A Deep Detection Method of Abnormal State of Industrial Control System Based on Hierarchical Clustering Analysis


연구 분야: Infrastructure



학회: International Conference on Network Simulation and Evaluation


초록

The traditional industrial control system (ICS) is mainly different from the open system of the Internet, but individual closed. However, with the application of the Industrial Internet platform, more and more devices are connected to the enterprise network, which leads to more and more network security issues. Due to the distributed nature of ICS devices, a more convenient deep inspection strategy is needed to monitor the behavior of multiple ICS data sources simultaneously. While deep detection methods can detect attacks such as flooding at an early stage before the attacker reaches the final target, most research papers focus on anomaly detection based on a single source of ICS data. This paper proposes a deep detection method of abnormal state of industrial control system based on hierarchical clustering analysis, using unsupervised predictor and unsupervised clustering method respectively in the anomaly detection stage, and compares its results with conventional anomaly detection. The results show that the deep learning-based anomaly detection method has high accuracy in detecting flooding attacks.


Author Profile
Zheyu Zhang

National Industrial Information Security Development Research Center Beijing 100040 China

China
Author Profile
Xiaofei Zhang

National Industrial Information Security Development Research Center Beijing 100040 China

China
Author Profile
Rui Wang

National Industrial Information Security Development Research Center Beijing 100040 China

China

📄 논문 정보

발행 연도 2024년
인용수 0
출판 국가 China
사이트 Springer
좋아요 수 0

연관 논문 목록 (476건)