Graph Autoencoders for Detecting Anomalous Intrusions in OT Networks Through Dynamic Link Detection

被引:0
|
作者
Howe, Alex [1 ]
Peasley, Dale [1 ]
Papa, Mauricio [1 ]
机构
[1] Univ Tulsa, Tulsa, OK 74104 USA
关键词
D O I
10.1109/CCNC51664.2024.10454841
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper evaluates the use of graph neural network (GNN) based autoencoders for detecting network intrusions or anomalous traffic in Operational Technology (OT) networks. Traditional intrusion detection methods often struggle to capture the complex relationships and interdependencies found in OT network communications. These spatial relationships can provide information vital for identifying harder to detect attacks (i.e. Advanced Persistent Threats). GNNs are a machine learning technique which operate on graph-structured data and can be used to identify underlying patterns and relationships between the nodes. Graph autoencoders (GAEs) are an unsupervised GNN-based learning technique that incorporates an encoder-decoder architecture and can be used for anomaly detection in graph structured data. This work evaluates the use of graph autoencoders for detecting anomalous edges (extracted from packets) in OT network data. Additionally, we introduce a method for encoding raw network traffic into discrete temporal graphs which can be used to apply GAEs for real-time intrusion detection. The proposed network traffic encoding scheme incorporates multi-dimensional edge attributes in order to capture information for determining the relevance of a given network packet. The approach is evaluated using two OT network datasets each containing labeled examples of commonly encountered malicious attack traffic. Results are compared against baseline anomaly detection methods including K-Nearest Neighbors, Deep Autoencoders, and Isolation Forest. The proposed graph autoencoder outperforms the baseline cases in terms of detection accuracy achieving a 31.05% and 8.64% improvement in F1 scores over the baseline models on the two OT network datasets.
引用
收藏
页数:6
相关论文
共 50 条
  • [41] On the Effectiveness of Heterogeneous Ensembles Combining Graph Neural Networks and Heuristics for Dynamic Link Prediction
    Skarding, Joakim
    Gabrys, Bogdan
    Musial, Katarzyna
    IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING, 2024, 11 (04): : 3250 - 3259
  • [42] ComGCN: Community-Driven Graph Convolutional Network for Link Prediction in Dynamic Networks
    Phu Pham
    Nguyen, Loan T. T.
    Ngoc Thanh Nguyen
    Pedrycz, Witold
    Yun, Unil
    Bay Vo
    IEEE TRANSACTIONS ON SYSTEMS MAN CYBERNETICS-SYSTEMS, 2022, 52 (09): : 5481 - 5493
  • [43] Enhancing parkinson disease detection through feature based deep learning with autoencoders and neural networks
    Valarmathi, P.
    Suganya, Y.
    Saranya, K. R.
    Priya, S. Shanmuga
    SCIENTIFIC REPORTS, 2025, 15 (01):
  • [44] Dynamic Selfish Node Detection With Link Quality Consideration in Vehicular Networks
    Shan, Axida
    Fan, Xiumei
    Wu, Celimuge
    Zhang, Xinghui
    Men, Rui
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2023, 72 (07) : 8827 - 8843
  • [45] Anomaly analysis and visualization for dynamic networks through spatiotemporal graph segmentations
    Liao, Qi
    Li, Ting
    Blakely, Benjamin A.
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2018, 124 : 63 - 79
  • [46] Graph similarity learning for change-point detection in dynamic networks
    Sulem, Deborah
    Kenlay, Henry
    Cucuringu, Mihai
    Dong, Xiaowen
    MACHINE LEARNING, 2024, 113 (01) : 1 - 44
  • [47] Structural Temporal Graph Neural Networks for Anomaly Detection in Dynamic Graphs
    Cai, Lei
    Chen, Zhengzhang
    Luo, Chen
    Gui, Jiaping
    Ni, Jingchao
    Li, Ding
    PROCEEDINGS OF THE 30TH ACM INTERNATIONAL CONFERENCE ON INFORMATION & KNOWLEDGE MANAGEMENT, CIKM 2021, 2021, : 3747 - 3756
  • [48] Graph similarity learning for change-point detection in dynamic networks
    Déborah Sulem
    Henry Kenlay
    Mihai Cucuringu
    Xiaowen Dong
    Machine Learning, 2024, 113 : 1 - 44
  • [49] Leveraging Graph Embedding for Opinion Leader Detection in Dynamic Social Networks
    Hui, Yunming
    Chekol, Mel
    Wang, Shihan
    ARTIFICIAL INTELLIGENCE-ECAI 2023 INTERNATIONAL WORKSHOPS, PT 2, XAI3, TACTIFUL, XI-ML, SEDAMI, RAAIT, AI4S, HYDRA, AI4AI, 2023, 2024, 1948 : 5 - 22
  • [50] Dynamic Relation-Attentive Graph Neural Networks for Fraud Detection
    Kim, Heehyeon
    Choi, Jinhyeok
    Whang, Joyce Jiyoung
    2023 23RD IEEE INTERNATIONAL CONFERENCE ON DATA MINING WORKSHOPS, ICDMW 2023, 2023, : 1092 - 1096