The effect of dataset imbalance on the performance of SCADA intrusion detection systems

Integrating IoT devices in SCADA systems has provided efficient and improved data collection and transmission technologies. This enhancement comes with significant security challenges, exposing traditionally isolated systems to the public internet. Effective and highly reliable security devices, su...

Full description

Saved in:
Bibliographic Details
Main Authors: Balla, Asaad, Habaebi, Mohamed Hadi, Elsheikh, Elfatih A. A., Islam, Md. Rafiqul, Suliman, F.M.
Format: Article
Language:English
English
English
Published: Multidisciplinary Digital Publishing Institute (MDPI) 2023
Subjects:
Online Access:http://irep.iium.edu.my/103118/2/103118_The%20effect%20of%20dataset%20imbalance.pdf
http://irep.iium.edu.my/103118/3/103118_The%20effect%20of%20dataset%20imbalance_WOS.pdf
http://irep.iium.edu.my/103118/14/103118_The%20effect%20of%20dataset%20imbalance%20_Scopus.pdf
http://irep.iium.edu.my/103118/
https://www.mdpi.com/1424-8220/23/2/758/pdf?version=1673268094
https://doi.org/10.3390/s23020758
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Universiti Islam Antarabangsa Malaysia
Language: English
English
English
id my.iium.irep.103118
record_format dspace
spelling my.iium.irep.1031182023-06-20T08:25:29Z http://irep.iium.edu.my/103118/ The effect of dataset imbalance on the performance of SCADA intrusion detection systems Balla, Asaad Habaebi, Mohamed Hadi Elsheikh, Elfatih A. A. Islam, Md. Rafiqul Suliman, F.M. TK5101 Telecommunication. Including telegraphy, radio, radar, television Integrating IoT devices in SCADA systems has provided efficient and improved data collection and transmission technologies. This enhancement comes with significant security challenges, exposing traditionally isolated systems to the public internet. Effective and highly reliable security devices, such as intrusion detection system (IDSs) and intrusion prevention systems (IPS), are critical. Countless studies used deep learning algorithms to design an efficient IDS; however, the fundamental issue of imbalanced datasets was not fully addressed. In our research, we examined the impact of data imbalance on developing an effective SCADA-based IDS. To investigate the impact of various data balancing techniques, we chose two unbalanced datasets, the Morris power dataset, and CICIDS2017 dataset, including random sampling, one-sided selection (OSS), near-miss, SMOTE, and ADASYN. For binary classification, convolutional neural networks were coupled with long short-term memory (CNN-LSTM). The system’s effectiveness was determined by the confusion matrix, which includes evaluation metrics, such as accuracy, precision, detection rate, and F1-score. Four experiments on the two datasets demonstrate the impact of the data imbalance. This research aims to help security researchers in understanding imbalanced datasets and their impact on DL SCADA-IDS. Multidisciplinary Digital Publishing Institute (MDPI) 2023-01-09 Article PeerReviewed application/pdf en http://irep.iium.edu.my/103118/2/103118_The%20effect%20of%20dataset%20imbalance.pdf application/pdf en http://irep.iium.edu.my/103118/3/103118_The%20effect%20of%20dataset%20imbalance_WOS.pdf application/pdf en http://irep.iium.edu.my/103118/14/103118_The%20effect%20of%20dataset%20imbalance%20_Scopus.pdf Balla, Asaad and Habaebi, Mohamed Hadi and Elsheikh, Elfatih A. A. and Islam, Md. Rafiqul and Suliman, F.M. (2023) The effect of dataset imbalance on the performance of SCADA intrusion detection systems. Sensors, 23 (2). pp. 1-13. E-ISSN 1424-8220 https://www.mdpi.com/1424-8220/23/2/758/pdf?version=1673268094 https://doi.org/10.3390/s23020758
institution Universiti Islam Antarabangsa Malaysia
building IIUM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider International Islamic University Malaysia
content_source IIUM Repository (IREP)
url_provider http://irep.iium.edu.my/
language English
English
English
topic TK5101 Telecommunication. Including telegraphy, radio, radar, television
spellingShingle TK5101 Telecommunication. Including telegraphy, radio, radar, television
Balla, Asaad
Habaebi, Mohamed Hadi
Elsheikh, Elfatih A. A.
Islam, Md. Rafiqul
Suliman, F.M.
The effect of dataset imbalance on the performance of SCADA intrusion detection systems
description Integrating IoT devices in SCADA systems has provided efficient and improved data collection and transmission technologies. This enhancement comes with significant security challenges, exposing traditionally isolated systems to the public internet. Effective and highly reliable security devices, such as intrusion detection system (IDSs) and intrusion prevention systems (IPS), are critical. Countless studies used deep learning algorithms to design an efficient IDS; however, the fundamental issue of imbalanced datasets was not fully addressed. In our research, we examined the impact of data imbalance on developing an effective SCADA-based IDS. To investigate the impact of various data balancing techniques, we chose two unbalanced datasets, the Morris power dataset, and CICIDS2017 dataset, including random sampling, one-sided selection (OSS), near-miss, SMOTE, and ADASYN. For binary classification, convolutional neural networks were coupled with long short-term memory (CNN-LSTM). The system’s effectiveness was determined by the confusion matrix, which includes evaluation metrics, such as accuracy, precision, detection rate, and F1-score. Four experiments on the two datasets demonstrate the impact of the data imbalance. This research aims to help security researchers in understanding imbalanced datasets and their impact on DL SCADA-IDS.
format Article
author Balla, Asaad
Habaebi, Mohamed Hadi
Elsheikh, Elfatih A. A.
Islam, Md. Rafiqul
Suliman, F.M.
author_facet Balla, Asaad
Habaebi, Mohamed Hadi
Elsheikh, Elfatih A. A.
Islam, Md. Rafiqul
Suliman, F.M.
author_sort Balla, Asaad
title The effect of dataset imbalance on the performance of SCADA intrusion detection systems
title_short The effect of dataset imbalance on the performance of SCADA intrusion detection systems
title_full The effect of dataset imbalance on the performance of SCADA intrusion detection systems
title_fullStr The effect of dataset imbalance on the performance of SCADA intrusion detection systems
title_full_unstemmed The effect of dataset imbalance on the performance of SCADA intrusion detection systems
title_sort effect of dataset imbalance on the performance of scada intrusion detection systems
publisher Multidisciplinary Digital Publishing Institute (MDPI)
publishDate 2023
url http://irep.iium.edu.my/103118/2/103118_The%20effect%20of%20dataset%20imbalance.pdf
http://irep.iium.edu.my/103118/3/103118_The%20effect%20of%20dataset%20imbalance_WOS.pdf
http://irep.iium.edu.my/103118/14/103118_The%20effect%20of%20dataset%20imbalance%20_Scopus.pdf
http://irep.iium.edu.my/103118/
https://www.mdpi.com/1424-8220/23/2/758/pdf?version=1673268094
https://doi.org/10.3390/s23020758
_version_ 1769841806157021184