2MiCo: A Contrastive Semi -Supervised Method with Double Mixup for Smart Meter Modbus RS-485 Communication Security

被引:1
|
作者
Li, Xiaodi [1 ]
Hossain, Md Delwar [2 ]
Ochiai, Hideya [3 ]
Khan, Latifur [4 ]
机构
[1] Univ Texas Dallas, Dept Elect & Comp Engn, Richardson, TX USA
[2] Nara Inst Sci & Technol, Div Informat Sci, Ikoma, Japan
[3] Univ Tokyo, Grad Sch Informat Sci & Technol, Tokyo, Japan
[4] Univ Texas Dallas, Dept Comp Sci, Richardson, TX USA
关键词
contrastive learning; semi -supervised method; attack detection; multi-class classification; industrial control system; cybersecurity; SYSTEM;
D O I
10.1109/BigDataSecurity-HPSC-IDS58521.2023.00016
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Industrial control systems (ICSs) are getting integrated into cyber-physical systems (CPSs) for a smarter and more energy -efficient society. As they organize the infrastructure of our modern society, cyber-attacks on ICSs may lead to catastrophic disasters if there are no protection, detection, and mitigation schemes. Modbus / RS-485 networks work as the backbone at the edges of ICSs, which security monitoring data on the communication signals comes with tabular forms and only with a few ground truth labels in the practical scenario, which makes the detection of attacks challenging with legacy machine learning. This paper presents a new approach called 2MiCo (Double Mixup and Contrastive) for semi-supervised learning in tabular security data sets. These data sets pose unique challenges for machine learning due to the loss of contextual information and imbalanced data. We address these challenges with a triplet mixup data augmentation approach in the input layer and a common mixup in the hidden layer. Our approach achieves state-of-the-art performance on both binary and multi class data sets in the Modbus Attack DataSet for AMI (MAMI) compared to other methods. While semi -supervised methods are well-studied in image and language domains, they have been underutilized in security domains, particularly in tabular data sets. 2MiCo demonstrates promise in addressing these challenges and improving the performance of machine learning in security domains.
引用
收藏
页码:30 / 39
页数:10
相关论文
共 2 条
  • [1] Smart Meter Modbus RS-485 Spoofing Attack Detection by LSTM Deep Learning Approach
    Hossain, Md Delwar
    Ochiai, Hideya
    Arisawa, Tatsuya
    Kadobayashi, Youki
    2022 9TH SWISS CONFERENCE ON DATA SCIENCE (SDS), 2022, : 47 - 52
  • [2] Implementation of an Intelligent CO2 Meter via RS-485 with Modbus Protocol
    Chen, Zhen
    Chen, Xinya
    PRECISION ENGINEERING AND NON-TRADITIONAL MACHINING, 2012, 411 : 609 - +