Detecting Cyber-Physical Attacks in Water Distribution Systems: One-Class Classifier Approach

被引:9
|
作者
Kadosh, Noy [1 ]
Frid, Alex [2 ]
Housh, Mashor [1 ]
机构
[1] Univ Haifa, Dept Nat Resource & Environm Management, Fac Management, IL-3498838 Haifa, Israel
[2] Technion Israel Inst Technol, Asher Space Res Inst, IL-32000 Haifa, Israel
关键词
Water distribution systems; Cyber-attack detection; One-class classification; Anomaly detection; DECISION-SUPPORT-SYSTEM; EVENT DETECTION; OPTIMAL-DESIGN; MODEL;
D O I
10.1061/(ASCE)WR.1943-5452.0001259
中图分类号
TU [建筑科学];
学科分类号
0813 ;
摘要
Water distribution systems (WDSs) are critical infrastructures that supply drinking water from water sources to end-users. Smart WDSs could be designed by integrating physical components (e.g., valve and pumps) with computation and networking devices. As such, in smart WDSs, pumps and valves are automatically controlled together with continuous monitoring of important systems' parameters. However, despite its advantage of improved efficacy, automated control and operation through a cyber-layer can expose the system to cyber-physical attacks. The one-class classification technique is proposed to detect such attacks by analyzing collected sensors' readings from the system components. One-class classifiers have been found suitable for classifying normal and abnormal conditions with unbalanced datasets, which are expected in the cyber-attack detection problem. In the cyber-attack detection problem, typically, most of the data samples are under the normal state, while only a small fraction of the samples can be suspected as under attack (i.e., abnormal state). The results of this study demonstrate that one-class classification algorithms can be suitable for the cyber-attack detection problem and can compete with existing approaches. More specifically, this study examines the support vector data description (SVDD) method together with a tailored features selection methodology, which is based on the physical understanding of the WDS topology. The developed algorithm is examined on the Battle of the Attack Detection Algorithms (BATADAL) datasets that demonstrate a quasi-realistic case study and on a new case study of a large-scale WDS.
引用
收藏
页数:13
相关论文
共 50 条
  • [31] Detecting Time Synchronization Attacks in Cyber-Physical Systems with Machine Learning Techniques
    Wang, Jingxuan
    Tu, Wenting
    Hui, Lucas C. K.
    Yiu, S. M.
    Wang, Eric Ke
    2017 IEEE 37TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS 2017), 2017, : 2246 - 2251
  • [32] A Time-Series Self-Supervised Learning Approach to Detection of Cyber-physical Attacks in Water Distribution Systems
    Mahmoud, Haitham
    Wu, Wenyan
    Gaber, Mohamed Medhat
    ENERGIES, 2022, 15 (03)
  • [33] Improved control of cyber-physical systems subject to cyber and physical attacks
    Mahmoud M.S.
    Hamdan M.M.
    Cyber-Physical Systems, 2019, 5 (03) : 173 - 190
  • [34] A hybrid one-class approach for detecting anomalies in industrial systems
    Zayas-Gato, Francisco
    Jove, Esteban
    Casteleiro-Roca, Jos-Luis
    Quintian, Hector
    Pinon-Pazos, Andres
    Simic, Dragan
    Luis Calvo-Rolle, Jose
    EXPERT SYSTEMS, 2022, 39 (09)
  • [35] Modeling and Simulation of Attacks on Cyber-physical Systems
    Bernardeschi, Cinzia
    Domenici, Andrea
    Palmieri, Maurizio
    PROCEEDINGS OF THE 5TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY (ICISSP), 2019, : 700 - 708
  • [36] Stealthy Deception Attacks for Cyber-Physical Systems
    Goes, Romulo Meira
    Kang, Eunsuk
    Kwong, Raymond
    Lafortune, Stephane
    2017 IEEE 56TH ANNUAL CONFERENCE ON DECISION AND CONTROL (CDC), 2017,
  • [37] A Survey of Network Attacks on Cyber-Physical Systems
    Cao, Liwei
    Jiang, Xiaoning
    Zhao, Yumei
    Wang, Shouguang
    You, Dan
    Xu, Xianli
    IEEE ACCESS, 2020, 8 : 44219 - 44227
  • [38] Covert Attacks in Cyber-Physical Control Systems
    de Sa, Alan Oliveira
    Rust da Costa Carmo, Luiz F.
    Machado, Raphael C. S.
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2017, 13 (04) : 1641 - 1651
  • [39] Detection of Replay Attacks in Cyber-Physical Systems
    Hoehn, Andreas
    Zhang, Ping
    2016 AMERICAN CONTROL CONFERENCE (ACC), 2016, : 290 - 295
  • [40] A Formal Approach to Physics-based Attacks in Cyber-physical Systems
    Lanotte, Ruggero
    Merro, Massimo
    Munteanu, Andrei
    Vigano, Luca
    ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2020, 23 (01)