Ajou University repository

Unsupervised Security Threats Identification for Heterogeneous Eventsoa mark
Citations

SCOPUS

0

Citation Export

DC Field Value Language
dc.contributor.authorJang, Young In-
dc.contributor.authorChoi, Seungoh-
dc.contributor.authorMin, Byung Gil-
dc.contributor.authorChoi, Young June (researcherId=7406117220; isni=0000000405323933; orcid=https://orcid.org/0000-0003-2014-6587)-
dc.date.issued2024-10-01-
dc.identifier.issn2079-9292-
dc.identifier.urihttps://dspace.ajou.ac.kr/dev/handle/2018.oak/34553-
dc.description.abstractAs cyberattacks targeting industrial control systems continue to evolve, the development of sophisticated technologies to detect these security threats becomes increasingly essential. In addition, it is necessary to update adversarial information constantly. However, this process is complicated by the deployment of heterogeneous equipment, which increases the number of indicators and characteristics that must be analyzed by security administrators. Furthermore, security operation centers often struggle to respond promptly to adversaries because of the high number of false alerts caused by unreliable system labels. These challenges make it difficult to construct reliable detection systems. To address these issues, we propose a robust unsupervised threat-identification method. Our approach involves applying a preprocessing technique tailored to the various data types pertinent to alerts, followed by classifying unlabeled alerts using an autoencoder (AE) model. Despite the presence of numerous false positives, we verified that the proposed model could effectively distinguish between different attack types and identify their relationships with only one round of training in homogeneous and heterogeneous environments within industrial control systems. Moreover, our model can filter and display data classified as actual attacks and generate relational tables.-
dc.description.sponsorshipThis work is the result of commissioned research project supported by the affiliated institute of ETRI [2020-046].-
dc.language.isoeng-
dc.publisherMultidisciplinary Digital Publishing Institute (MDPI)-
dc.titleUnsupervised Security Threats Identification for Heterogeneous Events-
dc.typeArticle-
dc.citation.titleElectronics (Switzerland)-
dc.citation.volume13-
dc.identifier.bibliographicCitationElectronics (Switzerland), Vol.13-
dc.identifier.doi10.3390/electronics13204061-
dc.identifier.scopusid2-s2.0-85207676297-
dc.identifier.urlwww.mdpi.com/journal/electronics-
dc.subject.keywordanomaly detection-
dc.subject.keywordautoencoder-
dc.subject.keywordheterogeneous environment-
dc.subject.keywordunsupervised learning-
dc.description.isoatrue-
dc.subject.subareaControl and Systems Engineering-
dc.subject.subareaSignal Processing-
dc.subject.subareaHardware and Architecture-
dc.subject.subareaComputer Networks and Communications-
dc.subject.subareaElectrical and Electronic Engineering-
Show simple item record

Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Choi, Youngjune Image
Choi, Youngjune최영준
Department of Software and Computer Engineering
Read More

Total Views & Downloads

File Download

  • There are no files associated with this item.