arrow
Return

Developing a Hybrid Intrusion Detection System Using Data Mining for Power Systems

delete2015-11-01
delete267
PRE
AI
S
Shengyi Pan *
T
Thomas H. Morris
U
Uttam Adhikari
DOI:10.1109/TSG.2015.2409775delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Synchrophasor systems provide an immense volume of data for wide area monitoring and control of power systems to meet the increasing demand of reliable energy. The construction of traditional intrusion detection systems (IDSs) that use manually created rules based upon expert knowledge is knowledge-intensive and is not suitable in the context of this big data problem. This paper presents a systematic and automated approach to build a hybrid IDS that learns temporal state-based specifications for power system scenarios including disturbances, normal control operations, and cyber-attacks. A data mining technique called common path mining is used to automatically and accurately learn patterns for scenarios from a fusion of synchrophasor measurement data, and power system audit logs. As a proof of concept, an IDS prototype was implemented and validated. The IDS prototype accurately classifies disturbances, normal control operations, and cyber-attacks for the distance protection scheme for a two-line three-bus power transmission system.
Keywords:
Cyber-attacks
data mining
distance protection
intrusion detection system (IDS)
power system
synchrophasor system
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

IEEE Transactions on Smart Grid cover
IEEE Transactions on Smart Grid
IF:
9.8
Papers:
5.7K
Citations:
4.3W

Organization

M
mississippi state university
Scholars:
7.4K
Papers: 6.9K
Citations: 70