SCIS & ISIS
SCIS & ISIS 2010
セッションID: SA-B4-3
会議情報
Intrusion Detection in Control System Communication Based on Outlier Detection with One-class Classifier
*Mai KiuchiTakashi Onoda
著者情報
会議録・要旨集 フリー

詳細
抄録
In this paper, we introduce outlier detection using SVM (Support Vector Machine) for intrusion detection in control system communication networks. SVMs have proved to be useful for classifying normal communication and intrusion attacks. In control systems, a large amount of normal communication data is available, but as there have been almost no cyber attacks, there is very little actual attack data. One class SVM and SVDD (Support Vector Data Description) are two methods used for one class classification where only information of one of the classes is available. We applied these two methods to intrusion detection in an experimental control system network, and compared the differences in the classification. To gain information of the kind of traffic that would be classified as an attack, the percentage of allowed outliers was changed interactively, adding human knowledge of the control system to the results.
著者関連情報
© 2010 Japan Society for Fuzzy Theory and Intelligent Informatics
前の記事 次の記事
feedback
Top