USING A K-NEAREST NEIGHBORS MACHINE LEARNING APPROACH TO DETECT CYBERATTACKS ON THE NAVY SMART GRID

Download
Author
Chan, Vincent C.
Date
2020-09Advisor
Thulasiraman, Preetha
Second Reader
Fargues, Monique P.
Metadata
Show full item recordAbstract
In 2019, the Naval Facilities Engineering Command (NAVFAC) deployed the Navy smart grid across multiple bases in the United States. The smart grid can improve the reliability, availability, and efficiency of electricity supply. While this brings about immense benefit, placing the grid on a network connected to the internet increases the threat of cyberattacks aimed at intelligence collection, disruption, and destruction. In this thesis, we propose an Intrusion Detection System (IDS) for the NAVFAC smart grid. This IDS comprises a feature extractor, classifier, anomaly detector, and response manager. We use the K-Nearest Neighbors machine learning algorithm to show that various attacks (web attacks, FTP/SSH attacks, DOS, DDOS and port scanning) can be grouped into broader attack classes of Active, Denial, and Probe for appropriate response management. We also show that in order to reduce the load on the security operations center (SOC), the accuracy of the classifier can be maximized by optimizing the value of k, which is the number of data points nearest to the sample under consideration that decides the class assigned.
Rights
Copyright is reserved by the copyright owner.Related items
Showing items related by title, author, creator and subject.
-
Differential benefits of cardiac care regionalization based on driving time to percutaneous coronary intervention
Shen, Yu-Chu; Hsia, Renee Y. (AEM, 2020-09);Background. Patients with ST-elevation myocardial infarction (STEMI) require timely reperfusion, and percutaneous coronary intervention (PCI) decreases morbidity and mortality. Regionalization of STEMI care has increased ... -
PNNU: parallel nearest-neighbor units for learned dictionaries
Kung, H.T.; McDaniel, Bradley; Teerapittayanon, Surat (Springer, 2015);We present a novel parallel approach, parallel nearest neighbor unit (PNNU), for finding the nearest member in a learned dictionary of high-dimensional features. This is a computation fundamental to machine learning and ... -
Nearest neighbor classification using a density sensitive distance measurement [electronic resource]
Burkholder, Joshua Jeremy (Monterey, California. Naval Postgraduate School, 2009-09);This work proposes a density sensitive distance measurement that takes into account the density of an underlying dataset to better represent the shape of the data when measuring distance. Kernel density estimation, using ...