skip to main content
OSTI.GOV title logo U.S. Department of Energy
Office of Scientific and Technical Information

Title: Reliable cyber-threat detection in rapidly changing environments

Patent ·
OSTI ID:1771571

In some embodiments, a plurality of monitoring nodes each generate a series of current monitoring node values over time that represent a current operation of the industrial asset. An attack detection computer platform may receive the series of current monitoring node values and generate a set of current feature vectors including a current feature for capturing transients (e.g., local transients and/or global transients). The attack detection computer platform may also access an attack detection model having at least one decision boundary that was created using at least one of a set of normal feature vectors and/or a set of attacked feature vectors. The attack detection model may then be executed such that an attack alert signal is transmitted by the attack detection computer platform, when appropriate, based on the set of current feature vectors (including the current feature to capture transients) and the at least one decision boundary.

Research Organization:
General Electric Co., Schenectady, NY (United States)
Sponsoring Organization:
USDOE
DOE Contract Number:
OE0000833
Assignee:
General Electric Company (Schenectady, NY)
Patent Number(s):
10,819,725
Application Number:
15/964,644
OSTI ID:
1771571
Resource Relation:
Patent File Date: 04/27/2018
Country of Publication:
United States
Language:
English

References (14)

Cyber Security patent-application August 2017
Detecting Software Attacks By Monitoring Electric Power Consumption Patterns patent-application November 2008
Cyber threat trees for large system threat cataloging and analysis conference April 2010
System and Method patent-application December 2010
Threat Detection and Localizatino for Monitoring Nodes of an Industrial Asset Control System patent-application December 2017
Domain Level Threat Detection for Industrial Asset Control System patent-application October 2017
Resilient Control Design or Disturbed Cyber-Physical Systems patent-application December 2015
A safety/security risk analysis approach of Industrial Control Systems: A cyber bowtie – combining new version of attack tree with bowtie analysis journal January 2018
Robust Anomaly Detection and Regularized Domain Adaptation of Classifiers with Application to Internet Packet-Flows patent-application November 2012
Profiling Cyber Threats Detected in a Target Environment and Automatically Generating One or More Rule Bases for an Expert System Usable to Profile Cyber Threats Detected in a Target Environment patent-application March 2017
System and Methods for Tracking, Predicting, and Mitigating Advanced Persistent Threats in Networks patent-application October 2016
Cyber signal isolator patent February 2019
Method and apparatus for analysis and assessment of measurement data of a measurement system patent-application August 2009
Systems and Methods of Detecting Utility Grid Intrusions patent-application December 2016