Anomaly Detection in Communication Networks of Cyber-physical Systems using Cross-over Data Compression

被引:1
|
作者
Schoelnast, Hubert [1 ]
Tavolato, Paul [1 ]
Kreimel, Philipp [2 ]
机构
[1] St Pollen UAS, Inst IT Secur Res, Matthias Corvinus Str 15, St Pollen, Austria
[2] Limes Secur GmbH, Hagenberg, Austria
关键词
Anomaly Detection; Industrial Security; Substation Security; Cross-over Data Compression CDC; INFORMATION;
D O I
10.5220/0008964104980505
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Anomaly detection in operational communication data of cyber-physical systems is an important part of any monitoring activity in such systems. This paper suggests a new method of anomaly detection named crossover data compression (CDC). The method belongs to the group of information theoretic approaches and is based on the notion of Kullback-Leibler Divergence. Data blocks are compressed by a Sequitur-like algorithm and the resulting grammars describing the compression are applied cross-over to the all the other data blocks. Divergences are calculated from the length of the different compressions and the mean values of these divergences are used to classify the data in normal and anomalous. The paper describes the method in detail and shows the results derived from a real-world example (communication data from a substation).
引用
收藏
页码:498 / 505
页数:8
相关论文
共 50 条
  • [41] Sparsity-promoting optimal control of cyber-physical systems over shared communication networks
    Negi, Nandini
    Chakrabortty, Aranya
    AUTOMATICA, 2020, 122
  • [42] Cyber-Physical Modeling of Compression Systems using Hybrid Automata
    Schwung, Andreas
    2015 INTERNATIONAL CONFERENCE ON AUTOMATION SCIENCE AND ENGINEERING (CASE), 2015, : 1125 - 1130
  • [43] Relaxation-based anomaly detection in cyber-physical systems using ensemble kalman filter
    Karimipour, Hadis
    Leung, Henry
    IET CYBER-PHYSICAL SYSTEMS: THEORY & APPLICATIONS, 2020, 5 (01) : 49 - 59
  • [44] High-Performance Unsupervised Anomaly Detection for Cyber-Physical System Networks
    Schneider, Peter
    Boettinger, Konstantin
    CPS-SPC'18: PROCEEDINGS OF THE 2018 WORKSHOP ON CYBER-PHYSICAL SYSTEMS SECURITY AND PRIVACY, 2018, : 1 - 12
  • [45] An anomaly-based approach for cyber-physical threat detection using network and sensor data
    Canonico, Roberto
    Esposito, Giovanni
    Navarro, Annalisa
    Romano, Simon Pietro
    Sperli, Giancarlo
    Vignali, Andrea
    COMPUTER COMMUNICATIONS, 2025, 234
  • [46] Anomaly Detection in Cyber-Physical System using Logistic Regression Analysis
    Noureen, Subrina Sultana
    Bayne, Stephen B.
    Shaffer, Edward
    Porschet, Donald
    Berman, Morris
    2019 IEEE TEXAS POWER AND ENERGY CONFERENCE (TPEC), 2019,
  • [47] Fast Attack Detection for Cyber-Physical Systems Using Dynamic Data Encryption
    Li, Tongxiang
    Chen, Bo
    Liu, Shichao
    Wang, Zheming
    Zhang, Wen-An
    Yu, Li
    IEEE TRANSACTIONS ON CYBERNETICS, 2024, 54 (05) : 3251 - 3264
  • [48] Trustworthy Data Management for Wireless Networks in Cyber-Physical Systems
    Li, Wenjia
    Kotut, Lindah
    2013 IEEE 32ND INTERNATIONAL PERFORMANCE COMPUTING AND COMMUNICATIONS CONFERENCE (IPCCC), 2013,
  • [49] Anomaly Detection in Cyber-physical Systems based on Genetic Algorithm with Dynamic Thresholding Detection
    Vaughn, Javeyon
    Acquaah, Yaa Takyiwaa
    Roy, Kaushik
    2024 7TH INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE, BIG DATA, COMPUTING AND DATA COMMUNICATION SYSTEMS, ICABCD 2024, 2024,
  • [50] Cyber-Physical Systems in Healthcare Networks
    Dogaru, Delia Ioana
    Dumitrache, Ioan
    2015 E-HEALTH AND BIOENGINEERING CONFERENCE (EHB), 2015,