Alarm Based Anomaly Detection of Insider Attacks in SCADA System

被引:0
|
作者
Nasr, Payam Mahmoudi [1 ]
Varjani, Ali Yazdian [1 ]
机构
[1] Tarbiat Modares Univ, Elect & Comp Engn Dept, Tehran, Iran
来源
2014 SMART GRID CONFERENCE (SGC) | 2014年
关键词
Insider attack; anomaly detection; security; SCADA;
D O I
暂无
中图分类号
TE [石油、天然气工业]; TK [能源与动力工程];
学科分类号
0807 ; 0820 ;
摘要
Insider attacks are one of the most dangerous threats on security of critical infrastructures. An insider attack occurs when an authorized operator misuse the permissions, and brings catastrophic damages by sending legitimate control commands. Therefore, insider attacks have great impact and higher success rate, and it is difficult to predict and protect against them. This paper, by study on the SCADA alarms, proposes a new alarm based statistical anomaly detection method to identify potential insider attacks at substations and total transmission system in power grid. To demonstrate the proposed method, two insider attack scenarios have been simulated at both substations level and transmission system. Experimental scenarios illustrate proposed method is effective, and anomalies can be detected by minimum number of alarms.
引用
收藏
页数:6
相关论文
共 50 条
  • [11] Detection of Cyber-Attacks to Water Systems through Machine-Learning-Based Anomaly Detection in SCADA Data
    Chandy, Sarin E.
    Rasekh, Amin
    Barker, Zachary A.
    Campbell, Bruce
    Shafiee, M. Ehsan
    WORLD ENVIRONMENTAL AND WATER RESOURCES CONGRESS 2017: HYDRAULICS AND WATERWAYS AND WATER DISTRIBUTION SYSTEMS ANALYSIS, 2017, : 611 - 616
  • [12] Insider tips on buying a SCADA system
    1600, Oildom Publishing Co. of Texas Inc. (232):
  • [13] Towards Periodicity Based Anomaly Detection in SCADA Networks
    Barbosa, Rafael Ramos Regis
    Sadre, Ramin
    Pras, Aiko
    2012 IEEE 17TH CONFERENCE ON EMERGING TECHNOLOGIES & FACTORY AUTOMATION (ETFA), 2012,
  • [14] Neural network based anomaly detection for SCADA systems
    Reuter, Lenhard
    Jung, Oliver
    Magin, Julian
    2020 23RD CONFERENCE ON INNOVATION IN CLOUDS, INTERNET AND NETWORKS AND WORKSHOPS (ICIN 2020), 2020, : 194 - 201
  • [15] Timing-Based Anomaly Detection in SCADA Networks
    Lin, Chih-Yuan
    Nadjm-Tehrani, Simin
    Asplund, Mikael
    CRITICAL INFORMATION INFRASTRUCTURES SECURITY (CRITIS 2017), 2018, 10707 : 48 - 59
  • [16] Performance Evaluation of Intrusion Detection System Using Anomaly and Signature based algorithms to Reduction False Alarm Rate and Detect Unknown Attacks
    Hussein, Safwan Mawlood
    2016 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE & COMPUTATIONAL INTELLIGENCE (CSCI), 2016, : 1064 - 1069
  • [17] A System Architecture for the Detection of Insider Attacks in Big Data Systems
    Aditham, Santosh
    Ranganathan, Nagarajan
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2018, 15 (06) : 974 - 987
  • [18] Recent advances in SCADA alarm system
    Kumar, Rajeev
    International Journal of Smart Home, 2010, 4 (04): : 1 - 10
  • [19] Design of Intrusion Detection and Prevention in SCADA System for the Detection of Bias Injection Attacks
    Benisha, R. B.
    Raja Ratna, S.
    SECURITY AND COMMUNICATION NETWORKS, 2019, 2019
  • [20] E-Alarm: An Anomaly Detection System on Large Network
    Sun, Min
    Wang, Yuanzhi
    Luo, Yun
    FIRST IITA INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, PROCEEDINGS, 2009, : 555 - +