Few-shot Detection of Anomalies in Industrial Cyber-Physical System via
  Prototypical Network and Contrastive Learning
        - URL: http://arxiv.org/abs/2302.10601v1
- Date: Tue, 21 Feb 2023 11:09:36 GMT
- Title: Few-shot Detection of Anomalies in Industrial Cyber-Physical System via
  Prototypical Network and Contrastive Learning
- Authors: Haili Sun, Yan Huang, Lansheng Han, Chunjie Zhou
- Abstract summary: We propose a few-shot anomaly detection model based on prototypical network and contrastive learning.
We show that the model can significantly improve F1 score and reduce false alarm rate (FAR) for identifying anomalous signals.
- Score: 5.9990208840809345
- License: http://creativecommons.org/licenses/by/4.0/
- Abstract:   The rapid development of Industry 4.0 has amplified the scope and
destructiveness of industrial Cyber-Physical System (CPS) by network attacks.
Anomaly detection techniques are employed to identify these attacks and
guarantee the normal operation of industrial CPS. However, it is still a
challenging problem to cope with scenarios with few labeled samples. In this
paper, we propose a few-shot anomaly detection model (FSL-PN) based on
prototypical network and contrastive learning for identifying anomalies with
limited labeled data from industrial CPS. Specifically, we design a contrastive
loss to assist the training process of the feature extractor and learn more
fine-grained features to improve the discriminative performance. Subsequently,
to tackle the overfitting issue during classifying, we construct a robust cost
function with a specific regularizer to enhance the generalization capability.
Experimental results based on two public imbalanced datasets with few-shot
settings show that the FSL-PN model can significantly improve F1 score and
reduce false alarm rate (FAR) for identifying anomalous signals to guarantee
the security of industrial CPS.
 
      
        Related papers
        - Contrastive-KAN: A Semi-Supervised Intrusion Detection Framework for   Cybersecurity with scarce Labeled Data [0.0]
 We propose a real-time intrusion detection system based on a semi-supervised contrastive learning framework using the Kolmogorov-Arnold Network (KAN)<n>Our method leverages abundant unlabeled data to effectively distinguish between normal and attack behaviors.<n>We validate our approach on three benchmark datasets, UNSW-NB15, BoT-IoT, and Gas Pipeline, using only 2.20%, 1.28%, and 8% of labeled samples, respectively.
 arXiv  Detail & Related papers  (2025-07-14T21:02:34Z)
- A Hybrid Framework for Statistical Feature Selection and Image-Based   Noise-Defect Detection [55.2480439325792]
 This paper presents a hybrid framework that integrates both statistical feature selection and classification techniques to improve defect detection accuracy.
We present around 55 distinguished features that are extracted from industrial images, which are then analyzed using statistical methods.
By integrating these methods with flexible machine learning applications, the proposed framework improves detection accuracy and reduces false positives and misclassifications.
 arXiv  Detail & Related papers  (2024-12-11T22:12:21Z)
- LLM-assisted Physical Invariant Extraction for Cyber-Physical Systems   Anomaly Detection [2.276945627589248]
 Cyber-Physical Systems (CPS) are vulnerable to cyber-attacks with potentially catastrophic effects.
CPS design documentation often contains semantically rich descriptions of physical procedures.
We propose a novel approach to extract physical invariants from CPS testbeds for anomaly detection.
 arXiv  Detail & Related papers  (2024-11-17T00:09:04Z)
- FaultGuard: A Generative Approach to Resilient Fault Prediction in Smart   Electrical Grids [53.2306792009435]
 FaultGuard is the first framework for fault type and zone classification resilient to adversarial attacks.
We propose a low-complexity fault prediction model and an online adversarial training technique to enhance robustness.
Our model outclasses the state-of-the-art for resilient fault prediction benchmarking, with an accuracy of up to 0.958.
 arXiv  Detail & Related papers  (2024-03-26T08:51:23Z)
- A Variational Autoencoder Framework for Robust, Physics-Informed
  Cyberattack Recognition in Industrial Cyber-Physical Systems [2.051548207330147]
 We develop a data-driven framework that can be used to detect, diagnose, and localize a type of cyberattack called covert attacks on industrial control systems.
The framework has a hybrid design that combines a variational autoencoder (VAE), a recurrent neural network (RNN), and a Deep Neural Network (DNN)
 arXiv  Detail & Related papers  (2023-10-10T19:07:53Z)
- Self-Supervised Masked Convolutional Transformer Block for Anomaly
  Detection [122.4894940892536]
 We present a novel self-supervised masked convolutional transformer block (SSMCTB) that comprises the reconstruction-based functionality at a core architectural level.
In this work, we extend our previous self-supervised predictive convolutional attentive block (SSPCAB) with a 3D masked convolutional layer, a transformer for channel-wise attention, as well as a novel self-supervised objective based on Huber loss.
 arXiv  Detail & Related papers  (2022-09-25T04:56:10Z)
- On a Uniform Causality Model for Industrial Automation [61.303828551910634]
 A Uniform Causality Model for various application areas of industrial automation is proposed.
The resulting model describes the behavior of Cyber-Physical Systems mathematically.
It is shown that the model can work as a basis for the application of new approaches in industrial automation that focus on machine learning.
 arXiv  Detail & Related papers  (2022-09-20T11:23:51Z)
- Federated Learning with Unreliable Clients: Performance Analysis and
  Mechanism Design [76.29738151117583]
 Federated Learning (FL) has become a promising tool for training effective machine learning models among distributed clients.
However, low quality models could be uploaded to the aggregator server by unreliable clients, leading to a degradation or even a collapse of training.
We model these unreliable behaviors of clients and propose a defensive mechanism to mitigate such a security risk.
 arXiv  Detail & Related papers  (2021-05-10T08:02:27Z)
- Learning-Based Vulnerability Analysis of Cyber-Physical Systems [10.066594071800337]
 This work focuses on the use of deep learning for vulnerability analysis of cyber-physical systems.
We consider a control architecture widely used in CPS (e.g., robotics) where the low-level control is based on e.g., the extended Kalman filter (EKF) and an anomaly detector.
To facilitate analyzing the impact potential sensing attacks could have, our objective is to develop learning-enabled attack generators.
 arXiv  Detail & Related papers  (2021-03-10T06:52:26Z)
- Selective and Features based Adversarial Example Detection [12.443388374869745]
 Security-sensitive applications that relay on Deep Neural Networks (DNNs) are vulnerable to small perturbations crafted to generate Adversarial Examples (AEs)
We propose a novel unsupervised detection mechanism that uses the selective prediction, processing model layers outputs, and knowledge transfer concepts in a multi-task learning setting.
 Experimental results show that the proposed approach achieves comparable results to the state-of-the-art methods against tested attacks in white box scenario and better results in black and gray boxes scenarios.
 arXiv  Detail & Related papers  (2021-03-09T11:06:15Z)
- Anomaly Detection Based on Selection and Weighting in Latent Space [73.01328671569759]
 We propose a novel selection-and-weighting-based anomaly detection framework called SWAD.
Experiments on both benchmark and real-world datasets have shown the effectiveness and superiority of SWAD.
 arXiv  Detail & Related papers  (2021-03-08T10:56:38Z)
- No Need to Know Physics: Resilience of Process-based Model-free Anomaly
  Detection for Industrial Control Systems [95.54151664013011]
 We present a novel framework to generate adversarial spoofing signals that violate physical properties of the system.
We analyze four anomaly detectors published at top security conferences.
 arXiv  Detail & Related papers  (2020-12-07T11:02:44Z)
- Deep Learning based Covert Attack Identification for Industrial Control
  Systems [5.299113288020827]
 We develop a data-driven framework that can be used to detect, diagnose, and localize a type of cyberattack called covert attacks on smart grids.
The framework has a hybrid design that combines an autoencoder, a recurrent neural network (RNN) with a Long-Short-Term-Memory layer, and a Deep Neural Network (DNN)
 arXiv  Detail & Related papers  (2020-09-25T17:48:43Z)
This list is automatically generated from the titles and abstracts of the papers in this site.
       
     
           This site does not guarantee the quality of this site (including all information) and is not responsible for any consequences.