Safeguarding information intensive critical infrastructures against novel types of emerging failures

被引:13
作者
Balducelli, C. [1 ]
Bologna, S. [1 ]
Lavalle, L. [1 ]
Vicoll, G. [1 ]
机构
[1] ENEA, Italian Agcy New Technol Energy & Environm, I-00060 Rome, Italy
关键词
critical infrastructures; novelty jetection; case base reasoning; data mining; neural networks; events correlation;
D O I
10.1016/j.ress.2006.08.006
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
The complexity of information intensive critical infrastructures, like electricity networks, telecommunication networks and public transportation networks is today augmented much more than in the past: such complexity augments the number of possible failures and anomalous working conditions and consequently decreases the survivability of the infrastructures. In this paper, the possibility is investigated to detect early anomalies and failures inside information intensive critical infrastructures by the introduction of anomaly detectors being "self-aware" about the normal working conditions of the infrastructure itself. This approach has the objective to improve the performance of the most popular signature-based algorithms for intrusion detection, and makes use of different classes of time-oriented algorithms based on artificial intelligence paradigm. It has the advantage to work also in presence of unknown and unexpected types of attacks or failures. The tests, to evaluate the performance of the utilised detectors, are executed inside an emulated supervisory control and data acquisition (SCADA) system of an electrical power transmission grid, and a proposal for the future integration inside real SCADA systems is also reported. (c) 2006 Elsevier Ltd. All rights reserved.
引用
收藏
页码:1218 / 1229
页数:12
相关论文
共 26 条
[21]  
Sheng L., 2001, INT J KNOWLEDGE INFO, V3, P225
[22]  
SOMAYAJI A, 2002, THESIS U NEW MEXICO
[23]  
TIMUSK MA, 2002, P KES2002 KNOWL BAS
[24]  
WEBBER F, 2001, P DISCEX 2001 DARPA
[25]  
WILIKENS M, 1997, EUROPEAN JOINT RES C
[26]  
WITTEN H, 2000, DATA MINING