Anomaly Detection Dataset for Industrial Control Systems

05/11/2023
by   Alireza Dehlaghi Ghadim, et al.
0

Over the past few decades, Industrial Control Systems (ICSs) have been targeted by cyberattacks and are becoming increasingly vulnerable as more ICSs are connected to the internet. Using Machine Learning (ML) for Intrusion Detection Systems (IDS) is a promising approach for ICS cyber protection, but the lack of suitable datasets for evaluating ML algorithms is a challenge. Although there are a few commonly used datasets, they may not reflect realistic ICS network data, lack necessary features for effective anomaly detection, or be outdated. This paper presents the 'ICS-Flow' dataset, which offers network data and process state variables logs for supervised and unsupervised ML-based IDS assessment. The network data includes normal and anomalous network packets and flows captured from simulated ICS components and emulated networks. The anomalies were injected into the system through various attack techniques commonly used by hackers to modify network traffic and compromise ICSs. We also proposed open-source tools, `ICSFlowGenerator' for generating network flow parameters from Raw network packets. The final dataset comprises over 25,000,000 raw network packets, network flow records, and process variable logs. The paper describes the methodology used to collect and label the dataset and provides a detailed data analysis. Finally, we implement several ML models, including the decision tree, random forest, and artificial neural network to detect anomalies and attacks, demonstrating that our dataset can be used effectively for training intrusion detection ML models.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/15/2023

Wireless Sensor Networks anomaly detection using Machine Learning: A Survey

Wireless Sensor Networks (WSNs) have become increasingly valuable in var...
research
04/27/2021

Extending Isolation Forest for Anomaly Detection in Big Data via K-Means

Industrial Information Technology (IT) infrastructures are often vulnera...
research
02/24/2022

Machine Learning for Intrusion Detection in Industrial Control Systems: Applications, Challenges, and Recommendations

Methods from machine learning are being applied to design Industrial Con...
research
02/19/2021

A flow-based IDS using Machine Learning in eBPF

eBPF is a new technology which allows dynamically loading pieces of code...
research
02/02/2021

AURSAD: Universal Robot Screwdriving Anomaly Detection Dataset

Screwdriving is one of the most popular industrial processes. As such, i...
research
04/28/2023

FlowTransformer: A Transformer Framework for Flow-based Network Intrusion Detection Systems

This paper presents the FlowTransformer framework, a novel approach for ...
research
02/25/2022

Self-Supervised and Interpretable Anomaly Detection using Network Transformers

Monitoring traffic in computer networks is one of the core approaches fo...

Please sign up or login with your details

Forgot password? Click here to reset