Attack Detection Using Artificial Intelligence Methods for SCADA Security


YALÇIN N., Cakir S., Ualdi S.

IEEE Internet of Things Journal, cilt.11, sa.24, ss.39550-39559, 2024 (SCI-Expanded) identifier identifier

  • Yayın Türü: Makale / Tam Makale
  • Cilt numarası: 11 Sayı: 24
  • Basım Tarihi: 2024
  • Doi Numarası: 10.1109/jiot.2024.3447876
  • Dergi Adı: IEEE Internet of Things Journal
  • Derginin Tarandığı İndeksler: Science Citation Index Expanded (SCI-EXPANDED), Scopus, ABI/INFORM, Compendex, INSPEC
  • Sayfa Sayıları: ss.39550-39559
  • Anahtar Kelimeler: SCADA systems, Cyberattack, Artificial intelligence, Security, Industrial Internet of Things, Nearest neighbor methods, Reconnaissance, Artificial intelligence (AI), attack detection, cyber security, Industrial Internet of Things (IIoT), supervisory control and data acquisition (SCADA)
  • Erciyes Üniversitesi Adresli: Evet

Özet

Technological developments and transformations have rapidly risen since the Fourth Industrial Revolution. The prevalence of industrial devices interconnected over the wireless sensor networks and the provision of a sustainable data flow reveal the importance of the Industrial Internet of Things (IIoT). In the manufacturing industry, Supervisory Control and Data Acquisition (SCADA) systems are used to control IIoT for critical infrastructure. A cyberattack on the network-based communication structure embedded into the architecture of industrial equipment can significantly disrupt/sabotage product manufacturing and other industrial operations. The digitization of Industrial Control Systems can expose the systems to malicious actors and therefore requires additional security solutions such as Intrusion Detection Systems (IDSs). Increasing sophistication of cyberattacks, industrial companies need to adopt innovative solutions like Artificial Intelligence (AI) based attack detection to protect their valuable assets. In addition, AI-based approaches are more effective as they analyze network traffic, identify threats, and adapt to new attack techniques. This study aims to develop an AI-based IDS with high accuracy for SCADA security. In the study, cyberattacks that may occur against SCADA systems are examined. AI methods (including KNN, QDA, AdaBoost, Gradient Boosting, and Random Forest) in different categories are used and AI models with various parameters are built. To improve the detection performance of the models, comprehensive experiments are carried out on two different SCADA datasets. As a result of experiments, the test accuracy rates exceeding 96.82% are achieved by all models: on the WUSTL-IIOT-2021 dataset, the XGB model has outperformed with an accuracy of 99.99%.