Multivariate Abnormal Detection for Industrial Control Systems Using 1D CNN and GRU

被引:52
|
作者
Xie, Xin [1 ]
Wang, Bin [1 ]
Wan, Tiancheng [1 ]
Tang, Wenliang [1 ]
机构
[1] East China Jiaotong Univ, Sch Informat Engn, Nanchang 330013, Jiangxi, Peoples R China
来源
IEEE ACCESS | 2020年 / 8卷 / 08期
基金
中国国家自然科学基金;
关键词
Industrial control; Feature extraction; Anomaly detection; Intrusion detection; Integrated circuit modeling; Correlation; Auto-encoder; 1D convolutional neural network; gated recurrent unit; industrial control system; anomaly detection; SWaT dataset;
D O I
10.1109/ACCESS.2020.2993335
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Currently, most anomaly detection approaches in industrial control systems (ICSs) use network event logs to build models, and current unsupervised machine learning methods rarely use spatiotemporal correlations and other dependencies between multiple variables (sensors/actuators) in a system to detect anomalies. Most of the existing anomaly detection technologies simply compare the current states with the predicted normal range. Due to the highly dynamic characteristic of industrial control systems, it is insufficient to simply compare the current states with the predicted normal range. As a result, these approaches have low detection rates for unknown or new types of attacks. In view of these shortcomings, this paper presents a network model for predicting sensor/controller parameters in industrial control systems. To predict the parameter values of the sensors and controllers more accurately, the 1D convolutional neural network (1D & x005F;CNN) and gated recurrent unit (GRU) are combined to fully learn the spatiotemporal correlation and other dependencies between the parameter values of the sensors and controllers at each moment. An abnormal state detection method based on the calculation of the statistical deviation is proposed to realize the anomaly detection of industrial control systems. The model is validated on the Secure Water Treatment (SWaT) dataset. The precision, recall and F1 scores are used to evaluate the effectiveness of this method in anomaly detection on the SWaT dataset. The experimental results show that the average precision and recall of this method are 0.99 and 0.85, respectively, and that the average F1 score is 0.91. The experimental results show that the proposed method can be successfully applied to anomaly detection systems in industrial control systems with lower false positive rates.
引用
收藏
页码:88348 / 88359
页数:12
相关论文
共 50 条
  • [1] 1D CNN and BiSRU Based Intrusion Detection Method for Industrial Control Systems
    Cai, Zeng-Yu
    Du, Hong-Yu
    Wang, Hao-Qi
    Hang, Jian-Weiz
    Zhu, Liang
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2024, 40 (01) : 107 - 123
  • [2] Abnormal behavior detection in industrial control systems based on CNN
    Chen, Jingzhao
    Liu, Bin
    Zuo, Haowen
    ALEXANDRIA ENGINEERING JOURNAL, 2024, 107 : 643 - 651
  • [3] GRU-based Buzzer Ensemble for Abnormal Detection in Industrial Control Systems
    Kim, Hyo-Seok
    Lim, Chang-Gyoon
    Lee, Sang-Joon
    Kim, Yong-Min
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 74 (01): : 1749 - 1763
  • [4] An intelligent weather prediction model using optimized 1D CNN with attention GRU
    Hemamalini, S.
    Rani, K. Geetha
    Rajasekar, B.
    Sendil, Sadish M.
    GLOBAL NEST JOURNAL, 2024, 26 (02):
  • [5] NLP Technique for Malware Detection Using 1D CNN Fusion Model
    Yeboah, Paul Ntim
    Musah, Haruna Balle Baz
    SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [6] The Design of the 1D CNN-GRU Network Based on the RCS for Classification of Multiclass Missiles
    Kim, A. Ran
    Kim, Ha Seon
    Kang, Chang Ho
    Kim, Sun Young
    REMOTE SENSING, 2023, 15 (03)
  • [7] Leakage detection in water distribution networks via 1D CNN deep autoencoder for multivariate SCADA data
    Tornyeviadzi, Hoese Michel
    Seidu, Razak
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2023, 122
  • [8] GRU-Based Interpretable Multivariate Time Series Anomaly Detection in Industrial Control System
    Tang, Chaofan
    Xu, Lijuan
    Yang, Bo
    Tang, Yongwei
    Zhao, Dawei
    COMPUTERS & SECURITY, 2023, 127
  • [9] Enhanced bearing fault detection using multichannel, multilevel 1D CNN classifier
    Ibrahim Halil Ozcan
    Ozer Can Devecioglu
    Turker Ince
    Levent Eren
    Murat Askar
    Electrical Engineering, 2022, 104 : 435 - 447
  • [10] Enhanced bearing fault detection using multichannel, multilevel 1D CNN classifier
    Ozcan, Ibrahim Halil
    Devecioglu, Ozer Can
    Ince, Turker
    Eren, Levent
    Askar, Murat
    ELECTRICAL ENGINEERING, 2022, 104 (02) : 435 - 447