Concepedia

Publication | Closed Access

Intrusion detection algorithm based on OCSVM in industrial control system

63

Citations

20

References

2015

Year

Abstract

In order to detect abnormal communication behaviors efficiently in today's industrial control system, a new intrusion detection algorithm based on One-Class Support Vector Machine OCSVM is proposed in this paper. In this algorithm, a normal communication behavior model is established by using OCSVM, and the Particle Swarm Optimization algorithm is designed to optimize OCSVM model parameters. Furthermore, we adopt the normal Modbus function code sequence to train OCSVM model, and then use this model to detect abnormal Modbus TCP traffic. Our simulation results show that the proposed algorithm not only is efficient and reliable but also meets the real-time requirements of anomaly detection in industrial control system. Copyright © 2015 John Wiley & Sons, Ltd.

References

YearCitations

Page 1