Publication | Closed Access
Intrusion detection algorithm based on OCSVM in industrial control system
63
Citations
20
References
2015
Year
Scada SecurityAnomaly DetectionEngineeringFault ManagementIntrusion Detection SystemThreat DetectionComputer EngineeringSystems EngineeringIntrusion Detection AlgorithmIndustrial Control SystemComputer ScienceControl System SecurityIndustrial InformaticsControl SystemsOcsvm Model Parameters
In order to detect abnormal communication behaviors efficiently in today's industrial control system, a new intrusion detection algorithm based on One-Class Support Vector Machine OCSVM is proposed in this paper. In this algorithm, a normal communication behavior model is established by using OCSVM, and the Particle Swarm Optimization algorithm is designed to optimize OCSVM model parameters. Furthermore, we adopt the normal Modbus function code sequence to train OCSVM model, and then use this model to detect abnormal Modbus TCP traffic. Our simulation results show that the proposed algorithm not only is efficient and reliable but also meets the real-time requirements of anomaly detection in industrial control system. Copyright © 2015 John Wiley & Sons, Ltd.
| Year | Citations | |
|---|---|---|
Page 1
Page 1