Adaptable and Interpretable Framework for Anomaly Detection in SCADA-based industrial systems

被引:4
|
作者
Wadinger, Marek [1 ]
Kvasnica, Michal [1 ]
机构
[1] Slovak Univ Technol Bratislava, Inst Informat Engn Automat & Math, Radlinskeho 9, Bratislava 81237, Slovakia
关键词
Anomaly detection; Root cause isolation; Iterative learning; Statistical learning; Self-supervised learning;
D O I
10.1016/j.eswa.2024.123200
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In this paper, we introduce an Adaptable and Interpretable Framework for Anomaly Detection (AID) designed for industrial systems utilizing IoT data streams on top of well -established SCADA systems. AID leverages dynamic conditional probability distribution modeling to capture the normal operation of dynamic systems and isolate the root causes of anomalies at the level of individual inputs. The self -supervised framework dynamically updates parameters of underlying model, allowing it to adapt to non-stationarity. AID interprets anomalies as significant deviations from conditional probability, encompassing interactions as well as both spatial and temporal irregularities by exposing them as features. Crucially, AID provides dynamic operating limits to integrate with existing alarm handling mechanisms in SCADA-based IoT systems. Two industrial -scale case studies demonstrate AID's capabilities. The first study showcases AID's effectiveness on energy storage system, adapting to changes, setting context -aware limits for SCADA, and ability to leverage a physics -based model. The second study monitors battery module temperatures, where AID identifies hardware faults, emphasizing its relevance to energy storage safety. A benchmark evaluation on real data shows that AID delivers comparable performance to other self -learning adaptable anomaly detection methods, with the significant advancement in diagnostic capabilities for improved system reliability and performance.
引用
收藏
页数:15
相关论文
共 50 条
  • [31] A degradation-based detection framework against covert cyberattacks on SCADA systems
    Li, Dan
    Paynabar, Kamran
    Gebraeel, Nagi
    IISE TRANSACTIONS, 2021, 53 (07) : 812 - 829
  • [32] Ensemble Learning Framework for DDoS Detection in SDN-Based SCADA Systems
    Oyucu, Saadin
    Polat, Onur
    Turkoglu, Muammer
    Polat, Hueseyin
    Aksoz, Ahmet
    Agdas, Mehmet Tevfik
    SENSORS, 2024, 24 (01)
  • [33] Intrusion Detection System Test Framework for SCADA Systems
    Waagsnes, Henrik
    Ulltveit-Moe, Nils
    ICISSP: PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2018, : 275 - 285
  • [34] Alarm Based Anomaly Detection of Insider Attacks in SCADA System
    Nasr, Payam Mahmoudi
    Varjani, Ali Yazdian
    2014 SMART GRID CONFERENCE (SGC), 2014,
  • [35] Data Clustering-based Anomaly Detection in Industrial Control Systems
    Kiss, Istvan
    Genge, Bela
    Haller, Piroska
    Sebestyen, Gheorghe
    2014 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTER COMMUNICATION AND PROCESSING (ICCP), 2014, : 275 - +
  • [36] Explainable correlation-based anomaly detection for Industrial Control Systems
    Birihanu, Ermiyas
    Lendak, Imre
    FRONTIERS IN ARTIFICIAL INTELLIGENCE, 2025, 7
  • [37] ZOE: Content-based Anomaly Detection for Industrial Control Systems
    Wressnegger, Christian
    Kellner, Ansgar
    Rieck, Konrad
    2018 48TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN), 2018, : 127 - 138
  • [38] Wind Turbine Anomaly Detection Based on SCADA Data Mining
    Liu, Xiaoyuan
    Lu, Senxiang
    Ren, Yan
    Wu, Zhenning
    ELECTRONICS, 2020, 9 (05)
  • [39] A SCADA Data based Anomaly Detection Method for Wind Turbines
    Du, Mian
    Ma, Shichong
    He, Qing
    2016 CHINA INTERNATIONAL CONFERENCE ON ELECTRICITY DISTRIBUTION (CICED), 2016,
  • [40] Anomaly Detection Approach in Industrial Control Systems Based on Measurement Data
    Zhao, Xiaosong
    Zhang, Lei
    Cao, Yixin
    Jin, Kai
    Hou, Yupeng
    INFORMATION, 2022, 13 (10)