Leveraging Swarm Intelligence for Invariant Rule Generation and Anomaly Detection in Industrial Control Systems

被引:0
|
作者
Song, Yunkai [1 ]
Huang, Huihui [1 ]
Wang, Hongmin [1 ]
Wei, Qiang [1 ]
机构
[1] Informat Engn Univ, Sch Cyberspace Secur, Zhengzhou 450007, Peoples R China
来源
APPLIED SCIENCES-BASEL | 2024年 / 14卷 / 22期
关键词
industrial control systems; anomaly detection; numerical association rules; swarm intelligence algorithms; security enhancement; OPTIMIZATION;
D O I
10.3390/app142210705
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Industrial control systems (ICSs), which are fundamental to the operation of critical infrastructure, face increasingly sophisticated security threats due to the integration of information and operational technologies. Conventional anomaly detection techniques often lack the ability to provide clear explanations for their detection, and their inherent complexity can impede practical implementation in the resource-constrained environments typical of ICSs. To address these challenges, this paper proposes a novel approach that leverages swarm intelligence algorithms for the extraction of numerical association rules, specifically designed for anomaly detection in ICS. The proposed approach is designed to effectively identify and precisely localize anomalies by analyzing the states of sensors and actuators. Experimental validation using the Secure Water Treatment (SWaT) dataset demonstrates that the proposed approach can detect over 84% of attack instances, with precise anomaly localization achievable by examining as few as two to six sensor or actuator states. This significantly improves the efficiency and accuracy of anomaly detection. Furthermore, since the method is based on the general control dynamics of ICSs, it demonstrates robust generalization, making it applicable across a wide range of industrial control systems.
引用
收藏
页数:21
相关论文
共 50 条
  • [21] Research on Improvement of Anomaly Detection Performance in Industrial Control Systems
    Bae, Sungho
    Hwang, Chanwoong
    Lee, Taejin
    INFORMATION SECURITY APPLICATIONS, 2021, 13009 : 76 - 87
  • [22] State-Aware Anomaly Detection for Industrial Control Systems
    Ghaeini, Hamid Reza
    Antonioli, Daniele
    Brasser, Ferdinand
    Sadeghi, Ahmad-Reza
    Tippenhauer, Nils Ole
    33RD ANNUAL ACM SYMPOSIUM ON APPLIED COMPUTING, 2018, : 1620 - 1628
  • [23] An Anomaly Detection Technique for Deception Attacks in Industrial Control Systems
    Qassim, Q. S.
    Ahmad, A. R.
    Ismail, R.
    Bakar, Abu A.
    Rahim, Abdul F.
    Mokhtar, M. Z.
    Ramli, R.
    Mohd, Yusof B.
    Mahdi, Mohammed Najah
    2019 IEEE 5TH INTL CONFERENCE ON BIG DATA SECURITY ON CLOUD (BIGDATASECURITY) / IEEE INTL CONFERENCE ON HIGH PERFORMANCE AND SMART COMPUTING (HPSC) / IEEE INTL CONFERENCE ON INTELLIGENT DATA AND SECURITY (IDS), 2019, : 267 - 272
  • [24] An unsupervised anomaly intrusion detection algorithm based on swarm intelligence
    Feng, Y
    Wu, ZF
    Wu, KG
    Xiong, ZY
    Zhou, Y
    PROCEEDINGS OF 2005 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-9, 2005, : 3965 - 3969
  • [25] Anomaly Detection Algorithms for Smart Metering using Swarm Intelligence
    Paikrao, Pradeep Subhash
    Bose, Ranjan
    PROCEEDINGS OF THE 1ST INTERNATIONAL WORKSHOP ON FUTURE INDUSTRIAL COMMUNICATION NETWORKS (FICN'18), 2018, : 3 - 8
  • [26] Clustering based on swarm intelligence with application to anomaly intrusion detection
    Feng, Y
    Wu, KG
    Wu, ZF
    Zhong, J
    Li, H
    Proceedings of the 11th Joint International Computer Conference, 2005, : 488 - 491
  • [27] Leveraging Swarm Intelligence for Optimal Thermal Camera and Sensor Placement in Industrial Environments
    Zarzycki, Hubert
    Ewald, Dawid
    Prokopowicz, Piotr
    ELECTRONICS, 2024, 13 (03)
  • [28] A Systematic Framework to Generate Invariants for Anomaly Detection in Industrial Control Systems
    Feng, Cheng
    Palleti, Venkata Reddy
    Mathur, Aditya
    Chana, Deeph
    26TH ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2019), 2019,
  • [29] Data Clustering-based Anomaly Detection in Industrial Control Systems
    Kiss, Istvan
    Genge, Bela
    Haller, Piroska
    Sebestyen, Gheorghe
    2014 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTER COMMUNICATION AND PROCESSING (ICCP), 2014, : 275 - +
  • [30] Anomaly detection in Industrial Control Systems using Logical Analysis of Data
    Das, Tanmoy Kanti
    Adepu, Sridhar
    Zhou, Jianying
    COMPUTERS & SECURITY, 2020, 96