arrow
返回

Cyber-Attack Detection Using Principal Component Analysis and Noisy Clustering Algorithms: A Collaborative Machine Learning-Based Framework

delete2022-11-01
delete17
PRE
AI
A
Ali Parizad *
C
Constantine J. Hatziadoniu
DOI:10.1109/TSG.2022.3176311delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
This paper proposes a collaborative machine learning-based framework to detect cyber-attacks in a power system, leading to deviation in the state variable behavior. Based on the proposed architecture, three different machine learning-based methods, i.e., visualization, classification, and clustering, are employed and compared to find the best one in the FDIA detection process. To this end, pre-processing is employed in the first stage. In the second stage, the patterns of the state vectors are transferred into features. Hence, 24 statistical features, including measures of central tendency, variability, measures of shape, and position, are extracted to find various properties. Then, in the third stage, a supervised algorithm is employed to rank and find the most crucial features in FDIA. In the fourth stage, an unsupervised dimensionality reduction technique (PCA) is applied to reduce the feature space. In the fifth and last stage, visualization, classification, and clustering-based methods are developed to detect FDIA. To simulate an attack, it is assumed that an intruder decreases or increases the state vectors at different buses with various attack parameters (i.e., 0.90, 0.95, 0.96, 0.97, 0.98, 1, 1.02, 1.03, 1.04, 1.05, and 1.10). The proposed method effectiveness is assessed on the New York Independent System Operator (NYISO) data applied to the IEEE 14-bus system. The results presented in the paper from different scenarios (i.e., phase angle (theta), voltage magnitude (V-m), measurements, and multiple attacks) on a real-world dataset demonstrate that the collaborative optimized PCA-Density-based machine learning technique can detect most of the attack samples with good performance scores (i.e., recall, precision, Fl) and outperforms the other investigated methods. Moreover, it is general and adaptable enough to cover the situation where either the system characteristics or the attack behavior changes.
Keyword:
False data injection attack (FDIA)
principal component analysis
noisy clustering algorithm
hyper-parameter optimization
adaptive semi-supervised learning detection method

期刊

IEEE Transactions on Smart Grid 封面图
IEEE Transactions on Smart Grid
IF:
9.8
论文数:
5.7K
被引数:
4.3W

机构

Southern Illinois University System 封面图
Southern Illinois University System
学者数:
6.0K
论文数: 5.1K
被引数: 55
引用论文

引用论文

err分享
err收藏
A Tunable Fraud Detection System for Advanced Metering Infrastructure Using Short-Lived Patterns
err2019-01-01
err108
PREAI
errZanetti, Marcelo; Jamhour, Edgard; Pellenz, Marcelo; Penna, Manoel; Zambenedetti, Voldi; Chueiri, Ivan
err分享
err收藏
err分享
err收藏
Distributed Framework for Detecting PMU Data Manipulation Attacks With Deep Autoencoders
err2019-07-01
err83
PREAI
errWang, Jingyu; Shi, Dongyuan; Li, Yinhong; Chen, Jinfu; Ding, Hongfa; Duan, Xianzhong
err分享
err收藏
学者 查看更多内容