Detecting and Localizing Cyber-Physical Attacks in Water Distribution Systems without Records of Labeled Attacks

Modern water distribution systems (WDSs) offer automated controls and operations to improve their efficiency and reliability. Nonetheless, such automation can be vulnerable to cyber-attacks. Therefore, various approaches have been suggested to detect cyber-attacks in WDSs. However, most of these app...

Full description

Bibliographic Details
Main Authors: Mashor Housh, Noy Kadosh, Jack Haddad
Format: Article
Language:English
Published: MDPI AG 2022-08-01
Series:Sensors
Subjects:
Online Access:https://www.mdpi.com/1424-8220/22/16/6035
_version_ 1797442177238827008
author Mashor Housh
Noy Kadosh
Jack Haddad
author_facet Mashor Housh
Noy Kadosh
Jack Haddad
author_sort Mashor Housh
collection DOAJ
description Modern water distribution systems (WDSs) offer automated controls and operations to improve their efficiency and reliability. Nonetheless, such automation can be vulnerable to cyber-attacks. Therefore, various approaches have been suggested to detect cyber-attacks in WDSs. However, most of these approaches rely on labeled attack records which are rarely available in real-world applications. Thus, for a detection model to be practical, it should be able to detect and localize events without referring to a predetermined list of labeled attacks. This study proposes a semi-supervised approach that relies solely on attack-free datasets to address this challenge. The approach utilizes a reduction in dimensionality by using maximum canonical correlation analysis (MCCA) followed by support vector data description (SVDD). The developed algorithm was tested on two case studies and various datasets, demonstrating consistently high performance in detecting and localizing cyber-attacks.
first_indexed 2024-03-09T12:38:03Z
format Article
id doaj.art-942d2297ade049519e1ac09cd5cdc480
institution Directory Open Access Journal
issn 1424-8220
language English
last_indexed 2024-03-09T12:38:03Z
publishDate 2022-08-01
publisher MDPI AG
record_format Article
series Sensors
spelling doaj.art-942d2297ade049519e1ac09cd5cdc4802023-11-30T22:22:30ZengMDPI AGSensors1424-82202022-08-012216603510.3390/s22166035Detecting and Localizing Cyber-Physical Attacks in Water Distribution Systems without Records of Labeled AttacksMashor Housh0Noy Kadosh1Jack Haddad2Department of Natural Resources and Environmental Management, University of Haifa, Haifa 3498838, IsraelFaculty of Civil and Environmental Engineering, Technion–Israel Institute of Technology, Haifa 3200003, IsraelFaculty of Civil and Environmental Engineering, Technion–Israel Institute of Technology, Haifa 3200003, IsraelModern water distribution systems (WDSs) offer automated controls and operations to improve their efficiency and reliability. Nonetheless, such automation can be vulnerable to cyber-attacks. Therefore, various approaches have been suggested to detect cyber-attacks in WDSs. However, most of these approaches rely on labeled attack records which are rarely available in real-world applications. Thus, for a detection model to be practical, it should be able to detect and localize events without referring to a predetermined list of labeled attacks. This study proposes a semi-supervised approach that relies solely on attack-free datasets to address this challenge. The approach utilizes a reduction in dimensionality by using maximum canonical correlation analysis (MCCA) followed by support vector data description (SVDD). The developed algorithm was tested on two case studies and various datasets, demonstrating consistently high performance in detecting and localizing cyber-attacks.https://www.mdpi.com/1424-8220/22/16/6035water cyber-physical systemssmart water systemscyber security of water systems
spellingShingle Mashor Housh
Noy Kadosh
Jack Haddad
Detecting and Localizing Cyber-Physical Attacks in Water Distribution Systems without Records of Labeled Attacks
Sensors
water cyber-physical systems
smart water systems
cyber security of water systems
title Detecting and Localizing Cyber-Physical Attacks in Water Distribution Systems without Records of Labeled Attacks
title_full Detecting and Localizing Cyber-Physical Attacks in Water Distribution Systems without Records of Labeled Attacks
title_fullStr Detecting and Localizing Cyber-Physical Attacks in Water Distribution Systems without Records of Labeled Attacks
title_full_unstemmed Detecting and Localizing Cyber-Physical Attacks in Water Distribution Systems without Records of Labeled Attacks
title_short Detecting and Localizing Cyber-Physical Attacks in Water Distribution Systems without Records of Labeled Attacks
title_sort detecting and localizing cyber physical attacks in water distribution systems without records of labeled attacks
topic water cyber-physical systems
smart water systems
cyber security of water systems
url https://www.mdpi.com/1424-8220/22/16/6035
work_keys_str_mv AT mashorhoush detectingandlocalizingcyberphysicalattacksinwaterdistributionsystemswithoutrecordsoflabeledattacks
AT noykadosh detectingandlocalizingcyberphysicalattacksinwaterdistributionsystemswithoutrecordsoflabeledattacks
AT jackhaddad detectingandlocalizingcyberphysicalattacksinwaterdistributionsystemswithoutrecordsoflabeledattacks