Leveraging Swarm Intelligence for Invariant Rule Generation and Anomaly Detection in Industrial Control Systems

被引:0
|
作者
Song, Yunkai [1 ]
Huang, Huihui [1 ]
Wang, Hongmin [1 ]
Wei, Qiang [1 ]
机构
[1] Informat Engn Univ, Sch Cyberspace Secur, Zhengzhou 450007, Peoples R China
来源
APPLIED SCIENCES-BASEL | 2024年 / 14卷 / 22期
关键词
industrial control systems; anomaly detection; numerical association rules; swarm intelligence algorithms; security enhancement; OPTIMIZATION;
D O I
10.3390/app142210705
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Industrial control systems (ICSs), which are fundamental to the operation of critical infrastructure, face increasingly sophisticated security threats due to the integration of information and operational technologies. Conventional anomaly detection techniques often lack the ability to provide clear explanations for their detection, and their inherent complexity can impede practical implementation in the resource-constrained environments typical of ICSs. To address these challenges, this paper proposes a novel approach that leverages swarm intelligence algorithms for the extraction of numerical association rules, specifically designed for anomaly detection in ICS. The proposed approach is designed to effectively identify and precisely localize anomalies by analyzing the states of sensors and actuators. Experimental validation using the Secure Water Treatment (SWaT) dataset demonstrates that the proposed approach can detect over 84% of attack instances, with precise anomaly localization achievable by examining as few as two to six sensor or actuator states. This significantly improves the efficiency and accuracy of anomaly detection. Furthermore, since the method is based on the general control dynamics of ICSs, it demonstrates robust generalization, making it applicable across a wide range of industrial control systems.
引用
收藏
页数:21
相关论文
共 50 条
  • [41] Self-similarity based network anomaly detection for industrial control systems
    Martin, Bryan
    Bollmann, Chad A.
    2023 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY, CNS, 2023,
  • [42] An improved autoencoder-based approach for anomaly detection in industrial control systems
    Aslam, Muhammad Muzamil
    Tufail, Ali
    De Silva, Liyanage Chandratilak
    Haji Mohd Apong, Rosyzie Anna Awg
    Namoun, Abdallah
    SYSTEMS SCIENCE & CONTROL ENGINEERING, 2024, 12 (01)
  • [43] Federated Learning-Based Explainable Anomaly Detection for Industrial Control Systems
    Huong, Truong Thu
    Bac, Ta Phuong
    Ha, Kieu Ngan
    Hoang, Nguyen Viet
    Hoang, Nguyen Xuan
    Hung, Nguyen Tai
    Tran, Kim Phuc
    IEEE ACCESS, 2022, 10 : 53854 - 53872
  • [44] Dynamic Data Abstraction-Based Anomaly Detection for Industrial Control Systems
    Cho, Jake
    Gong, Seonghyeon
    ELECTRONICS, 2024, 13 (01)
  • [45] A Comparative Study of Time Series Anomaly Detection Models for Industrial Control Systems
    Kim, Bedeuro
    Alawami, Mohsen Ali
    Kim, Eunsoo
    Oh, Sanghak
    Park, Jeongyong
    Kim, Hyoungshick
    SENSORS, 2023, 23 (03)
  • [46] AADS: A Noise-Robust Anomaly Detection Framework for Industrial Control Systems
    Abdelaty, Maged
    Doriguzzi-Corin, Roberto
    Siracusa, Domenico
    INFORMATION AND COMMUNICATIONS SECURITY (ICICS 2019), 2020, 11999 : 53 - 70
  • [47] A real-time network based anomaly detection in industrial control systems
    Zare, Faeze
    Mahmoudi-Nasr, Payam
    Yousefpour, Rohollah
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2024, 45
  • [48] Threat Intelligence Generation Using Network Telescope Data for Industrial Control Systems
    Cabana, Olivier
    Youssef, Amr M.
    Debbabi, Mourad
    Lebel, Bernard
    Kassouf, Marthe
    Atallah, Ribal
    Agba, Basile L.
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2021, 16 : 3355 - 3370
  • [49] INDUSTRIAL CONTROL SYSTEM FINGERPRINTING AND ANOMALY DETECTION
    Peng, Yong
    Xiang, Chong
    Gao, Haihui
    Chen, Dongqing
    Ren, Wang
    CRITICAL INFRASTRUCTURE PROTECTION IX, 2015, 466 : 73 - 85
  • [50] Security intelligence for industrial control systems
    Amrein, A.
    Angeletti, V.
    Beitler, A.
    Nemet, M.
    Reiser, M.
    Riccetti, S.
    Stoecklin, M. Ph
    Wespi, A.
    IBM JOURNAL OF RESEARCH AND DEVELOPMENT, 2016, 60 (04)