APT Attack Detection of a New Power System based on DPI-transformer

被引:0
|
作者
Zhang, Yazhuo [1 ]
Li, Yuancheng [1 ]
机构
[1] North China Elect Power Univ, Sch Control & Comp Engn, 2 Beinong Rd, Beijing 102206, Peoples R China
关键词
New power system; advanced persistent threat; transformer; deep packet inspection; attacks; transmission;
D O I
10.2174/2352096516666230504111123
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Introduction: In recent years, the frequent occurrence of network security attacks in the power field has brought huge risks to the production, transmission, and supply of power systems, and Advanced Persistent Threat (APT) is a covert advanced network security attack, which has become one of the network security risks that cannot be ignored in the construction of new power systems. Objective: This study aims to resist the increasing risk of APT attacks in the construction of new power systems, this paper proposes an attack detection model based on Deep Packet Inspection (DPI) and Transformer. Methods: Firstly, we extracted 606 traffic characteristics from the original traffic data through the extended CIC Flowmeter and used them all to train the Transformer network. Then, we used the DPI-Transformer model and traffic labels to perform feature analysis on the traffic data and finally obtained the APT-Score. If the APT-Score is greater than the threshold, the alarm module is triggered. Results: By analyzing the headers and payloads of the network traffic in the APT-2020 dataset, the experimental results show that the detection accuracy of APT attacks by the DPI-Transformer detection model is significantly higher than that of the current mainstream APT attack detection algorithms. Conclusion: Combined with the characteristics of the new power system and APT attacks, this paper proposes an attack detection model DPI-Transformer, which proves that the model has greatly improved the detection accuracy.
引用
收藏
页码:99 / 106
页数:8
相关论文
共 50 条
  • [31] Detection of false data injection attack in power grid based on spatial-temporal transformer network
    Li, Xueping
    Hu, Linbo
    Lu, Zhigang
    EXPERT SYSTEMS WITH APPLICATIONS, 2024, 238
  • [32] A novel approach for APT attack detection based on feature intelligent extraction and representation learning
    Do Xuan, Cho
    Cuong, Nguyen Hoa
    PLOS ONE, 2024, 19 (06):
  • [33] APT attack detection based on flow network analysis techniques using deep learning
    Cho Do Xuan
    Mai Hoang Dao
    Hoa Dinh Nguyen
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2020, 39 (03) : 4785 - 4801
  • [34] Research and Application of APT Attack Defense and Detection Technology Based on Big Data Technology
    Liu, Donglan
    Zhang, Hao
    Yu, Hao
    Liu, Xin
    Zhao, Yong
    Lv, Guodong
    PROCEEDINGS OF 2019 IEEE 9TH INTERNATIONAL CONFERENCE ON ELECTRONICS INFORMATION AND EMERGENCY COMMUNICATION (ICEIEC 2019), 2019, : 701 - 704
  • [35] Multi-stage detection method for APT attack based on sample feature reinforcement
    Xie, Lixia
    Li, Xueou
    Yang, Hongyu
    Zhang, Liang
    Cheng, Xiang
    Tongxin Xuebao/Journal on Communications, 2022, 43 (12): : 66 - 76
  • [36] CNN-Based Transformer Model for Fault Detection in Power System Networks
    Thomas, Jibin B.
    Chaudhari, Saurabh G.
    Shihabudheen, K. V.
    Verma, Nishchal K.
    IEEE TRANSACTIONS ON INSTRUMENTATION AND MEASUREMENT, 2023, 72
  • [37] Research on Intelligent Power Grid Attack Detection System Based on Machine Learning
    Zhang, Ning
    Zhu, Liang
    PROCEEDINGS OF 2024 INTERNATIONAL CONFERENCE ON MACHINE INTELLIGENCE AND DIGITAL APPLICATIONS, MIDA2024, 2024, : 480 - 486
  • [38] Detection of False Data Injection Attack in Power System Based on Hellinger Distance
    Qu, Zhengwei
    Yang, Jingchuan
    Wang, Yunjing
    Georgievitch, Popov Maxim
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2024, 20 (02) : 2119 - 2128
  • [39] NEW TRANSFORMER EQUIVALENT FOR POWER SYSTEM MODELING
    REED, MB
    ROBERGE, RM
    IEEE TRANSACTIONS ON POWER APPARATUS AND SYSTEMS, 1972, PA91 (03): : 1119 - &
  • [40] FPE-Transformer: A Feature Positional Encoding-Based Transformer Model for Attack Detection
    Zaim, Hande Cavsi
    Yolacan, Esra Nergis
    APPLIED SCIENCES-BASEL, 2025, 15 (03):