Multigranularity Feature Automatic Marking-Based Deep Learning for Anomaly Detection of Industrial Control Systems

被引:1
|
作者
Du, Xinyi [1 ,2 ,3 ]
Xu, Chi [2 ,3 ]
Li, Lin [2 ]
Li, Xinchun [1 ]
机构
[1] Liaoning Tech Univ, Sch Elect & Informat Engn, Huludao 125105, Peoples R China
[2] Chinese Acad Sci, Shenyang Inst Automat, State Key Lab Robot, Shenyang 110016, Peoples R China
[3] Chinese Acad Sci, Key Lab Networked Control Syst, Shenyang 110016, Peoples R China
来源
IEEE OPEN JOURNAL OF INSTRUMENTATION AND MEASUREMENT | 2024年 / 3卷
基金
中国国家自然科学基金;
关键词
Protocols; Feature extraction; Anomaly detection; Deep learning; Industrial control; Convolutional neural networks; Security; convolutional neural network; deep learning; feature automatic marking; feature extraction; industrial control protocol (ICP);
D O I
10.1109/OJIM.2024.3418466
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Industrial control systems are facing ever-increasing security challenges due to the large-scale access of heterogeneous devices in the open Internet environment. Existing anomaly detection methods are mainly based on the priori knowledge of industrial control protocols (ICPs) whose protocol specifications, communication mechanism, and data format are already known. However, when these knowledge are blank, namely, unknown ICPs, existing methods become powerless to detect the anomaly data. To tackle this challenge, we propose a multigranularity feature automatic marking-based deep learning method to classify unknown ICPs for anomaly detection. First, to obtain the feature sequences without priori knowledge assisting, we propose a multigranularity feature extraction algorithm to extract both byte and half-byte information by fully utilizing the intensive key information in the header field of the application layer. Then, to label the feature sequences for deep learning, we propose a feature automatic marking algorithm that utilizes the inconsistency feature sequences to dynamically update the feature sequence set. With the labeled feature sequences, we employ deep learning with 1-D convolutional neural network and gated recurrent unit to classify the unknown ICPs and realize anomaly detection. Extensive experiments on two public datasets show that both the accuracy and precision of the proposed method reach above 98.4%, which is better than the three benchmark methods.
引用
收藏
页数:10
相关论文
共 50 条
  • [21] Deep Learning-Based Intrusion Detection Systems: A Systematic Review
    Lansky, Jan
    Ali, Saqib
    Mohammadi, Mokhtar
    Majeed, Mohammed Kamal
    Karim, Sarkhel H. Taher
    Rashidi, Shima
    Hosseinzadeh, Mehdi
    Rahmani, Amir Masoud
    IEEE ACCESS, 2021, 9 : 101574 - 101599
  • [22] Towards Deep Industrial Transfer Learning for Anomaly Detection on Time Series Data
    Maschler, Benjamin
    Knodel, Tim
    Weyrich, Michael
    2021 26TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2021,
  • [23] Metaheuristic feature selection with deep learning enabled cascaded recurrent neural network for anomaly detection in Industrial Internet of Things environment
    Nenavath Chander
    Mummadi Upendra Kumar
    Cluster Computing, 2023, 26 : 1801 - 1819
  • [24] Metaheuristic feature selection with deep learning enabled cascaded recurrent neural network for anomaly detection in Industrial Internet of Things environment
    Chander, Nenavath
    Kumar, Mummadi Upendra
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2023, 26 (03): : 1801 - 1819
  • [25] Proposal of VAE-Based Deep Learning Anomaly Detection Model for Industrial Products
    Nakata, Shunta
    Kasahara, Takehiro
    Nambo, Hidetaka
    PROCEEDINGS OF THE SIXTEENTH INTERNATIONAL CONFERENCE ON MANAGEMENT SCIENCE AND ENGINEERING MANAGEMENT - VOL 1, 2022, 144 : 336 - 349
  • [26] MADICS: A Methodology for Anomaly Detection in Industrial Control Systems
    Perales Gomez, Angel Luis
    Fernandez Maimo, Lorenzo
    Huertas Celdran, Alberto
    Garcia Clemente, Felix J.
    SYMMETRY-BASEL, 2020, 12 (10):
  • [27] Deep Learning-based Anomaly Detection in Cyber-physical Systems: Progress and Opportunities
    Luo, Yuan
    Xiao, Ya
    Cheng, Long
    Peng, Guojun
    Yao, Danfeng
    ACM COMPUTING SURVEYS, 2021, 54 (05)
  • [28] Deep Learning for Automatic Vision-Based Recognition of Industrial Surface Defects: A Survey
    Prunella, Michela
    Scardigno, Roberto Maria
    Buongiorno, Domenico
    Brunetti, Antonio
    Longo, Nicola
    Carli, Raffaele
    Dotoli, Mariagrazia
    Bevilacqua, Vitoantonio
    IEEE ACCESS, 2023, 11 : 43370 - 43423
  • [29] A Survey of Graph-Based Deep Learning for Anomaly Detection in Distributed Systems
    Pazho, Armin Danesh
    Noghre, Ghazal Alinezhad
    Purkayastha, Arnab A.
    Vempati, Jagannadh
    Martin, Otto
    Tabkhi, Hamed
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2024, 36 (01) : 1 - 20
  • [30] Anomaly detection with vision-based deep learning for epidemic prevention and control
    Samani, Hooman
    Yang, Chan-Yun
    Li, Chunxu
    Chung, Chia-Ling
    Li, Shaoxiang
    JOURNAL OF COMPUTATIONAL DESIGN AND ENGINEERING, 2022, 9 (01) : 187 - 200