Anomaly Detection Dataset for Industrial Control Systems

被引:6
|
作者
Dehlaghi-Ghadim, Alireza [1 ,2 ]
Moghadam, Mahshid Helali [2 ]
Balador, Ali [2 ]
Hansson, Hans [1 ,2 ]
机构
[1] RISE Res Inst, S-50115 Pitea, Sweden
[2] Malardalen Univ, Sch Innovat Design & Engn, S-72123 Vasteras, Sweden
基金
欧盟地平线“2020”;
关键词
Anomaly detection dataset; industrial control system; intrusion detection; cyberattack; network flow; artificial intelligence; IOT;
D O I
10.1109/ACCESS.2023.3320928
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Over the past few decades, Industrial Control Systems (ICS) have been targeted by cyberattacks and are becoming increasingly vulnerable as more ICSs are connected to the internet. Using Machine Learning (ML) for Intrusion Detection Systems (IDS) is a promising approach for ICS cyber protection, but the lack of suitable datasets for evaluating ML algorithms is a challenge. Although a few commonly used datasets may not reflect realistic ICS network data, lack necessary features for effective anomaly detection, or be outdated. This paper introduces the 'ICS-Flow' dataset, which offers network data and process state variables logs for supervised and unsupervised ML-based IDS assessment. The network data includes normal and anomalous network packets and flows captured from simulated ICS components and emulated networks, where the anomalies were applied to the system through various cyberattacks. We also proposed an open-source tool, "ICSFlowGenerator," for generating network flow parameters from Raw network packets. The final dataset comprises over 25,000,000 raw network packets, network flow records, and process variable logs. The paper describes the methodology used to collect and label the dataset and provides a detailed data analysis. Finally, we implement several ML models, including the decision tree, random forest, and artificial neural network to detect anomalies and attacks, demonstrating that our dataset can be used effectively for training intrusion detection ML models.
引用
收藏
页码:107982 / 107996
页数:15
相关论文
共 50 条
  • [41] Composite score for anomaly detection in imbalanced real-world industrial dataset
    Bougaham, Arnaud
    El Adoui, Mohammed
    Linden, Isabelle
    Frenay, Benoit
    MACHINE LEARNING, 2024, 113 (07) : 4381 - 4406
  • [42] A Machine Learning Approach for Anomaly Detection in Industrial Control Systems Based on Measurement Data
    Mokhtari, Sohrab
    Abbaspour, Alireza
    Yen, Kang K.
    Sargolzaei, Arman
    ELECTRONICS, 2021, 10 (04) : 1 - 13
  • [43] Anomaly Detection for Industrial Control Systems Using K-Means and Convolutional Autoencoder
    Chang, Chun-Pi
    Hsu, Wen-Chiao
    Liao, I-En
    2019 27TH INTERNATIONAL CONFERENCE ON SOFTWARE, TELECOMMUNICATIONS AND COMPUTER NETWORKS (SOFTCOM), 2019, : 136 - 141
  • [44] TABOR: A Graphical Model-based Approach for Anomaly Detection in Industrial Control Systems
    Lin, Qin
    Adepu, Sridhar
    Verwer, Sicco
    Mathur, Aditya
    PROCEEDINGS OF THE 2018 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (ASIACCS'18), 2018, : 525 - 536
  • [45] Leveraging Determinism in Industrial Control Systems for Advanced Anomaly Detection and Reliable Security Configuration
    Hadeli, Hadeli
    Schierholz, Ragnar
    Braendle, Markus
    Tuduce, Cristian
    2009 IEEE CONFERENCE ON EMERGING TECHNOLOGIES & FACTORY AUTOMATION (EFTA 2009), 2009,
  • [46] Anomaly Detection for Industrial Control Systems Using Sequence-to-Sequence Neural Networks
    Kim, Jonguk
    Yun, Jeong-Han
    Kim, Hyoung Chun
    COMPUTER SECURITY, ESORICS 2019, 2020, 11980 : 3 - 18
  • [47] Discovering a data interpreted petri net model of industrial control systems for anomaly detection
    Hussain, Mukhtar
    Fidge, Colin
    Foo, Ernest
    Jadidi, Zahra
    EXPERT SYSTEMS WITH APPLICATIONS, 2023, 230
  • [48] Using timing-based side channels for anomaly detection in industrial control systems
    Dunlap, Stephen
    Butts, Jonathan
    Lopez, Juan
    Rice, Mason
    Mullins, Barry
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2016, 15 : 12 - 26
  • [49] MENDEL: Time series anomaly detection using transfer learning for industrial control systems
    Park, Jeongyong
    Kim, Bedeuro
    Kim, Hyoungshick
    2023 IEEE INTERNATIONAL CONFERENCE ON BIG DATA AND SMART COMPUTING, BIGCOMP, 2023, : 261 - 268
  • [50] Anomaly Detection based on Robust Spatial-temporal Modeling for Industrial Control Systems
    Li, Shijie
    Liu, Junjiao
    Pan, Zhiwen
    Lv, Shichao
    Si, Shuaizong
    Sun, Limin
    2022 IEEE 19TH INTERNATIONAL CONFERENCE ON MOBILE AD HOC AND SMART SYSTEMS (MASS 2022), 2022, : 355 - 363