Multiattribute SCADA-specific intrusion detection system for power networks

Yi Yang, Kieran McLaughlin, Sakir Sezer, Timothy Littler, Eul Gyu Im, Bernardi Pranggono, Haifeng Wang

    Research output: Contribution to journalArticle

    Abstract

    The increased interconnectivity and complexity of Supervisory Control and Data Acquisition (SCADA) systems in power system networks has exposed the systems to a multitude of potential vulnerabilities. In this paper we present a novel approach for a next generation SCADA-specific Intrusion Detection System (IDS). The proposed system analyses multiple attributes in order to provide a comprehensive solution able to mitigate varied cyber attack threats. The multi-attribute IDS comprises a heterogeneous whitelist and behaviour-based concept in order to make SCADA cyber systems more secure. This paper also proposes a multilayer cyber-security framework based on IDS for protecting SCADA cyber-security in Smart Grids without compromising the availability of normal data.
    Original languageEnglish
    Pages (from-to)1092-1102
    Number of pages11
    JournalIEEE Transactions on Power Delivery
    Volume29
    Issue number3
    Early online date19 Feb 2014
    DOIs
    Publication statusPublished - Jun 2014

    Fingerprint

    Intrusion detection
    Data acquisition
    SCADA systems
    Multilayers
    Availability

    Keywords

    • power systems
    • cybersystems
    • smart grids

    Cite this

    Yang, Y., McLaughlin, K., Sezer, S., Littler, T., Im, E. G., Pranggono, B., & Wang, H. (2014). Multiattribute SCADA-specific intrusion detection system for power networks. IEEE Transactions on Power Delivery, 29(3), 1092-1102 . https://doi.org/10.1109/TPWRD.2014.2300099
    Yang, Yi ; McLaughlin, Kieran ; Sezer, Sakir ; Littler, Timothy ; Im, Eul Gyu ; Pranggono, Bernardi ; Wang, Haifeng. / Multiattribute SCADA-specific intrusion detection system for power networks. In: IEEE Transactions on Power Delivery. 2014 ; Vol. 29, No. 3. pp. 1092-1102 .
    @article{151c2617a53d49e084a0b84c380a92ee,
    title = "Multiattribute SCADA-specific intrusion detection system for power networks",
    abstract = "The increased interconnectivity and complexity of Supervisory Control and Data Acquisition (SCADA) systems in power system networks has exposed the systems to a multitude of potential vulnerabilities. In this paper we present a novel approach for a next generation SCADA-specific Intrusion Detection System (IDS). The proposed system analyses multiple attributes in order to provide a comprehensive solution able to mitigate varied cyber attack threats. The multi-attribute IDS comprises a heterogeneous whitelist and behaviour-based concept in order to make SCADA cyber systems more secure. This paper also proposes a multilayer cyber-security framework based on IDS for protecting SCADA cyber-security in Smart Grids without compromising the availability of normal data.",
    keywords = "power systems, cybersystems, smart grids",
    author = "Yi Yang and Kieran McLaughlin and Sakir Sezer and Timothy Littler and Im, {Eul Gyu} and Bernardi Pranggono and Haifeng Wang",
    year = "2014",
    month = "6",
    doi = "10.1109/TPWRD.2014.2300099",
    language = "English",
    volume = "29",
    pages = "1092--1102",
    journal = "IEEE Transactions on Power Delivery",
    issn = "0885-8977",
    publisher = "IEEE",
    number = "3",

    }

    Yang, Y, McLaughlin, K, Sezer, S, Littler, T, Im, EG, Pranggono, B & Wang, H 2014, 'Multiattribute SCADA-specific intrusion detection system for power networks', IEEE Transactions on Power Delivery, vol. 29, no. 3, pp. 1092-1102 . https://doi.org/10.1109/TPWRD.2014.2300099

    Multiattribute SCADA-specific intrusion detection system for power networks. / Yang, Yi; McLaughlin, Kieran; Sezer, Sakir; Littler, Timothy; Im, Eul Gyu; Pranggono, Bernardi; Wang, Haifeng.

    In: IEEE Transactions on Power Delivery, Vol. 29, No. 3, 06.2014, p. 1092-1102 .

    Research output: Contribution to journalArticle

    TY - JOUR

    T1 - Multiattribute SCADA-specific intrusion detection system for power networks

    AU - Yang, Yi

    AU - McLaughlin, Kieran

    AU - Sezer, Sakir

    AU - Littler, Timothy

    AU - Im, Eul Gyu

    AU - Pranggono, Bernardi

    AU - Wang, Haifeng

    PY - 2014/6

    Y1 - 2014/6

    N2 - The increased interconnectivity and complexity of Supervisory Control and Data Acquisition (SCADA) systems in power system networks has exposed the systems to a multitude of potential vulnerabilities. In this paper we present a novel approach for a next generation SCADA-specific Intrusion Detection System (IDS). The proposed system analyses multiple attributes in order to provide a comprehensive solution able to mitigate varied cyber attack threats. The multi-attribute IDS comprises a heterogeneous whitelist and behaviour-based concept in order to make SCADA cyber systems more secure. This paper also proposes a multilayer cyber-security framework based on IDS for protecting SCADA cyber-security in Smart Grids without compromising the availability of normal data.

    AB - The increased interconnectivity and complexity of Supervisory Control and Data Acquisition (SCADA) systems in power system networks has exposed the systems to a multitude of potential vulnerabilities. In this paper we present a novel approach for a next generation SCADA-specific Intrusion Detection System (IDS). The proposed system analyses multiple attributes in order to provide a comprehensive solution able to mitigate varied cyber attack threats. The multi-attribute IDS comprises a heterogeneous whitelist and behaviour-based concept in order to make SCADA cyber systems more secure. This paper also proposes a multilayer cyber-security framework based on IDS for protecting SCADA cyber-security in Smart Grids without compromising the availability of normal data.

    KW - power systems

    KW - cybersystems

    KW - smart grids

    U2 - 10.1109/TPWRD.2014.2300099

    DO - 10.1109/TPWRD.2014.2300099

    M3 - Article

    VL - 29

    SP - 1092

    EP - 1102

    JO - IEEE Transactions on Power Delivery

    JF - IEEE Transactions on Power Delivery

    SN - 0885-8977

    IS - 3

    ER -