A Novel Intrusion Detection Mechanism for SCADA systems which Automatically Adapts to Network Topology Changes

Abstract

Industrial Control Systems (ICS) are getting more vulnerable as they become increasingly interconnected with other systems. Industrial Internet of Things(IIoT) will bring new opportunities to business and society, along with new threats and security risks. One major change that ICS will face will be that of the dynamic network topology. Changes in the network architecture will affect the performance of the ICS along with the efficiency of the security mechanisms that are deployed. The current article investigates how changes in the network architecture of a supervisory control and data acquisition (SCADA) system affect the performance of an Intrusion Detection System IDS that is based on the One class Support Vector Machine (OCSVM). Also the article proposes an adaptive mechanism that can cope with such changes and can work in real time situations. The performance of the proposed adaptive IDS is tested using traces from a Hybrid ICS testbed with a dynamic topology.

Authors and Affiliations

Barnaby Stewart, Luis Rosa, Leandros A. Maglaras, Tiago J. Cruz, Mohamed Amine Ferrag, Paulo Simoes, Helge Janicke

Keywords

Related Articles

Outage Probability of Vehicular Networks under Unreliable Backhaul

This paper presents for the first time a heterogeneous vehicular model with multiple moving small cells and a moving receiver with unreliable backhaul. In this system, a macro-base station connects to multiple moving smal...

Stochastic-Based Power Consumption Analysis for Data Transmission in Wireless Sensor Networks

Wireless sensor networks (WSNs) provide a lot of emerging applications. They suffer from some limitations such as energy constraints and cooperative demands essential to perform sensing or data routing. The networks coul...

A Critical Review of the Routing Protocols in Opportunistic Networks

The goal of Opportunistic Networks (OppNets) is to enable message transmission in an infrastructure less environment where a reliable end-to-end connection between the hosts in not possible at all times. The role of OppN...

Improving Customer Behaviour Prediction with the Item2Item model in Recommender Systems

Recommender Systems are the most well-known applications in E-commerce sites. However, the trade-off between runtime and the accuracy in making recommendations is a big challenge. This work combines several traditional t...

TiPeNeSS: A Timed Petri Net Simulator Software with Generally Distributed Firing Delays

Performance analysis can be carried out in several ways, especially in case of Markovian models. In order to interpret high level of abstraction, we often use modeling tools like timed Petri nets (TPNs). Although some su...

Download PDF file
  • EP ID EP46060
  • DOI http://dx.doi.org/10.4108/eai.1-2-2017.152155
  • Views 335
  • Downloads 0

How To Cite

Barnaby Stewart, Luis Rosa, Leandros A. Maglaras, Tiago J. Cruz, Mohamed Amine Ferrag, Paulo Simoes, Helge Janicke (2017). A Novel Intrusion Detection Mechanism for SCADA systems which Automatically Adapts to Network Topology Changes. EAI Endorsed Transactions on Industrial Networks and Intelligent Systems, 4(10), -. https://europub.co.uk/articles/-A-46060