Machine Learning-Based Detection of Anomalies, Intrusions, and Threats in Industrial Control Systems

被引:1
|
作者
Benka, Denis [1 ]
Horvath, Dusan [2 ]
Spendla, Lukas [1 ]
Gaspar, Gabriel [1 ,3 ]
Stremy, Maximilian [2 ]
机构
[1] Slovak Univ Technol Bratislava, Inst Appl Informat Automat & Mechatron, Fac Mat Sci & Technol, Trnava 91724, Slovakia
[2] Slovak Univ Technol Bratislava, Adv Technol Res Inst, Fac Mat Sci & Technol Trnava, Trnava 91724, Slovakia
[3] Univ Zilina, Res Ctr, Zilina 01026, Slovakia
来源
IEEE ACCESS | 2025年 / 13卷
关键词
Security; Anomaly detection; Automation; Critical infrastructure; Long short term memory; Computer crime; Support vector machines; Programmable logic devices; Encryption; Authentication; intrusion detection systems; machine learning; threat detection; programmable logic controllers;
D O I
10.1109/ACCESS.2025.3530902
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Industrial Control Systems (ICS) are critical to the efficient operation of essential sectors such as manufacturing, energy, and water management. However, their increasing integration with IT systems exposes them to sophisticated cyberattacks, particularly lateral attacks targeting Programmable Logic Controllers (PLCs). Advanced preventive measures are necessary because, despite their significance, many ICS continue to rely on outdated technologies with few security features. This paper proposes a machine learning (ML)-based approach to anomaly detection in ICS communication networks, focusing on techniques such as 1D Convolutional Neural Networks (CNNs), Long Short-Term Memory (LSTM) networks, Support Vector Machines (SVMs), and Isolation Forest (iForest) algorithms. We generated a dataset by capturing both normal and manipulated ICS communication patterns, including TCP/IP traffic. Simulated lateral attacks provided realistic data for training and testing the ML models. The results demonstrate that the 1D CNN model achieved the highest accuracy (0.92) and F1 score (0.91) with minimal processing time, making it ideal for real-time intrusion detection. This research highlights the potential of ML techniques to fortify ICS cybersecurity and lays the groundwork for future advancements in critical infrastructure resilience.
引用
收藏
页码:12502 / 12514
页数:13
相关论文
共 50 条
  • [21] Exploring machine learning-based methods for anomalies detection: evidence from cryptocurrencies
    Yahia, Achraf
    Mouhssine, Yassine
    El Alaoui, Abdelkader
    El Alaoui, Said Ouatik
    International Journal of Data Science and Analytics, 2024,
  • [22] An Unsupervised Machine Learning-based Method for Detection and Explanation of Anomalies in Cloud Environments
    Ghalehtaki, Razieh Abbasi
    Ebrahimzadeh, Amin
    Wuhib, Fetahi
    Glitho, Roch H.
    25TH CONFERENCE ON INNOVATION IN CLOUDS, INTERNET AND NETWORKS (ICIN 2022), 2022, : 24 - 31
  • [23] Machine Learning Methods for Anomaly Detection in Industrial Control Systems
    Tai, Johnathan
    Alsmadi, Izzat
    Zhang, Yunpeng
    Qiao, Fengxiang
    2020 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2020, : 2333 - 2339
  • [24] A Machine Learning Approach for Anomaly Detection in Industrial Control Systems Based on Measurement Data
    Mokhtari, Sohrab
    Abbaspour, Alireza
    Yen, Kang K.
    Sargolzaei, Arman
    ELECTRONICS, 2021, 10 (04) : 1 - 13
  • [25] Improving Performance of Machine Learning based Detection of Network Steganography in Industrial Control Systems
    Neubert, Tom
    Caballero Morcillo, Antonio Jose
    Vielhauer, Claus
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, ARES 2022, 2022,
  • [26] Security Threats in Cloud Rooted from Machine Learning-Based Resource Provisioning Systems
    Makrani, Hosein Mohammadi
    Sayadi, Hossein
    Nazari, Najmeh
    Homayoun, Houman
    SILICON VALLEY CYBERSECURITY CONFERENCE, SVCC 2021, 2022, 1536 : 22 - 32
  • [27] Machine learning-based intrusion detection for SCADA systems in healthcare
    Öztürk, Tolgahan
    Turgut, Zeynep
    Akgün, Gökçe
    Köse, Cemal
    Network Modeling Analysis in Health Informatics and Bioinformatics, 2022, 11 (01)
  • [28] A Machine Learning-Based Approach for Fault Detection in Power Systems
    Ilius, Pathan
    Almuhaini, Mohammad
    Javaid, Muhammad
    Abido, Mohammad
    ENGINEERING TECHNOLOGY & APPLIED SCIENCE RESEARCH, 2023, 13 (04) : 11216 - 11221
  • [29] Novel Machine Learning-Based Brain Attention Detection Systems
    Wang, Junbo
    Kim, Song-Kyoo
    INFORMATION, 2025, 16 (01)
  • [30] Machine learning-based intrusion detection for SCADA systems in healthcare
    Ozturk, Tolgahan
    Turgut, Zeynep
    Akgun, Gokce
    Kose, Cemal
    NETWORK MODELING AND ANALYSIS IN HEALTH INFORMATICS AND BIOINFORMATICS, 2022, 11 (01):