• Home
  • Search
  • Dynamic rule generation for SCADA intrusion detection
  • Cite Icon21
  • https://doi.org/10.1109/ths.2016.7568964Copy DOI Icon

Dynamic rule generation for SCADA intrusion detection

  • May 1, 2016
  • Jeyasingam Nivethan +1 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Security of Supervisory Control and Data Acquisition (SCADA) systems remains a vital issue due to the criticality of the systems they control. They are used in various critical infrastructures, including electric power, oil & gas and others. The protocols used in this domain were designed to satisfy operational requirements without much consideration for security issues. Most SCADA protocols in use today have the ability to transport control messages over TCP/IP networks, leaving them open to attacks that may have a catastrophic impact on the physical systems they control. This paper describes a research effort to improve the current state intrusion detection solutions for SCADA systems. Intrusion Detection Systems (IDS) used in this domain are typically extensions of IT tools, such as Snort, that have been extended with generic static signatures. The main limitation of this approach is its inability to adapt to system changes and it only offers partial support for deep-packet inspection. The proposed approach improves on existing IDS solutions by developing a framework that allows (i) dynamic rule generation and (ii) fine-tuned deep-packet inspection. A simple language grammar allows network engineers to describe system characteristics that include network topology, protocol and the roles of the different control nodes. A compiler, instrumented with SCADA-specific semantic rules, recognizes monitoring needs and generates network signatures that are specific to the system monitored by the IDS. An organization using our approach has the ability to adapt to system changes by simply updating the system description and its monitoring needs.

Similar Papers
  • Research Article
  • Citations22

An Improved Rough Set Theory based Feature Selection Approach for Intrusion Detection in SCADA Systems

  • Feb 01, 2019
  • Journal of Intelligent & Fuzzy Systems
  • S Priyanga +5
  • Book Chapter
  • Citations4

SSO-IF: An Outlier Detection Approach for Intrusion Detection in SCADA Systems

  • Jan 01, 2020
  • P S Chaithanya +3
  • PDF
  • Research Article
  • Citations54

A Review of Research Works on Supervised Learning Algorithms for SCADA Intrusion Detection and Classification

  • Aug 26, 2021
  • Sustainability
  • Oyeniyi Akeem Alimi +4
  • Conference Article
  • Citations15

Towards SCADA Threat Intelligence based on Intrusion Detection Systems - A Short Review

  • Aug 24, 2020
  • Qais Saif Qassim +3
  • PDF
  • Conference Article
  • Citations5

Secure SCADA-IoT Platform for Industrial Automation and Control: A Collaborative-Communication Designed Model

  • Jan 09, 2018
  • Aamir Shahzad +1
  • Research Article
  • Citations46

PPFSCADA: Privacy preserving framework for SCADA data publishing

  • Mar 20, 2014
  • Future Generation Computer Systems
  • Adil Fahad +5
  • Research Article
  • Citations68

A Taxonomy of Supervised Learning for IDSs in SCADA Environments

  • Apr 17, 2020
  • ACM Computing Surveys
  • Jakapan Suaboot +7
  • Preprint Article
  • Citations1

Covert Penetrations: Analyzing and Defending SCADA Systems from Stealth and Hijacking Attacks

  • Dec 12, 2024
  • Syed Wali +3
  • Research Article
  • Citations84

Combining ensemble methods and social network metrics for improving accuracy of OCSVM on intrusion detection in SCADA systems

  • May 04, 2016
  • Journal of Information Security and Applications
  • Leandros A Maglaras +2
  • Book Chapter
  • Citations2

SCADA: Analysis of Attacks on Communication Protocols

  • Jan 01, 2018
  • T C Pramod +1
  • Book Chapter

Chapter 6 - Protecting Critical Infrastructure: Process Control and SCADA

  • Jan 01, 2008
  • InfoSecurity 2008 Threat Analysis
  • Champ Clark +11
  • Research Article
  • Citations11

SCADA in the Era of IoT: Automation, Cloud-driven security, and machine learning applications

  • Oct 30, 2024
  • International Journal of Science and Research Archive
  • Aliyu Enemosah +1
  • Research Article
  • Citations6

A Distributed IDS for Industrial Control Systems

  • Apr 01, 2014
  • International Journal of Cyber Warfare and Terrorism
  • Tiago Cruz +6
  • Supplementary Content

Development of Multifunctional Wood Composites with Integrated Phase Change Materials for Enhanced Thermal Management, Self-Healing, and Sustainability.

  • Nov 01, 2024
  • L Salmon +1
  • Research Article
  • Citations11

Classifying Categories of SCADA Attacks in a Big Data Framework

  • Jan 15, 2018
  • Annals of Data Science
  • Krishna Madhuri Paramkusem +1
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.