paper-with-me

홈 › Papers

Improving SIEM for Critical SCADA Water Infrastructures Using Machine Learning

2019-03-06 · Hanan Hindy, David Brosset, Ethan Bayne, Amar Seeam, Xavier Bellekens

Network Control Systems (NAC) have been used in many industrial processes. They aim to reduce the human factor burden and efficiently handle the complex process and communication of those systems. Supervisory control and data acquisition (SCADA) systems are used in industrial, infrastructure and facility processes (e.g. manufacturing, fabrication, oil and water pipelines, building ventilation, etc.) Like other Internet of Things (IoT) implementations, SCADA systems are vulnerable to cyber-attacks, therefore, a robust anomaly detection is a major requirement. However, having an accurate anomaly detection system is not an easy task, due to the difficulty to differentiate between cyber-attacks and system internal failures (e.g. hardware failures). In this paper, we present a model that detects anomaly events in a water system controlled by SCADA. Six Machine Learning techniques have been used in building and evaluating the model. The model classifies different anomaly events including hardware failures (e.g. sensor failures), sabotage and cyber-attacks (e.g. DoS and Spoofing). Unlike other detection systems, our proposed work focuses on notifying the operator when an anomaly occurs with a probability of the event occurring. This additional information helps in accelerating the mitigation process. The model is trained and tested using a real-world dataset.

📄 PDF Abstract BibTeX arXiv:1904.05724

Code (1)

AbertayMachineLearningGroup/machine-learning-SIEM-water-infrastructure

Tasks

Anomaly DetectionBIG-bench Machine LearningCyber Attack Detection

Similar Papers 제목 키워드 기반

Learning-Augmented Online Control for Decarbonizing Water Infrastructures

2025-01-24 · Jianyi Yang, Pengfei Li, Tongxin Li, Adam Wierman 외

Water infrastructures are essential for drinking water supply, irrigation, fire protection, and other critical applications. However, water pumping systems, which are key to transporting water to the point of use, consum…

RuleGenie: SIEM Detection Rule Set Optimization

2025-05-10 · Akansha Shukla, Parth Atulbhai Gandhi, Yuval Elovici, Asaf Shabtai

SIEM systems serve as a critical hub, employing rule-based logic to detect and respond to threats. Redundant or overlapping rules in SIEM systems lead to excessive false alerts, degrading analyst performance due to alert…

Large Language ModelRecommendation Systems

Monitoring of Underwater Critical Infrastructures: the Nord Stream and Other Recent Case Studies

2023-02-03 · Giovanni Soldi, Domenico Gaglione, Simone Raponi, Nicola Forti 외

The explosions on September 26th, 2022, which damaged the gas pipelines of Nord Stream 1 and Nord Stream 2, have highlighted the need and urgency of improving the resilience of Underwater Critical Infrastructures (UCIs).…

Integrating Multi-Agent Simulation, Behavioral Forensics, and Trust-Aware Machine Learning for Adaptive Insider Threat Detection

2026-01-06 · Firdous Kausar, Asmah Muallem, Naw Safrin Sattar, Mohamed Zakaria Kurdi arxiv

We present a hybrid framework for adaptive insider-threat detection that tightly integrates multi-agent simulation (MAS), layered Security Information and Event Management (SIEM) correlation, behavioral and communication…

Estimation of Field Inhomogeneity Map Following Magnitude-Based Ambiguity-Resolved Water-Fat Separation

2022-06-17 · Alexandre Triay Bagur, Darryl McClymont, Chloe Hutton, Andrea Borghetto 외

PURPOSE: To extend magnitude-based PDFF (Proton Density Fat Fraction) and $R_2^*$ mapping with resolved water-fat ambiguity to calculate field inhomogeneity (field map) using the phase images. THEORY: The estimation is f…