Defending Water Treatment Networks: Exploiting Spatio-temporal Effects for Cyber Attack Detection

08/26/2020
by   Dongjie Wang, et al.
0

While Water Treatment Networks (WTNs) are critical infrastructures for local communities and public health, WTNs are vulnerable to cyber attacks. Effective detection of attacks can defend WTNs against discharging contaminated water, denying access, destroying equipment, and causing public fear. While there are extensive studies in WTNs attack detection, they only exploit the data characteristics partially to detect cyber attacks. After preliminary exploring the sensing data of WTNs, we find that integrating spatio-temporal knowledge, representation learning, and detection algorithms can improve attack detection accuracy. To this end, we propose a structured anomaly detection framework to defend WTNs by modeling the spatio-temporal characteristics of cyber attacks in WTNs. In particular, we propose a spatio-temporal representation framework specially tailored to cyber attacks after separating the sensing data of WTNs into a sequence of time segments. This framework has two key components. The first component is a temporal embedding module to preserve temporal patterns within a time segment by projecting the time segment of a sensor into a temporal embedding vector. We then construct Spatio-Temporal Graphs (STGs), where a node is a sensor and an attribute is the temporal embedding vector of the sensor, to describe the state of the WTNs. The second component is a spatial embedding module, which learns the final fused embedding of the WTNs from STGs. In addition, we devise an improved one class-SVM model that utilizes a new designed pairwise kernel to detect cyber attacks. The devised pairwise kernel augments the distance between normal and attack patterns in the fused embedding space. Finally, we conducted extensive experimental evaluations with real-world data to demonstrate the effectiveness of our framework.

READ FULL TEXT
research
03/05/2021

Bayesian spatio-temporal models for stream networks

Spatio-temporal models are widely used in many research areas including ...
research
02/24/2022

Flexible multivariate spatio-temporal Hawkes process models of terrorism

We develop flexible multivariate spatio-temporal Hawkes process models t...
research
03/08/2021

Risk Aware Optimization of Water Sensor Placement

Optimal sensor placement (SP) usually minimizes an impact measure, such ...
research
09/27/2022

Spatio-Temporal Relation Learning for Video Anomaly Detection

Anomaly identification is highly dependent on the relationship between t...
research
02/24/2023

Deep Graph Stream SVDD: Anomaly Detection in Cyber-Physical Systems

Our work focuses on anomaly detection in cyber-physical systems. Prior l...
research
09/02/2022

Spatio-Temporal Attack Course-of-Action (COA) Search Learning for Scalable and Time-Varying Networks

One of the key topics in network security research is the autonomous COA...
research
12/28/2022

Coordination of Drones at Scale: Decentralized Energy-aware Swarm Intelligence for Spatio-temporal Sensing

Smart City applications, such as traffic monitoring and disaster respons...

Please sign up or login with your details

Forgot password? Click here to reset