首页 | 本学科首页   官方微博 | 高级检索  
     

基于遗传算法优化的OCSVM双轮廓模型异常检测算法
引用本文:闫腾飞,尚文利,赵剑明,乔 枫,曾 鹏.基于遗传算法优化的OCSVM双轮廓模型异常检测算法[J].计算机应用研究,2019,36(11).
作者姓名:闫腾飞  尚文利  赵剑明  乔 枫  曾 鹏
作者单位:中国科学院沈阳自动化研究所八室,中国科学院沈阳自动化研究所,中国科学院沈阳自动化研究所,沈阳建筑大学,中国科学院沈阳自动化研究所
基金项目:国家重点研发计划项目(2018YFB2004200);中科院战略性先导科技专项项目(XDC02020200);国家自然科学基金项目(61773368);预研基金资助项目(6140242010116Zk63001)
摘    要:针对Modbus工业总线协议的特殊性及工控数据样本的不均衡性,利用单类支持向量机(OCSVM)分别构建正常OCSVM模型和异常OCSVM模型,即双轮廓模态来模拟系统通信的正常模式和异常模式,从而实现工控系统异常检测。同时将遗传算法优化自变量降维应用于工控网络入侵检测场景,实现对输入自变量的降维压缩处理,防止OCSVM模型出现过拟合现象及分类准确率低的问题,提高异常检测的精度,缩减建模时间。通过仿真验证了该算法对工控网络异常检测的有效性。

关 键 词:工业控制系统    异常检测    遗传算法    单类支持向量机    双轮廓模态
收稿时间:2018/4/25 0:00:00
修稿时间:2019/9/29 0:00:00

Anomaly detection algorithm based on OCSVM double contour model of genetic algorithm optimization for industrial control system
Yan Tengfei,Shang Wenli,Zhao Jianming,Qiao Feng and Zeng Peng.Anomaly detection algorithm based on OCSVM double contour model of genetic algorithm optimization for industrial control system[J].Application Research of Computers,2019,36(11).
Authors:Yan Tengfei  Shang Wenli  Zhao Jianming  Qiao Feng and Zeng Peng
Affiliation:Shenyang Institute of Automation (SIA), Chinese Academy of Sciences,,,,
Abstract:The Modbus industry bus protocol is special, and the network intrusion data sample of industrial control system is not balanced. So this paper used OCSVM to construct double contour model combining normal OCSVM model, and abnormal OCSVM model to simulate the normal mode and abnormal mode of system communication. Then it realized the abnormal detection of industrial control system. In order to prevent the OCSVM model from overfitting and the low accuracy of classification, this paper applied the genetic algorithm to the industrial control network by optimizing the dimensionality reduction of the independent variable. This method improved the accuracy of the anomaly detection and reduced the modeling time. Simulation results show that the proposed algorithm is effective for anomaly detection of industrial network.
Keywords:industrial control system  anomaly detection  genetic algorithm  one-class support vector machine(OCSVM)  double control model
点击此处可从《计算机应用研究》浏览原始摘要信息
点击此处可从《计算机应用研究》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号