A Machine Learning based Threat Intelligence Framework for Industrial Control System Network Traffic Indicators of Compromise

Venkata Atluri,Jeff Horne
DOI: https://doi.org/10.1109/southeastcon45413.2021.9401809
2021-03-10
Abstract:Cyber-attacks on our Nation's Critical Infrastructure are growing. In this research, a Cyber Threat Intelligence (CTI) framework is proposed, developed, and tested. The results of the research, using 5 different simulated attacks on a dataset from an Industrial Control System (ICS) testbed, are presented with the extracted IOCs. The Bagging Decision Trees model showed the highest performance of testing accuracy (94.24%), precision (0.95), recall (0.93), and F1-score (0.94) among the 9 different machine learning models studied.
What problem does this paper attempt to address?