Your browser doesn't support javascript.
loading
A detailed study of resampling algorithms for cyberattack classification in engineering applications.
Mogollón Gutiérrez, Óscar; Sancho Núñez, José Carlos; Ávila, Mar; Caro, Andrés.
Afiliação
  • Mogollón Gutiérrez Ó; Escuela Politecnica, University of Extremadura, Cáceres, Cáceres, Spain.
  • Sancho Núñez JC; Escuela Politecnica, University of Extremadura, Cáceres, Cáceres, Spain.
  • Ávila M; Escuela Politecnica, University of Extremadura, Cáceres, Cáceres, Spain.
  • Caro A; Escuela Politecnica, University of Extremadura, Cáceres, Cáceres, Spain.
PeerJ Comput Sci ; 10: e1975, 2024.
Article em En | MEDLINE | ID: mdl-38660195
ABSTRACT
The evolution of engineering applications is highly relevant in the context of protecting industrial systems. As industries are increasingly interconnected, the need for robust cybersecurity measures becomes paramount. Engineering informatics not only provides tools for knowledge representation and extraction but also affords a comprehensive spectrum of developing sophisticated cybersecurity solutions. However, safeguarding industrial systems poses a unique challenge due to the inherent heterogeneity of data within these environments. Together with this problem, it's crucial to acknowledge that datasets that simulate real cyberattacks within these diverse environments exhibit a high imbalance, often skewed towards certain types of traffics. This study proposes a system for addressing class imbalance in cybersecurity. To do this, three oversampling (SMOTE, Borderline1-SMOTE, and ADASYN) and five undersampling (random undersampling, cluster centroids, NearMiss, repeated edited nearest neighbor, and Tomek Links) methods are tested. Particularly, these balancing algorithms are used to generate one-vs-rest binary models and to develop a two-stage classification system. By doing so, this study aims to enhance the efficacy of cybersecurity measures ensuring a more comprehensive understanding and defense against the diverse range of threats encountered in industrial environments. Experimental results demonstrates the effectiveness of proposed system for cyberattack detection and classification among nine widely known cyberattacks.
Palavras-chave

Texto completo: 1 Base de dados: MEDLINE Idioma: En Ano de publicação: 2024 Tipo de documento: Article

Texto completo: 1 Base de dados: MEDLINE Idioma: En Ano de publicação: 2024 Tipo de documento: Article