Evaluation of Machine Learning Algorithms for Detection of Malicious Traffic in SCADA Network

被引:0
|
作者
L. Rajesh
Penke Satyanarayana
机构
[1] Koneru Lakshmaiah Education Foundation,Department of ECE
[2] K L Deemed to be University,undefined
来源
Journal of Electrical Engineering & Technology | 2022年 / 17卷
关键词
Intrusion detection system; Process control system; SCADA system; Machine learning; Network security; Sensor telemetry; Monitoring; Soft computing with sensor data;
D O I
暂无
中图分类号
学科分类号
摘要
Industrial Process Control Systems (IPCS) like Supervisory Control and Data Acquisition (SCADA) systems are more vulnerable to cyber-attacks. Detection of malicious traffic in IPCS-SCADA network using machine learning techniques is one of the security enhancement methods of Industrial Process Control Systems. The existing network intrusion detection methods used limited old data sets and little addressed for IPCS-SCADA specific network. In this paper we evaluated machine learning algorithms with and with out filtering and sampling techniques for intrusion detection in IPCS-SCADA network. In this work, we generated own data set with network traffic contains both normal and attack data using a real time SCADA test bed. Next we applied feature extraction techniques Chi-Square, ANOVA and Least Absolute Shrinkage and Selection Operator (LASSO) to reduce the feature set dimensionality. We applied SVM variant Synthetic Minority Oversampling Technique (SVMSMOTE) for handling this imbalance data set. After that we used four Machine Learning (ML) algorithms like Random Forest (RF), Support Vector Machine (SVM), K-nearest neighbors (KNN) and Naive Bayes (NB) and calculated various performance metrics like Accuracy, Matthews correlation coefficient (MCC), recall, F1-score, FNR and ROC. We evaluated the performance of these ML algorithms with (a) ML techniques only (b) ML techniques with feature selection methods (c) ML techniques with SVMSMOTE only (d) ML techniques with both feature selection methods and SVMSMOTE. We concluded from the results that SVM algorithm with filtering and SVMSMOTE technique outperforms compared to other three machine learning algorithms, with ROC  value of 99.96%.
引用
收藏
页码:913 / 928
页数:15
相关论文
共 50 条
  • [1] Evaluation of Machine Learning Algorithms for Detection of Malicious Traffic in SCADA Network
    Rajesh, L.
    Satyanarayana, Penke
    JOURNAL OF ELECTRICAL ENGINEERING & TECHNOLOGY, 2022, 17 (02) : 913 - 928
  • [2] Malicious Network Traffic Detection for DNS over HTTPS using Machine Learning Algorithms
    Casanova, Lionel F. Gonzalez
    Lin, Po-Chiang
    APSIPA TRANSACTIONS ON SIGNAL AND INFORMATION PROCESSING, 2023, 12 (02)
  • [3] Detection of Encrypted Malicious Network Traffic using Machine Learning
    De Lucia, Michael J.
    Cotton, Chase
    MILCOM 2019 - 2019 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM), 2019,
  • [4] AN EVALUATION OF MACHINE LEARNING ALGORITHMS TO DETECT ATTACKS IN SCADA NETWORK
    Tamy, Sara
    Belhadaoui, Hicham
    Almostafa Rabbah, Mahmoud
    Rabbah, Nabila
    Rifi, Mounir
    2019 7TH MEDITERRANEAN CONGRESS OF TELECOMMUNICATIONS (CMT 2019), 2019,
  • [5] Applying machine learning techniques for detection of malicious code in network traffic
    Elovici, Yuval
    Shabtai, Asaf
    Moskovitch, Robert
    Tahan, Gil
    Glezer, Chanan
    KI 2007: ADVANCES IN ARTIFICIAL INTELLIGENCE, PROCEEDINGS, 2007, 4667 : 44 - +
  • [6] An Evaluation of Machine Learning Methods to Detect Malicious SCADA Communications
    Beaver, Justin M.
    Borges-Hink, Raymond C.
    Buckner, Mark. A.
    2013 12TH INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND APPLICATIONS (ICMLA 2013), VOL 2, 2013, : 54 - 59
  • [7] Feature mining for encrypted malicious traffic detection with deep learning and other machine learning algorithms
    Wang, Zihao
    Thing, Vrizlynn L. L.
    COMPUTERS & SECURITY, 2023, 128
  • [8] Black box attack and network intrusion detection using machine learning for malicious traffic
    Zhu, Yiran
    Cui, Lei
    Ding, Zhenquan
    Li, Lun
    Liu, Yongji
    Hao, Zhiyu
    COMPUTERS & SECURITY, 2022, 123
  • [9] Learning Invariant Representation for Malicious Network Traffic Detection
    Bartos, Karel
    Sofka, Michal
    Franc, Vojtech
    ECAI 2016: 22ND EUROPEAN CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2016, 285 : 1132 - 1139
  • [10] Machine Learning Algorithms for Traffic Interruption Detection
    Karnati, Yashaswi
    Mahajan, Dhruv
    Rangarajan, Anand
    Ranka, Sanjay
    2020 FIFTH INTERNATIONAL CONFERENCE ON FOG AND MOBILE EDGE COMPUTING (FMEC), 2020, : 231 - 236