Back to Search Start Over

A Digital Twin-Based Approach for Detecting Cyber–Physical Attacks in ICS Using Knowledge Discovery

Authors :
Marco Lucchese
Giuseppe Salerno
Andrea Pugliese
Source :
Applied Sciences, Vol 14, Iss 19, p 8665 (2024)
Publication Year :
2024
Publisher :
MDPI AG, 2024.

Abstract

The integration and automation of industrial processes has brought significant gains in efficiency and productivity but also elevated cybersecurity risks, especially in the process industry. This paper introduces a methodology utilizing process mining and digital twins to enhance anomaly detection in Industrial Control Systems (ICS). By converting raw device logs into event logs, we uncover patterns and anomalies indicative of cyberattacks even when such attacks are masked by normal operational data. We present a detailed case study replicating an industrial process to demonstrate the practical application of our approach. Experimental results confirm the effectiveness of our method in identifying cyber–physical attacks within a realistic industrial setting.

Details

Language :
English
ISSN :
14198665 and 20763417
Volume :
14
Issue :
19
Database :
Directory of Open Access Journals
Journal :
Applied Sciences
Publication Type :
Academic Journal
Accession number :
edsdoj.be179c793595436ca32d80b13469aee7
Document Type :
article
Full Text :
https://doi.org/10.3390/app14198665