Anomaly-Based Detection and Classification of Attacks in Cyber-Physical Systems

被引:10
|
作者
Kreimel, Philipp [1 ]
Eigner, Oliver [1 ]
Tavolato, Paul [1 ]
机构
[1] Univ Appl Sci St Polten, Matthias Corvinus Str 15, A-3100 St Polten, Austria
来源
PROCEEDINGS OF THE 12TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2017) | 2017年
关键词
Anomaly detection; machine learning; cyber-physical systems;
D O I
10.1145/3098954.3103155
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-physical systems are found in industrial and production systems, as well as critical infrastructures. Due to the increasing integration of IP-based technology and standard computing devices, the threat of cyber-attacks on cyber-physical systems has vastly increased. Furthermore, traditional intrusion defense strategies for IT systems are often not applicable in operational environments. In this paper we present an anomaly-based approach for detection and classification of attacks in cyber-physical systems. To test our approach, we set up a test environment with sensors, actuators and controllers widely used in industry, thus, providing system data as close as possible to reality. First, anomaly detection is used to define a model of normal system behavior by calculating outlier scores from normal system operations. This valid behavior model is then compared with new data in order to detect anomalies. Further, we trained an attack model, based on supervised attacks against the test setup, using the naive Bayes classifier. If an anomaly is detected, the classification process tries to classify the anomaly by applying the attack model and calculating prediction confidences for trained classes. To evaluate the statistical performance of our approach, we tested the model by applying an unlabeled dataset, which contains valid and anomalous data. The results show that this approach was able to detect and classify such attacks with satisfactory accuracy.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Robust Multivariate Anomaly-Based Intrusion Detection System for Cyber-Physical Systems
    Dutta, Aneet Kumar
    Negi, Rohit
    Shukla, Sandeep Kumar
    CYBER SECURITY CRYPTOGRAPHY AND MACHINE LEARNING, 2021, 12716 : 86 - 93
  • [2] Combined Danger Signal and Anomaly-Based Threat Detection in Cyber-Physical Systems
    Degeler, Viktoriya
    French, Richard
    Jones, Kevin
    INTERNET OF THINGS: IOT INFRASTRUCTURES, PT I, 2016, 169 : 27 - 39
  • [3] Anomaly-Based Intrusion Detection System for Cyber-Physical System Security
    Colelli, Riccardo
    Magri, Filippo
    Panzieri, Stefano
    Pascucci, Federica
    2021 29TH MEDITERRANEAN CONFERENCE ON CONTROL AND AUTOMATION (MED), 2021, : 428 - 434
  • [4] A product machine model for anomaly detection of interposition attacks on cyber-physical systems
    Bellettini, Carlo
    Rrushi, Julian L.
    PROCEEDINGS OF THE IFIP TC 11/ 23RD INTERNATIONAL INFORMATION SECURITY CONFERENCE, 2008, : 285 - 299
  • [5] An anomaly-based approach for cyber-physical threat detection using network and sensor data
    Canonico, Roberto
    Esposito, Giovanni
    Navarro, Annalisa
    Romano, Simon Pietro
    Sperli, Giancarlo
    Vignali, Andrea
    COMPUTER COMMUNICATIONS, 2025, 234
  • [6] Communication Anomaly Detection in Cyber-physical Systems
    Blazek, P.
    Fujdiak, R.
    Hodon, M.
    Zolotova, I
    Mlynek, P.
    Misurec, J.
    SENSORS AND ELECTRONIC INSTRUMENTATION ADVANCES (SEIA' 19), 2019, : 311 - 316
  • [7] Detection of Replay Attacks in Cyber-Physical Systems
    Hoehn, Andreas
    Zhang, Ping
    2016 AMERICAN CONTROL CONFERENCE (ACC), 2016, : 290 - 295
  • [8] Behaviour-based anomaly detection of cyber-physical attacks on a robotic vehicle
    Bezemskij, Anatolij
    Loukas, George
    Anthony, Richard J.
    Gan, Diane
    2016 15TH INTERNATIONAL CONFERENCE ON UBIQUITOUS COMPUTING AND COMMUNICATIONS AND 2016 INTERNATIONAL SYMPOSIUM ON CYBERSPACE AND SECURITY (IUCC-CSS), 2016, : 61 - 68
  • [9] Adversarial attacks and mitigation for anomaly detectors of cyber-physical systems
    Jia, Yifan
    Wang, Jingyi
    Poskitt, Christopher M.
    Chattopadhyay, Sudipta
    Sun, Jun
    Chen, Yuqi
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2021, 34
  • [10] Anomaly Proposal-based Fire Detection for Cyber-Physical Systems
    Abeyrathna, Dilanga
    Huang, Pei-Chi
    Zhong, Xin
    2019 6TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND COMPUTATIONAL INTELLIGENCE (CSCI 2019), 2019, : 1203 - 1207