Leveraging Swarm Intelligence for Invariant Rule Generation and Anomaly Detection in Industrial Control Systems

被引:0
|
作者
Song, Yunkai [1 ]
Huang, Huihui [1 ]
Wang, Hongmin [1 ]
Wei, Qiang [1 ]
机构
[1] Informat Engn Univ, Sch Cyberspace Secur, Zhengzhou 450007, Peoples R China
来源
APPLIED SCIENCES-BASEL | 2024年 / 14卷 / 22期
关键词
industrial control systems; anomaly detection; numerical association rules; swarm intelligence algorithms; security enhancement; OPTIMIZATION;
D O I
10.3390/app142210705
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Industrial control systems (ICSs), which are fundamental to the operation of critical infrastructure, face increasingly sophisticated security threats due to the integration of information and operational technologies. Conventional anomaly detection techniques often lack the ability to provide clear explanations for their detection, and their inherent complexity can impede practical implementation in the resource-constrained environments typical of ICSs. To address these challenges, this paper proposes a novel approach that leverages swarm intelligence algorithms for the extraction of numerical association rules, specifically designed for anomaly detection in ICS. The proposed approach is designed to effectively identify and precisely localize anomalies by analyzing the states of sensors and actuators. Experimental validation using the Secure Water Treatment (SWaT) dataset demonstrates that the proposed approach can detect over 84% of attack instances, with precise anomaly localization achievable by examining as few as two to six sensor or actuator states. This significantly improves the efficiency and accuracy of anomaly detection. Furthermore, since the method is based on the general control dynamics of ICSs, it demonstrates robust generalization, making it applicable across a wide range of industrial control systems.
引用
收藏
页数:21
相关论文
共 50 条
  • [1] Anomaly detection using invariant rules in Industrial Control Systems
    Zhu, Qilin
    Ding, Yulong
    Jiang, Jie
    Yang, Shuang-Hua
    CONTROL ENGINEERING PRACTICE, 2025, 154
  • [2] On the Generation of Anomaly Detection Datasets in Industrial Control Systems
    Perales Gomez, Angel Luis
    Fernandez Maimo, Lorenzo
    Celdran, Alberto Huertas
    Garcia Clemente, Felix J.
    Cadenas Sarmiento, Cristian
    Del Canto Masa, Carlos Javier
    Mendez Nistal, Ruben
    IEEE ACCESS, 2019, 7 : 177460 - 177473
  • [3] Swarm intelligence in anomaly detection systems: an overview
    Mishra S.
    Sagban R.
    Yakoob A.
    Gandhi N.
    International Journal of Computers and Applications, 2021, 43 (02) : 109 - 118
  • [4] Leveraging Determinism in Industrial Control Systems for Advanced Anomaly Detection and Reliable Security Configuration
    Hadeli, Hadeli
    Schierholz, Ragnar
    Braendle, Markus
    Tuduce, Cristian
    2009 IEEE CONFERENCE ON EMERGING TECHNOLOGIES & FACTORY AUTOMATION (EFTA 2009), 2009,
  • [5] Intrusion and anomaly detection for the next-generation of industrial automation and control systems
    Rosa, Luis
    Cruz, Tiago
    de Freitas, Miguel Borges
    Quiterio, Pedro
    Henriques, Joao
    Caldeira, Filipe
    Monteiro, Edmundo
    Simoes, Paulo
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2021, 119 : 50 - 67
  • [6] Anomaly Detection Dataset for Industrial Control Systems
    Dehlaghi-Ghadim, Alireza
    Moghadam, Mahshid Helali
    Balador, Ali
    Hansson, Hans
    IEEE ACCESS, 2023, 11 : 107982 - 107996
  • [7] A swarm intelligence-based approach to anomaly detection of dynamic systems
    Agharazi, Hanieh
    Kolacinski, Richard M.
    Theeranaew, Wanchat
    Loparo, Kenneth A.
    SWARM AND EVOLUTIONARY COMPUTATION, 2019, 44 : 806 - 827
  • [8] A Control Flow Anomaly Detection Algorithm for Industrial Control Systems
    Zhang, Zhigang
    Chang, Chaowen
    Lv, Zhuo
    Han, Peisheng
    Wang, Yutong
    2018 1ST INTERNATIONAL CONFERENCE ON DATA INTELLIGENCE AND SECURITY (ICDIS 2018), 2018, : 286 - 293
  • [9] Attacks on Industrial Control Systems Modeling and Anomaly Detection
    Eigner, Oliver
    Kreimel, Philipp
    Tavolato, Paul
    ICISSP: PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2018, : 581 - 588
  • [10] FALCON: Framework for Anomaly Detection in Industrial Control Systems
    Sapkota, Subin
    Mehdy, A. K. M. Nuhil
    Reese, Stephen
    Mehrpouyan, Hoda
    ELECTRONICS, 2020, 9 (08) : 1 - 20