CORTEXA
← Browse
arxivcs.CReess.SY2026-07-01

Chameleon: Recovering Cyber-Physical Systems from Memory Corruption Attacks via ML Surrogates

Mohsen Salehi, Karthik Pattabiraman

Cyber-physical systems (CPSs) are increasingly deployed in every aspect of our lives and can be compromised through memory corruption vulnerabilities, allowing attackers to hijack the control flow and take over the system. Existing techniques mostly focus on detecting such attacks but respond by terminating or halting execution upon attack detection, which is not acceptable in CPSs used in safety-critical tasks, as interrupted tasks can have catastrophic consequences. Other techniques replace compromised CPS components with simplified defaults that degrade system behavior, or reboot the system upon attack detection. We propose Chameleon, a novel framework for automatically recovering CPSs from memory corruption attacks using machine learning (ML)-based surrogates trained at compartment granularity that nearly replicate their original compartments' behavior but do not have the same memory corruption vulnerabilities. Upon attack detection, Chameleon replaces the compromised compartment with its trained surrogate. We implemented Chameleon using the LLVM compiler and evaluated its efficiency and effectiveness on seven different robotic vehicles (RVs), including simulated and real ones. We found that Chameleon can generate surrogates that closely approximate the original compartments (with an average R$^2$=0.96), successfully recover the system despite real-world memory corruption attacks unlike prior approaches, and complete their tasks while incurring low performance and memory overhead.

View free PDFSource page

Related papers

arxiveess.SYcs.CR2026-07-17

Converging Safety and Security: IO-Link Wireless and OPC UA over 5G under prEN 50742

Henry Beuster, Thomas Robert Doebbert, Gerd Scholl

The integration of wireless communication technologies in industrial automation offers greater flexibility, but also exposes safety systems to a broader threat vector. Emerging regulations, such as the draft standard prEN 50742, mandate the convergence of functional safety and cy…

View free PDFSource page
arxivcs.CRcs.AIcs.ROeess.SY2026-07-20

RT-SHCUA: Real-Time Self-Hosted Computer-Use Agent for UAV Control

Di Lu, Bo Zhang, Xiyuan Li, Yongzhi Liao, Xuewen Dong, Yulong Shen, et al.

Natural-language control offers a promising interface for unmanned aerial vehicles (UAVs), but directly applying self-hosted computer-use agents (SHCUAs) to UAV control introduces a structural mismatch. SHCUAs are designed for interactive host-side tool use, where delayed agent i…

View free PDFSource page
arxiveess.SY2026-06-30

A Simplex-Inspired Architecture for Integrating Quantum Capabilities into Cyber-Physical Systems

Tamim Ahmed, Dacheng Shen, Mengyu Liu, Monowar Hasan

Cyber-physical systems require accurate and reliable system models to ensure safe and efficient operation. Classical Gaussian Process Regression (GPR) provides uncertainty-aware predictions but suffers from high computational complexity, which limits its scalability in real-time…

View free PDFSource page
arxiveess.SYmath.OC2026-07-21

Online sparse observers for cyber-physical systems under sensor bias

Vito Cerone, Sophie M. Fosson, Diego Regruto, Francesco Ripa

The design of state observers for cyber-physical systems under sparse sensor biases, faults, or attacks has drawn substantial attention in recent years. While sparsity-based batch approaches, which collect multiple measurements and run offline, are relatively mature, online secur…

View free PDFSource page