Vol. 18, No. 10, October 31, 2024
10.3837/tiis.2024.10.009,
Download Paper (Free):
Abstract
With the integration of the manufacturing process in the Internet, cybersecurity becomes even more important in the process of factory operations. Because of the complexity of data traffic in the manufacturing industry, the identification and classification of anomalous behavior is an important direction of current research. System calls are made at the operating system level. Therefore, the use of system call sequences can detect potential threats much earlier. So, this paper chooses system call information as the research object. System call orderliness is an ideal property for analysis of using hidden Markov model. In terms of methodology, the SVH2M model improves the performance and efficiency of attack detection in manufacturing systems. The SVH2M model combines pSVM with mHMM. The pSVM and mHMM models use SVMPSA and PATA. pSVM is first used to initially categorize the system call sequences into normal and abnormal categories. The classification of pSVM can reduce the amount of data. This reduces the error rate of mHMM processing. Next, mHMM is built for different types of known anomalies. The SVH2M model in the false positive rate is lower than that of hidden Markov model. The experimental results show that the AUC of the improved model is increased by 17%. The average Mismatch Rate is reduced by 16%. The performance and efficiency of detecting anomalous information are improved in manufacturing systems.
Statistics
Show / Hide Statistics
Statistics (Cumulative Counts from December 1st, 2015)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.
Cite this article
[IEEE Style]
C. Hsieh, F. Xu, Q. Yang, D. Kong, "Efficient SVH2M for information anomaly detection in manufacturing processes on system call," KSII Transactions on Internet and Information Systems, vol. 18, no. 10, pp. 2984-3009, 2024. DOI: 10.3837/tiis.2024.10.009.
[ACM Style]
Chao-Hsien Hsieh, Fengya Xu, Qingqing Yang, and Dehong Kong. 2024. Efficient SVH2M for information anomaly detection in manufacturing processes on system call. KSII Transactions on Internet and Information Systems, 18, 10, (2024), 2984-3009. DOI: 10.3837/tiis.2024.10.009.
[BibTeX Style]
@article{tiis:101410, title="Efficient SVH2M for information anomaly detection in manufacturing processes on system call", author="Chao-Hsien Hsieh and Fengya Xu and Qingqing Yang and Dehong Kong and ", journal="KSII Transactions on Internet and Information Systems", DOI={10.3837/tiis.2024.10.009}, volume={18}, number={10}, year="2024", month={October}, pages={2984-3009}}