Data Driven Physical Modelling For Intrusion Detection In Cyber Physical Systems

被引:12
|
作者
Junejo, Khurum Nazir [1 ,3 ]
Yau, David [1 ,2 ]
机构
[1] Singapore Univ Technol & Design, 8 Somapah Rd, Singapore 487372, Singapore
[2] Illinois Singapore, Adv Digital Sci Ctr, Singapore, Singapore
[3] Karachi Inst Econ & Technol, Karachi, Pakistan
关键词
Cyber Physical Systems Security; Machine Learning; Intrusion Detection; Fault Detection;
D O I
10.3233/978-1-61499-617-0-43
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Cyber physical systems are critical to the infrastructure of a country. They are becoming more vulnerable to cyber attacks due to their use of off the shelf servers and industrial network protocols. Availability on World Wide Web for monitoring and reporting, has further aggravated their risk of being attacked. Once an attacker breaches the network security, he can affect the operations of the system which may even lead to a catastrophe. Mathematical and formal models try to detect the departure of the system from its expected behaviour but are difficult to build, and are sensitive to noise. Furthermore they take a lot of time to detect the attack. We here propose a behaviour based machine learning intrusion detection approach that quickly detects attacks at the physical process layer. We validate our result on a complete replicate of the physical and control components of a real modern water treatment facility. Our approach is fast, scalable, robust to noise, and exhibits a low false positive (FP) rate with high precision and recall. The model can be easily updated to match the changing behaviour of the system and environment.
引用
收藏
页码:43 / 57
页数:15
相关论文
共 50 条
  • [1] Intrusion Detection in Cyber Physical Systems Based on Process Modelling
    Holczer, Tamas
    Gazdag, Andras
    Miru, Gyorgy
    PROCEEDINGS OF THE 15TH EUROPEAN CONFERENCE ON CYBER WARFARE AND SECURITY (ECCWS 2016), 2016, : 127 - 135
  • [2] On Survivability of Mobile Cyber Physical Systems with Intrusion Detection
    Mitchell, Robert
    Chen, Ing-Ray
    WIRELESS PERSONAL COMMUNICATIONS, 2013, 68 (04) : 1377 - 1391
  • [3] On Survivability of Mobile Cyber Physical Systems with Intrusion Detection
    Robert Mitchell
    Ing-Ray Chen
    Wireless Personal Communications, 2013, 68 : 1377 - 1391
  • [4] Data driven discovery of cyber physical systems
    Ye Yuan
    Xiuchuan Tang
    Wei Zhou
    Wei Pan
    Xiuting Li
    Hai-Tao Zhang
    Han Ding
    Jorge Goncalves
    Nature Communications, 10
  • [5] Data driven discovery of cyber physical systems
    Yuan, Ye
    Tang, Xiuchuan
    Zhou, Wei
    Pan, Wei
    Li, Xiuting
    Zhang, Hai-Tao
    Ding, Han
    Goncalves, Jorge
    NATURE COMMUNICATIONS, 2019, 10 (1)
  • [6] Big Data Driven Cyber Physical Systems
    Hahanov, Vladimir
    Miz, Volodymyr
    Litvinova, Eugenia
    Mishchenko, Alexander
    Shcherbin, Dmitry
    PROCEEDINGS OF XIIITH INTERNATIONAL CONFERENCE - EXPERIENCE OF DESIGNING AND APPLICATION OF CAD SYSTEMS IN MICROELECTRONICS CADSM 2015, 2015, : 76 - 80
  • [7] Data Driven Testing of Cyber Physical Systems
    Humeniuk, Dmytro
    Antoniol, Giuliano
    Khomh, Foutse
    2021 IEEE/ACM 14TH INTERNATIONAL WORKSHOP ON SEARCH-BASED SOFTWARE TESTING (SBST 2021), 2021, : 16 - 19
  • [8] A Survey of Intrusion Detection Techniques for Cyber-Physical Systems
    Mitchell, Robert
    Chen, Ing-Ray
    ACM COMPUTING SURVEYS, 2014, 46 (04)
  • [9] Intrusion Detection in Cyber-Physical Systems: Techniques and Challenges
    Han, Song
    Xie, Miao
    Chen, Hsiao-Hwa
    Ling, Yun
    IEEE SYSTEMS JOURNAL, 2014, 8 (04): : 1049 - 1059
  • [10] Effect of Intrusion Detection and Response on Reliability of Cyber Physical Systems
    Mitchell, Robert
    Chen, Ing-Ray
    IEEE TRANSACTIONS ON RELIABILITY, 2013, 62 (01) : 199 - 210