Skip to main content

2019 | OriginalPaper | Buchkapitel

Behavior Prediction for Industrial Control System

verfasst von : Shen Wang, An Huang, Zhongchuan Fu

Erschienen in: Communications, Signal Processing, and Systems

Verlag: Springer Singapore

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

While the Industrial control system(ICS) is making great progress for the society, it is facing a huge security risk at the same time. There are some methods like upgrading system and updating patches to protect the ICS, but they are inevitable lagging behind anyway. Byte-level is useful for network intrusion detection and does not need knowledge of the device to be detected. Based on the network data in the industrial control system, we propose an adaptive DBSCAN clustering method for extracting the control instructions in the data packet, and then learning these instructions with the n-gram model. According to received instructions, we are able to predict the next possible instruction. Whether the system is being attacked can be recommended by comparing the instruction that we forecast with the real instruction. Experiments show that the behavior prediction has high accuracy.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Literatur
1.
Zurück zum Zitat Oaz, A., Ross, K., Low, R.M., Stamp, M.: HTTP attack detection using n-gram analysis. Comput. Secur. 45, 242–254 (2014) Oaz, A., Ross, K., Low, R.M., Stamp, M.: HTTP attack detection using n-gram analysis. Comput. Secur. 45, 242–254 (2014)
4.
Zurück zum Zitat Narayan, J., Shukla, S.K., Clancy, T.C.: A survey of automatic protocol reverse engineering tools. ACM Comput. Surv. 48(3), 40 (2015) Narayan, J., Shukla, S.K., Clancy, T.C.: A survey of automatic protocol reverse engineering tools. ACM Comput. Surv. 48(3), 40 (2015)
5.
Zurück zum Zitat Caballero, J., Song, D.: Automatic protocol reverse-engineering: message format extraction and field semantics inference. Int. J. Comput. Telecommun. Netw. 57(2), 451–474 (2013) Caballero, J., Song, D.: Automatic protocol reverse-engineering: message format extraction and field semantics inference. Int. J. Comput. Telecommun. Netw. 57(2), 451–474 (2013)
6.
Zurück zum Zitat Ram, A.: A density based algorithm for discovering density varied clusters in large spatial databases. Int. J. comput. Appl. 3(6), 1–4 (2010) Ram, A.: A density based algorithm for discovering density varied clusters in large spatial databases. Int. J. comput. Appl. 3(6), 1–4 (2010)
7.
Zurück zum Zitat Needleman, S.B., Wunsch, C.D.: A general method applicable to the search for similarities in the amino acid sequence of two proteins. J. Mol. Biol. 48, 443–453 (1970) Needleman, S.B., Wunsch, C.D.: A general method applicable to the search for similarities in the amino acid sequence of two proteins. J. Mol. Biol. 48, 443–453 (1970)
Metadaten
Titel
Behavior Prediction for Industrial Control System
verfasst von
Shen Wang
An Huang
Zhongchuan Fu
Copyright-Jahr
2019
Verlag
Springer Singapore
DOI
https://doi.org/10.1007/978-981-10-6571-2_237

Neuer Inhalt