Hostname: page-component-89b8bd64d-nlwjb Total loading time: 0 Render date: 2026-05-08T11:41:26.682Z Has data issue: false hasContentIssue false

From Football to Oil Rigs: Risk Assessment for Combined Cyber and Physical Attacks

Published online by Cambridge University Press:  02 September 2019

Fred S. Roberts*
Affiliation:
CCICADA Center, Rutgers University, USA, e-mail: froberts@dimacs.rutgers.edu
Rights & Permissions [Opens in a new window]

Abstract

Although cyber security has become widely recognized as a serious threat to our modern world, there are new threats to our security that combine cyber with other modes of “attack.” This article explores the increasingly important theme in homeland and national security that future attacks will be multimodal, in particular including both a cyber and a physical component, where the cyber attack is intended to make it easier to succeed in the physical attack, and is not an end in itself. The article describes sample scenarios of combined cyber and physical attacks in two sectors where even just cyber security efforts have lagged behind: sports stadiums and the maritime transportation system. It presents an approach to comparing the risk of a combined cyber followed by physical attack and that of a “traditional” physical attack on the same target. It then analyzes the different stadium and maritime examples from the point of view of this risk assessment approach.

Information

Type
Symposium on Analysis for Uncertain Futures
Creative Commons
Creative Common License - CCCreative Common License - BYCreative Common License - NCCreative Common License - ND
This is an Open Access article, distributed under the terms of the Creative Commons Attribution-NonCommercial-NoDerivatives licence (http://creativecommons.org/licenses/by-nc-nd/4.0/), which permits non-commercial re-use, distribution, and reproduction in any medium, provided the original work is unaltered and is properly cited. The written permission of Cambridge University Press must be obtained for commercial re-use or in order to create a derivative work.
Copyright
© Society for Benefit-Cost Analysis, 2019
Figure 0

Table 1 Eight cases comparing combined cyber and physical attack J to physical attack T.