Title
Industrial communication intrusion detection algorithm based on improved one-class SVM
Abstract
Anomaly detection based on communication behavior is one of difficult problems of industrial control systems for intrusion detection. A normal communication behavior control model is established by using improved one-class SVM and a PSO-OCSVM algorithm based on particle swarm algorithm is designed to optimize parameters in this paper. This method established an intrusion detection model to identify abnormal Modbus TCP traffic according to the normal Modbus function code sequence. And the efficiency, reliability and real-time of the proposed method met the industrial control system for anomaly detection are proved by simulation results.
Year
DOI
Venue
2015
10.1109/WCICSS.2015.7420317
2015 World Congress on Industrial Control Systems Security (WCICSS)
Keywords
DocType
Citations 
One-class SVM,intrusion detection,Modbus function code,PSO
Conference
2
PageRank 
References 
Authors
0.39
4
4
Name
Order
Citations
PageRank
Wenli Shang1257.07
Lin Li232379.92
Ming Wan3203.43
ZENG Peng43111.10