The Effect of Dataset Imbalance on the Performance of SCADA Intrusion Detection Systems

被引:22
|
作者
Balla, Asaad [1 ]
Habaebi, Mohamed Hadi [1 ]
Elsheikh, Elfatih A. A. [2 ]
Islam, Md. Rafiqul [1 ]
Suliman, F. M. [2 ]
机构
[1] Int Islamic Univ Malaysia, Dept Elect & Comp Engn, Kuala Lumpur 53100, Malaysia
[2] King Khalid Univ, Coll Engn, Dept Elect Engn, Abha 61421, Saudi Arabia
关键词
IDS; ICS; SCADA; imbalanced datasets; cyber security;
D O I
10.3390/s23020758
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
Integrating IoT devices in SCADA systems has provided efficient and improved data collection and transmission technologies. This enhancement comes with significant security challenges, exposing traditionally isolated systems to the public internet. Effective and highly reliable security devices, such as intrusion detection system (IDSs) and intrusion prevention systems (IPS), are critical. Countless studies used deep learning algorithms to design an efficient IDS; however, the fundamental issue of imbalanced datasets was not fully addressed. In our research, we examined the impact of data imbalance on developing an effective SCADA-based IDS. To investigate the impact of various data balancing techniques, we chose two unbalanced datasets, the Morris power dataset, and CICIDS2017 dataset, including random sampling, one-sided selection (OSS), near-miss, SMOTE, and ADASYN. For binary classification, convolutional neural networks were coupled with long short-term memory (CNN-LSTM). The system's effectiveness was determined by the confusion matrix, which includes evaluation metrics, such as accuracy, precision, detection rate, and F1-score. Four experiments on the two datasets demonstrate the impact of the data imbalance. This research aims to help security researchers in understanding imbalanced datasets and their impact on DL SCADA-IDS.
引用
收藏
页数:12
相关论文
共 50 条
  • [1] A Survey of SCADA-Specific Intrusion Detection Systems
    Huang, Wei
    Chen, Hao
    Guo, Ya-Juan
    Guo, Jing
    Jiang, Hai-Tao
    INTERNATIONAL CONFERENCE ON CONTROL ENGINEERING AND AUTOMATION (ICCEA 2014), 2014, : 66 - 72
  • [2] Integrated OCSVM mechanism for intrusion detection in SCADA systems
    Maglaras, Leandros A.
    Jiang, Jianmin
    Cruz, Tiago
    ELECTRONICS LETTERS, 2014, 50 (25) : 1935 - 1936
  • [3] Supervised learning based intrusion detection for SCADA systems
    Alimi, Oyeniyi Akeem
    Ouahada, Khmaies
    Abu-Mahfouz, Adnan M.
    Rimer, Suvendi
    Alimi, Kuburat Oyeranti Adefemi
    2022 IEEE NIGERIA 4TH INTERNATIONAL CONFERENCE ON DISRUPTIVE TECHNOLOGIES FOR SUSTAINABLE DEVELOPMENT (IEEE NIGERCON), 2022, : 141 - 145
  • [4] Intrusion Detection System Test Framework for SCADA Systems
    Waagsnes, Henrik
    Ulltveit-Moe, Nils
    ICISSP: PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2018, : 275 - 285
  • [5] Privacy Preservation Intrusion Detection Technique for SCADA Systems
    Keshk, Marwa
    Moustafa, Nour
    Sitnikova, Elena
    Creech, Gideon
    2017 MILITARY COMMUNICATIONS AND INFORMATION SYSTEMS CONFERENCE (MILCIS), 2017,
  • [6] BKIDset - A New Intrusion Detection Dataset To Mitigate The Class Imbalance Problem
    Nguyen The Anh
    Le Huy Hoang
    Vu Dinh Minh
    Tran Hoang Hai
    2021 15TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING AND APPLICATIONS (ACOMP 2021), 2021, : 106 - 111
  • [7] On Using Physical Based Intrusion Detection in SCADA Systems
    Al-Asiri, Majed
    El-Alfy, El-Sayed M.
    11TH INTERNATIONAL CONFERENCE ON AMBIENT SYSTEMS, NETWORKS AND TECHNOLOGIES (ANT) / THE 3RD INTERNATIONAL CONFERENCE ON EMERGING DATA AND INDUSTRY 4.0 (EDI40) / AFFILIATED WORKSHOPS, 2020, 170 : 34 - 42
  • [8] A Scheme for Building A Dataset for Intrusion Detection Systems
    Van Loi Cao
    Van Thuy Hoang
    Quang Uy Nguyen
    2013 THIRD WORLD CONGRESS ON INFORMATION AND COMMUNICATION TECHNOLOGIES (WICT), 2013, : 280 - 284
  • [9] SSO-IF: An Outlier Detection Approach for Intrusion Detection in SCADA Systems
    Chaithanya, P. S.
    Priyanga, S.
    Pravinraj, S.
    Sriram, V. S. Shankar
    INVENTIVE COMMUNICATION AND COMPUTATIONAL TECHNOLOGIES, ICICCT 2019, 2020, 89 : 921 - 929
  • [10] LSTM for SCADA Intrusion Detection
    Gao, Jun
    Gan, Luyun
    Buschendorf, Fabiola
    Zhang, Liao
    Liu, Hua
    Li, Peixue
    Dong, Xiaodai
    Lu, Tao
    2019 IEEE PACIFIC RIM CONFERENCE ON COMMUNICATIONS, COMPUTERS AND SIGNAL PROCESSING (PACRIM), 2019,