A Novel Intrusion Detection Mechanism for SCADA systems which Automatically Adapts to Network Topology Changes

Abstract

Industrial Control Systems (ICS) are getting more vulnerable as they become increasingly interconnected with other systems. Industrial Internet of Things(IIoT) will bring new opportunities to business and society, along with new threats and security risks. One major change that ICS will face will be that of the dynamic network topology. Changes in the network architecture will affect the performance of the ICS along with the efficiency of the security mechanisms that are deployed. The current article investigates how changes in the network architecture of a supervisory control and data acquisition (SCADA) system affect the performance of an Intrusion Detection System IDS that is based on the One class Support Vector Machine (OCSVM). Also the article proposes an adaptive mechanism that can cope with such changes and can work in real time situations. The performance of the proposed adaptive IDS is tested using traces from a Hybrid ICS testbed with a dynamic topology.

Authors and Affiliations

Barnaby Stewart, Luis Rosa, Leandros A. Maglaras, Tiago J. Cruz, Mohamed Amine Ferrag, Paulo Simoes, Helge Janicke

Keywords

Related Articles

Towards an augmented reality guiding system for assisted indoor remote vehicle navigation

Scientific facilities usually require the use of vehicles controlled remotely by an operator relying on the information provided by a camera. However, the operator lacks of depth perception, which makes difficult the nav...

On the Experimental Evaluation of Vehicular Networks: Issues, Requirements and Methodology Applied to a Real Use Case

One of the most challenging fields in vehicular communications has been the experimental assessment of protocols and novel technologies. Researchers usually tend to simulate vehicular scenarios and/or partially validate...

Innovative Application of 5G and Blockchain Technology in Industry 4.0

The Industry 4.0 is experiencing significant challenges, including the need for an increased amount of data transmission with improved security, transparency and credibility. The 5th Generation Mobile Network (5G) and Bl...

Ant Colony Optimization Based Model Checking Extended by Smell-like Pheromone

Model Checking is a technique for automatically checking the model representing software or hardware about whether they satisfy the corresponding specifications. Traditionally, the model checking uses deterministic algor...

Parallel Simulation of Queueing Petri Nets

Queueing Petri Nets (QPNs) are a powerful formalism to model the performance of software systems. Such models can be solved using analytical or simulation techniques. Analytical techniques suffer from scalability issues,...

Download PDF file
  • EP ID EP46060
  • DOI http://dx.doi.org/10.4108/eai.1-2-2017.152155
  • Views 329
  • Downloads 0

How To Cite

Barnaby Stewart, Luis Rosa, Leandros A. Maglaras, Tiago J. Cruz, Mohamed Amine Ferrag, Paulo Simoes, Helge Janicke (2017). A Novel Intrusion Detection Mechanism for SCADA systems which Automatically Adapts to Network Topology Changes. EAI Endorsed Transactions on Industrial Networks and Intelligent Systems, 4(10), -. https://europub.co.uk./articles/-A-46060