Pi Dechang
Personal Homepage
Paper Publications
Hml-ids: A hybrid-multilevel anomaly prediction approach for intrusion detection in scada systems
Hits:

Affiliation of Author(s):计算机科学与技术学院/人工智能学院/软件学院

Journal:IEEE Access

Abstract:Critical infrastructures, e.g., electricity generation and dispersal networks, chemical processing plants, and gas distribution, are governed and monitored by supervisory control and data acquisition systems (SCADA). Detecting intrusion is a prevalent area of study for numerous years, and several intrusion detection systems have been suggested in the literature for cyber-physical systems and industrial control system (ICS). In recent years, the viruses seismic net, duqu, and flame against ICS attacks have caused tremendous damage to nuclear facilities and critical infrastructure in some countries. These intensified attacks have sounded the alarm for the security of the ICS in many countries. The challenge in constructing an intrusion detection framework is to deal with unbalanced intrusion datasets, i.e. when one class is signified by a lesser amount of instances (minority class). To this end, we outline an approach to deal with this issue and propose an anomaly detection method for the ICS. Our proposed approach uses a hybrid model that takes advantage of the anticipated and consistent nature of communication patterns that occur among ground devices in ICS setups. First, we applied some preprocessing techniques to standardize and scale the data. Second, the dimensionality reduction algorithms are applied to improve the process of anomaly detection. Third, we employed an edited nearest-neighbor rule algorithm to balance the dataset. Fourth, by using the Bloom filter, a signature database is created by noting the system for a specific period lacking the occurrence of abnormalities. Finally, to detect new attacks, we combined our package contents-level detection with another instance-based learner to make a hybrid method for anomaly detection. The experimental results with a real large-scale dataset generated from a gas pipeline SCADA system show that the proposed approach HML-IDS outperforms the benchmark models with an accuracy rate of 97%. © 2013 IEEE.

Translation or Not:no

Date of Publication:2019-01-01

Co-author:Khan, Izhar Ahmed,Khan, Zaheer Ullah,Hussain, Yasir,Nawaz, Asif

Correspondence Author:Pi Dechang

Personal information

Professor
Supervisor of Doctorate Candidates

Alma Mater:南京航空航天大学

School/Department:College of Computer Science and Technology

Business Address:南航江宁校区东区计算机学院

Contact Information:邮箱:nuaacs@126.com 电话:025-52110071

Click:

Open time:..

The Last Update Time:..


Copyright©2018- Nanjing University of Aeronautics and Astronautics·Informationization Department(Informationization Technology Center)

MOBILE Version