Security is crucial in cyber-physical systems (CPS). As a typical CPS, the communicationbased train control (CBTC) system is facing increasingly serious cyber-attacks. Intrusion detection systems (IDSs) are vital to protect the system against cyber-attacks. The traditional IDS cannot distinguish between cyber-attacks and system faults. Furthermore, the design of the traditional IDS does not take the principles of CBTC systems into consideration. When deployed, it cannot effectively detect cyber-attacks against CBTC systems. In this paper, we propose a novel intrusion detection method that considers both the status of the networks and those of the equipment to identify if the abnormality is caused by cyber-attacks or by system faults. The proposed method is verified on a hardware-in-the-loop simulation platform of CBTC systems. Simulation results indicate that the proposed method has achieved 97.64% true positive rate, which can significantly improve the security protection level of CBTC systems.
CITATION STYLE
Song, Y., Bu, B., & Zhu, L. (2020). A novel intrusion detection model using a fusion of network and device states for communication-based train control systems. Electronics (Switzerland), 9(1). https://doi.org/10.3390/electronics9010181
Mendeley helps you to discover research relevant for your work.