktúrák. Budapest: Nemzeti Közszolgálati Egyetem, 92–167.
HURST, William – SHONE, Nathan (2024): Critical Infrastructure Security: Cyber-threats, Legacy Systems and Weakening Segmentation. In TEKINERDOGAN, Bedir – AKŞIT, Mehmet – CATAL, Cagatay – HURST, William – ALSKAIF, Tarek (eds.): Management and Engineering of Critical Infrastructures. Cambridge, Mass.: Academic Press, 265–286. Online: https://doi.org/10.1016/B978-0-323-99330-2.00010-6
ISC2 (2024): ISC2 Cybersecurity Workforce Study. Alexandria: ISC2. Online: https://edge.sitecorecloud.io/internationf173-xmc4e73-prodbc0f-9660/media/Project/ISC2/Main/Media/documents/research/2024-ISC2-WFS.pdf
ISACA (2024): State of Cybersecurity 2024. Global Update on Workforce Efforts, Resources, and Cyberoperations. Schaumburg: ISACA. Online: https://www.isaca.org/resources/reports/state-of-cybersecurity-2024
JERMALAVIČIUS, Tomas – RÕIGAS, Henry – SUKHODOLIA, Oleksandr – TEPERIK, Dmitri (2025): The Staying Power of Ukrainian Lights. Lessons of Wartime Resilience of the Electricity Sector. Tallinn: International Centre for Defence and Security. Online: https://icds.ee/wp-content/uploads/dlm_uploads/2025/05/ICDS_Report_The_Staying_Power_of_Ukrainian_Lights_Jermalavicius_Roigas_Sukhodolia_Teperik_May_2025.pdf
LESZCZYNA, Rafal – EGOZCUE, Elyoenai (2013): ENISA Study: Challenges in Securing Industrial Control Systems. In LAING, Christopher – BADII, Atta – VICKERS, Paul (eds.): Securing Critical Infrastructures and Critical Control Systems. Approaches for Threat Protection. Hershey: IGI Global, 105–143. Online: https://doi.org/10.4018/978-1-4666-2659-1.ch005
LI, Ziyang – DUTTA, Saikat – NAIK, Mayur (2025): LLM-Assisted Static Analysis for Detecting Security Vulnerabilities. ArXiv, 1–24. Online: https://doi.org/10.48550/arXiv.2405.17238
LOUKAS, George (2015): Cyber-Physical Attacks. A Growing Invisible Threat. Newton: Butterworth-Heinemann. Online: https://doi.org/10.1016/B978-0-12-801290-1.00011-4
MARKEVYCH, Michal – DAWSON, Maurice (2023): A Review of Enhancing Intrusion Detection Systems for Cybersecurity Using Artificial Intelligence (AI). International Conference, The Knowledge-Based Organization, 29(3), 30–37. Online: https://doi.org/10.2478/kbo-2023-0072
MESADIEU, Frantzy – TORRE, Damiano – CHENNAMANENI, Anitha (2024): Leveraging Deep Reinforcement Learning Technique for Intrusion Detection in SCADA Infrastructure. IEEE Access, 12, 63381–63399. Online: https://doi.org/10.1109/ACCESS.2024.3390722
MITRE Corporation (2024a): Industroyer. Online: https://attack.mitre.org/software/S0604/
MITRE Corporation (2024b): Triton. Online: https://attack.mitre.org/software/S1009/
MITRE Corporation (2025): Stuxnet. Online: https://attack.mitre.org/software/S0603/
OSEI-KYEI, Robert – TAM, Vivian – MA, Mingxue – MASHIRI, Fidelis (2021): Critical Review of the Threats Affecting the Building of Critical Infrastructure Resilience. International Journal of Disaster Risk Reduction, 60, 1–11. Online: https://doi.org/10.1016/j.ijdrr.2021.102316
PALLETI, Venkata Reddy – ADEPU, Sridhar – MISHRA, Vishrut Kumar – MATHUR, Aditya (2021): Cascading Effects of Cyber-attacks on Interconnected Critical Infrastructure. Cybersecurity, 4, 1–19. Online: https://doi.org/10.1186/s42400-021-00071-z
PINTO, Andrea – HERRERA, Luis-Carlos – DONOSO, Yezid – GUTIERREZ, Jairo A. (2023): Survey on Intrusion Detection Systems Based on Machine Learning Techniques for the Protection of Critical Infrastructure. Sensors, 23(5), 1–18. Online: https://doi.org/10.3390/s23052415
PINTO, Andrea – HERRERA, Luis-Carlos – DONOSO, Yezid – GUTIERREZ, Jairo A. (2024): Enhancing Critical Infrastructure Security: Unsupervised Learning Approaches for Anomaly Detection. International Journal of Computational Intelligence Systems, 17, 1–18. Online: https://doi.org/10.1007/s44196-024-00644-z
LIS, Piotr – MENDEL, Jacob (2019): Cyberattacks on Critical Infrastructure: An Economic Perspective. Economics and Business Review, 5(2), 24–47. Online: https://doi.org/10.18559/ebr.2019.2.2
RAGSDALE, Jarrod – BOPPANA, Rajendra V. (2023): On Designing Low-Risk Honeypots Using Generative Pre-Trained Transformer Models with Curated Inputs. IEEE Access, 11, 117528–117545. Online: https://doi.org/10.1109/ACCESS.2023.3326104
RIGGS, Hugo – TUFAIL, Shahid – PARVEZ, Imtiaz – TARIQ, Mohd – KHAN, Mohammed Aquib – AMIR, Asham – VUDA, Kedari Vineetha – SARWAT, Arif I. (2023): Impact, Vulnerabilities, and Mitigation Strategies for Cyber-Secure Critical Infrastructure. Sensors, 23(8), 1–26. Online: https://doi.org/10.3390/s23084060
ROUZBAHANI, Hossein Mohammadi – KARIMIPOUR, Hadis – RAHIMNEJAD, Abolfazl – DEHGHANTANHA, Ali – SRIVASTAVA, Gautam (2020): Anomaly Detection in Cyber-Physical Systems Using Machine Learning. In CHOO, Kim-Kwang Raymond – DEHGHANTANHA, Ali (eds.): Handbook of Big Data Privacy. Cham: Springer, 219–235. Online: https://doi.org/10.1007/978-3-030-38557-6_10
SAMPEDRO, Carlos – MARTINEZ, Carol – CHAUHAN, Aneesh – CAMPOY, Pascual (2014): A Supervised Approach to Electric Tower Detection and Classification for Power Line Inspection. 2014 International Joint Conference on Neural Networks (IJCNN), 1970–1977. Online: https://doi.org/10.1109/IJCNN.2014.6889836
SHAN, Ali – MYEONG, Seunghwan (2024): Proactive Threat Hunting in Critical Infrastructure Protection through Hybrid Machine Learning Algorithm Application. Sensors, 24(15), 1–24. Online: https://doi.org/10.3390/s24154888
SMERIGA, Juraj – JIRSIK, Tomas (2019): Behavior-Aware Network Segmentation Using IP Flows. 14th International Conference on Availability, Reliability and Security (ARES 2019), 1–9. Online: https://doi.org/10.1145/3339252.3339265
STATTELMANN, Stefan – BIALLAS, Sebastian – SCHLICH, Bastian – KOWALEWSKI, Stefan (2014): Applying Static Code Analysis on Industrial Controller Code. 2014 IEEE Emerging Technology and Factory Automation (ETFA), 1–4. Online: https://doi.org/10.1109/ETFA.2014.7005254
TABANSKY, Lior (2011): Critical Infrastructure Protection against Cyber Threats. Military and Strategic Affairs, 3(2), 61–78. Online: https://www.inss.org.il/wp-content/uploads/sites/2/systemfiles/(FILE)1326273687.pdf
VÁVRA, Jan – HROMADA, Martin – LUKÁŠ, Luděk – DWORZECKI, Jacek (2021): Adaptive Anomaly Detection System Based on Machine Learning Algorithms in an Industrial Control Environment. International Journal of Critical Infrastructure Protection, 34, 1–11. Online: https://doi.org/10.1016/j.ijcip.2021.100446
WANG, Jingjing – HUANG, Minhuan – NIE, Yuanping – LI, Jin (2021): Static Analysis of Source Code Vulnerability Using Machine Learning Techniques: A Survey. 2021 4th International Conference on Artificial Intelligence and Big Data (ICAIBD), 76–86. Online: https://doi.org/10.1109/ICAIBD51990.2021.9459075
WANG, Weiping – YANG, Saini – HU, Fuyu – STANLEY, H. Eugene – HE, Shuai – SHI, Mimi (2018): An Approach for Cascading Effects within Critical Infrastructure Systems. Physica A: Statistical Mechanics and its Applications, 510, 164–177. Online: https://doi.org/10.1016/j.physa.2018.06.129
WANG, Xuebin – TAN, Qingfeng – SHI, Jinqiao – SU, Shen – WANG, Meiqi (2018): Insider Threat Detection Using Characterizing User Behavior. 2018 IEEE Third International Conference on Data Science in Cyberspace (DSC), 476–482. Online: https://doi.org/10.1109/DSC.2018.00077
WILSON, Clay (2014): Cyber Threats to Critical Information Infrastructure. In CHEN, Thomas M. – JARVIS, Lee – MACDONALD, Stuart (eds.): Cyberterrorism. New York: Springer, 123–136. Online: https://doi.org/10.1007/978-1-4939-0962-9_7
ZHANG, Mu – CHEN, Chien-Ying – KAO, Bin-Chou – QAMSANE, Yassine – SHAO, Yuru – LIN, Yikai – SHI, Elaine – MOHAN, Sibin – BARTON, Kira – MOYNE, James – MAO, Z. Morley (2019): Towards Automated Safety Vetting of PLC Code in Real-World Plants. 2019 IEEE Symposium on Security and Privacy (SP), 522–538. Online: https://doi.org/10.1109/SP.2019.00034
ZONOUZ, Saman – RRUSHI, Julian – MCLAUGHLIN, Stephen (2014): Detecting Industrial Control Malware Using Automated PLC Code Analytics. IEEE Security & Privacy, 12(6), 40–47. Online: https://doi.org/10.1109/MSP.2014.113