Switched Zero Dynamics Attacks on Sampled-Data Systems with Non-Uniform Sampling

Vulnerability and Countermeasures

Journal Article (2025)
Author(s)

Bart Wolleswinkel (TU Delft - Team Riccardo Ferrari)

Manuel Mazo (TU Delft - Team Manuel Mazo Jr)

Riccardo Ferrari (TU Delft - Team Riccardo Ferrari)

Research Group
Team Riccardo Ferrari
DOI related publication
https://doi.org/10.1145/3746643
More Info
expand_more
Publication Year
2025
Language
English
Research Group
Team Riccardo Ferrari
Issue number
3
Volume number
9
Reuse Rights

Other than for strictly personal use, it is not permitted to download, forward or distribute the text or part of it, without the consent of the author(s) and/or copyright holder(s), unless the work is under an open content license such as Creative Commons.

Abstract

We describe a new variant of zero dynamics attack (ZDA), what we call a switched ZDA, targeting linear time-invariant (LTI) sampled-data systems with non-uniform sampling. Specifically, we consider continuous-time systems and construct attacks that exploit the unstable sampling zeros resulting from a zero-order hold (ZOH) mechanism. These attacks can be constructed by strong adversaries who have knowledge of the plant dynamics, with the additional requirement that they can determine the next sampling instant. We provide sufficient conditions when cyber-physical systems are vulnerable to switched ZDAs, and prove that these attacks can be disruptive while remaining stealthy. We also provide two possible countermeasures that make switched ZDAs ineffective. The first countermeasure revolves around creating a mismatch between the next sampling instant as predicted by the adversary and the true one, which makes the switched ZDAs no longer stealthy. The second countermeasure relies on increasing the inter-sample times such that the system no longer contains unstable sampling zeros, making the switched ZDA no longer disruptive. We demonstrate the vulnerability of sampled-data systems with non-uniform sampling to switched ZDAs in several illustrative examples, and exemplify the effectiveness of the proposed countermeasures.