A dual-isolation-forests-based attack detection framework for industrial control systems
Abstract
The cybersecurity of industrial control systems (ICSs) is becoming increasingly critical under the current advancement in the cyber activity and the Internet of Things (IoT) technologies, and their direct impact on several life aspects such as safety, economy, and security. This paper presents a novel semi-supervised dual isolation forests-based (DIF) attack detection system that has been developed using the normal process operation data only and is demonstrated on a scale-down ICS known as the Secure Water Treatment (SWaT) testbed and the Water Distribution (WADI) testbed. The proposed cyber-attack detection framework is composed of two isolation forest models that are trained independently using the normalized raw data and a pre-processed version of the data using Principal Component Analysis (PCA), respectively, to detect attacks by separating-away anomalies. The performance of the proposed method is compared with the previous works, and it demonstrates improvements in terms of the attack detection capability, computational requirements, and applicability to high dimensional systems.
Collections
- Electrical Engineering [2647 items ]
Related items
Showing items related by title, author, creator and subject.
-
A comprehensive review of the cyber-attacks and cyber-security on load frequency control of power systems
Mohan, A.M.; Meskin, Nader; Mehrjerdi, H. ( MDPI AG , 2020 , Article Review)Power systems are complex systems that have great importance to socio-economic development due to the fact that the entire world relies on the electric network power supply for day-to-day life. Therefore, for the stable ... -
State-dependent adaptive dynamic programing for a class of continuous-time nonlinear systems
Batmani, Yazdan; Davoodi, Mohammadrez; Meskin, Nader ( Institute of Electrical and Electronics Engineers Inc. , 2016 , Conference Paper)The state-dependent Riccati equation (SDRE) technique can be used to solve optimal control problems for a wide class of nonlinear dynamical systems. In this method, instead of solving a complicated Hamilton-Jacobi-Bellman ... -
Cybersecurity for industrial control systems: A survey
Bhamare, D.; Zolanvari, M.; Erbad, A.; Jain, R.; Khan, K.; Meskin, Nader... more authors ... less authors ( Elsevier Ltd , 2020 , Article Review)Industrial Control System (ICS) is a general term that includes supervisory control & data acquisition (SCADA) systems, distributed control systems (DCS), and other control system configurations such as programmable logic ...