A Review of Research Work on Network-Based SCADA Intrusion Detection Systems

被引:61
|
作者
Rakas, Slavica V. Bostjancic [1 ]
Stojanovic, Mirjana D. [2 ]
Markovic-Petrovic, Jasna D. [3 ]
机构
[1] Univ Belgrade, Mihailo Pupin Inst, Belgrade 11060, Serbia
[2] Univ Belgrade, Fac Transport & Traff Engn, Belgrade 11000, Serbia
[3] CE Djerdap Hydroelect Power Plants Ltd, Negotin 19300, Serbia
关键词
Anomaly-based detection; network security; SCADA; signature-based detection; specification-based detection; ANOMALY DETECTION; SECURITY; CLASSIFICATION;
D O I
10.1109/ACCESS.2020.2994961
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Specific intrusion detection systems (IDSs) are needed to secure modern supervisory control and data acquisition (SCADA) systems due to their architecture, stringent real-time requirements, network traffic features and specific application layer protocols. This article aims to contribute to assess the state-of-the-art, identify the open issues and provide an insight for future study areas. To achieve these objectives, we start from the factors that impact the design of dedicated intrusion detection systems in SCADA networks and focus on network-based IDS solutions. We propose a structured evaluation methodology that encompasses detection techniques, protected protocols, implementation tools, test environments and IDS performance. Special attention is focused on assessing implementation maturity as well as the applicability of each surveyed solution in the Future Internet environment. Based on that, we provide a brief description and evaluation of 26 selected research papers, published in the period 2015 & x2013;2019. Results of our analysis indicate considerable progress regarding the development of machine learning-based detection methods, implementation platforms, and to some extent, sophisticated testbeds. We also identify research gaps and conclude the analysis with a list of the most important directions for further research.
引用
收藏
页码:93083 / 93108
页数:26
相关论文
共 50 条
  • [1] Research Trends in Network-Based Intrusion Detection Systems: A Review
    Kumar, Satish
    Gupta, Sunanda
    Arora, Sakshi
    IEEE ACCESS, 2021, 9 : 157761 - 157779
  • [2] Neural network-based intrusion detection systems
    Hu, LX
    He, ZJ
    COMPUTER SCIENCE AND TECHNOLOGY IN NEW CENTURY, 2001, : 296 - 298
  • [3] Characterizing the Effectiveness of Network-based Intrusion Detection Systems
    Ficke, Eric
    Schweitzer, Kristin M.
    Bateman, Raymond M.
    Xu, Shouhuai
    2018 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2018), 2018, : 76 - 81
  • [4] Deep-Learning-Based Network Intrusion Detection for SCADA Systems
    Yang, Huan
    Cheng, Liang
    Chuah, Mooi Choo
    2019 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2019,
  • [5] A Neural Network-Based Learning Algorithm for Intrusion Detection Systems
    Ahmed, Hassan I.
    Elfeshawy, Nawal A.
    Elzoghdy, S. F.
    El-sayed, Hala S.
    Faragallah, Osama S.
    WIRELESS PERSONAL COMMUNICATIONS, 2017, 97 (02) : 3097 - 3112
  • [6] A Neural Network-Based Learning Algorithm for Intrusion Detection Systems
    Hassan I. Ahmed
    Nawal A. Elfeshawy
    S. F. Elzoghdy
    Hala S. El-sayed
    Osama S. Faragallah
    Wireless Personal Communications, 2017, 97 : 3097 - 3112
  • [7] Intelligent Cyber Attack Detection and Classification for Network-Based Intrusion Detection Systems
    Oliveira, Nuno
    Praca, Isabel
    Maia, Eva
    Sousa, Orlando
    APPLIED SCIENCES-BASEL, 2021, 11 (04): : 1 - 21
  • [8] Deep learning-driven methods for network-based intrusion detection systems: A systematic review
    Chinnasamy, Ramya
    Subramanian, Malliga
    Easwaramoorthy, Sathishkumar Veerappampalayam
    Cho, Jaehyuk
    ICT EXPRESS, 2025, 11 (01): : 181 - 215
  • [9] Research on High-speed Network-based Intrusion Detection System
    Liu Ting
    Meng Qingwei
    2012 7TH INTERNATIONAL CONFERENCE ON SYSTEM OF SYSTEMS ENGINEERING (SOSE), 2012, : 363 - 365
  • [10] Network-Based Intrusion Detection for Industrial and Robotics Systems: A Comprehensive Survey
    Holdbrook, Richard
    Odeyomi, Olusola
    Yi, Sun
    Roy, Kaushik
    ELECTRONICS, 2024, 13 (22)