{"id":"https://openalex.org/W2767814972","doi":"https://doi.org/10.5220/0006656204180425","title":"Using Application Layer Metrics to Detect Advanced SCADA Attacks","display_name":"Using Application Layer Metrics to Detect Advanced SCADA Attacks","publication_year":2018,"publication_date":"2018-01-01","ids":{"openalex":"https://openalex.org/W2767814972","doi":"https://doi.org/10.5220/0006656204180425","mag":"2767814972"},"language":"en","primary_location":{"id":"doi:10.5220/0006656204180425","is_oa":true,"landing_page_url":"https://doi.org/10.5220/0006656204180425","pdf_url":null,"source":null,"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 4th International Conference on Information Systems Security and Privacy","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.5220/0006656204180425","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5091285447","display_name":"Peter Maynard","orcid":"https://orcid.org/0000-0002-6267-7530"},"institutions":[{"id":"https://openalex.org/I126231945","display_name":"Queen's University Belfast","ror":"https://ror.org/00hswnk62","country_code":"GB","type":"education","lineage":["https://openalex.org/I126231945"]}],"countries":["GB"],"is_corresponding":true,"raw_author_name":"Peter Maynard","raw_affiliation_strings":["Queen's University Belfast, United Kingdom","Centre for Secure Information Technologies, Queen's University Belfast, BT3 9DT, Belfast, U.K"],"affiliations":[{"raw_affiliation_string":"Queen's University Belfast, United Kingdom","institution_ids":["https://openalex.org/I126231945"]},{"raw_affiliation_string":"Centre for Secure Information Technologies, Queen's University Belfast, BT3 9DT, Belfast, U.K","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5027789250","display_name":"Kieran McLaughlin","orcid":"https://orcid.org/0000-0002-1299-2364"},"institutions":[{"id":"https://openalex.org/I126231945","display_name":"Queen's University Belfast","ror":"https://ror.org/00hswnk62","country_code":"GB","type":"education","lineage":["https://openalex.org/I126231945"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Kieran McLaughlin","raw_affiliation_strings":["Queen's University Belfast, United Kingdom","Centre for Secure Information Technologies, Queen's University Belfast, BT3 9DT, Belfast, U.K"],"affiliations":[{"raw_affiliation_string":"Queen's University Belfast, United Kingdom","institution_ids":["https://openalex.org/I126231945"]},{"raw_affiliation_string":"Centre for Secure Information Technologies, Queen's University Belfast, BT3 9DT, Belfast, U.K","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5103745938","display_name":"Sakir Sezer","orcid":null},"institutions":[{"id":"https://openalex.org/I126231945","display_name":"Queen's University Belfast","ror":"https://ror.org/00hswnk62","country_code":"GB","type":"education","lineage":["https://openalex.org/I126231945"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Sakir Sezer","raw_affiliation_strings":["Queen's University Belfast, United Kingdom","Centre for Secure Information Technologies, Queen's University Belfast, BT3 9DT, Belfast, U.K"],"affiliations":[{"raw_affiliation_string":"Queen's University Belfast, United Kingdom","institution_ids":["https://openalex.org/I126231945"]},{"raw_affiliation_string":"Centre for Secure Information Technologies, Queen's University Belfast, BT3 9DT, Belfast, U.K","institution_ids":[]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5091285447"],"corresponding_institution_ids":["https://openalex.org/I126231945"],"apc_list":null,"apc_paid":null,"fwci":0.6633,"has_fulltext":true,"cited_by_count":5,"citation_normalized_percentile":{"value":0.67538041,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"418","last_page":"425"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9952999949455261,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9952999949455261,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9923999905586243,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.991599977016449,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/scada","display_name":"SCADA","score":0.7813636064529419},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7318975925445557},{"id":"https://openalex.org/keywords/layer","display_name":"Layer (electronics)","score":0.6330623030662537},{"id":"https://openalex.org/keywords/application-layer","display_name":"Application layer","score":0.4708254635334015},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.33227065205574036},{"id":"https://openalex.org/keywords/real-time-computing","display_name":"Real-time computing","score":0.3233926296234131},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.24761554598808289},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.1833624243736267},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.10241031646728516},{"id":"https://openalex.org/keywords/chemistry","display_name":"Chemistry","score":0.061569005250930786},{"id":"https://openalex.org/keywords/electrical-engineering","display_name":"Electrical engineering","score":0.05843997001647949}],"concepts":[{"id":"https://openalex.org/C113863187","wikidata":"https://www.wikidata.org/wiki/Q17498","display_name":"SCADA","level":2,"score":0.7813636064529419},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7318975925445557},{"id":"https://openalex.org/C2779227376","wikidata":"https://www.wikidata.org/wiki/Q6505497","display_name":"Layer (electronics)","level":2,"score":0.6330623030662537},{"id":"https://openalex.org/C190793597","wikidata":"https://www.wikidata.org/wiki/Q189768","display_name":"Application layer","level":3,"score":0.4708254635334015},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.33227065205574036},{"id":"https://openalex.org/C79403827","wikidata":"https://www.wikidata.org/wiki/Q3988","display_name":"Real-time computing","level":1,"score":0.3233926296234131},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.24761554598808289},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.1833624243736267},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.10241031646728516},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.061569005250930786},{"id":"https://openalex.org/C119599485","wikidata":"https://www.wikidata.org/wiki/Q43035","display_name":"Electrical engineering","level":1,"score":0.05843997001647949},{"id":"https://openalex.org/C178790620","wikidata":"https://www.wikidata.org/wiki/Q11351","display_name":"Organic chemistry","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.5220/0006656204180425","is_oa":true,"landing_page_url":"https://doi.org/10.5220/0006656204180425","pdf_url":null,"source":null,"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 4th International Conference on Information Systems Security and Privacy","raw_type":"proceedings-article"},{"id":"pmh:oai:pure.qub.ac.uk/portal:openaire/4f37958a-3ed0-4335-bcba-2a62d2fd7f0e","is_oa":true,"landing_page_url":"https://pure.qub.ac.uk/en/publications/4f37958a-3ed0-4335-bcba-2a62d2fd7f0e","pdf_url":"http://www.scitepress.org/Papers/2018/66562/66562.pdf","source":{"id":"https://openalex.org/S4306402319","display_name":"Research Portal (Queen's University Belfast)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I126231945","host_organization_name":"Queen's University Belfast","host_organization_lineage":["https://openalex.org/I126231945"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Maynard, P, McLaughlin, K & Sezer, S 2018, 'Using Application Layer Metrics to Detect Advanced SCADA Attacks', Paper presented at 4th International Conference on Information Systems Security and Privacy, Portugal, 22/01/2018 - 24/01/2018. https://doi.org/10.5220/0006656204180425","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:oai:https://orca.cardiff.ac.uk:161741","is_oa":false,"landing_page_url":"https://orca.cardiff.ac.uk/id/eprint/161741/","pdf_url":null,"source":{"id":"https://openalex.org/S4306401195","display_name":"ORCA Online Research @Cardiff (Cardiff University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I79510175","host_organization_name":"Cardiff University","host_organization_lineage":["https://openalex.org/I79510175"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Conference or Workshop Item"}],"best_oa_location":{"id":"doi:10.5220/0006656204180425","is_oa":true,"landing_page_url":"https://doi.org/10.5220/0006656204180425","pdf_url":null,"source":null,"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 4th International Conference on Information Systems Security and Privacy","raw_type":"proceedings-article"},"sustainable_development_goals":[{"score":0.41999998688697815,"display_name":"Climate action","id":"https://metadata.un.org/sdg/13"}],"awards":[{"id":"https://openalex.org/G1120588892","display_name":"Analysing and Detecting Advanced Multi-stage Attacks against ICS (ADAMA)","funder_award_id":"EP/N022866/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G2241406505","display_name":null,"funder_award_id":"EP/R007187/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G5334834590","display_name":null,"funder_award_id":"EP/H049606/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G5445011987","display_name":null,"funder_award_id":"EP/K004379/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G6577499357","display_name":null,"funder_award_id":"EP/N508664/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G745166385","display_name":null,"funder_award_id":"EP/G034303/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"},{"id":"https://openalex.org/G8856505179","display_name":null,"funder_award_id":"EP/N022866/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"}],"funders":[{"id":"https://openalex.org/F4320334627","display_name":"Engineering and Physical Sciences Research Council","ror":"https://ror.org/0439y7842"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":21,"referenced_works":["https://openalex.org/W572872720","https://openalex.org/W1553347404","https://openalex.org/W2002619227","https://openalex.org/W2022578767","https://openalex.org/W2161265013","https://openalex.org/W2272781217","https://openalex.org/W2290151134","https://openalex.org/W2290944024","https://openalex.org/W2345225356","https://openalex.org/W2429467961","https://openalex.org/W2462751245","https://openalex.org/W2535751405","https://openalex.org/W2540359925","https://openalex.org/W2563150099","https://openalex.org/W2564147261","https://openalex.org/W2586598394","https://openalex.org/W2619874920","https://openalex.org/W2620598574","https://openalex.org/W2728426605","https://openalex.org/W2963082174","https://openalex.org/W4256497308"],"related_works":["https://openalex.org/W2615977515","https://openalex.org/W2115760278","https://openalex.org/W2146396794","https://openalex.org/W2809162650","https://openalex.org/W2807864071","https://openalex.org/W2388279172","https://openalex.org/W2504933265","https://openalex.org/W1585302186","https://openalex.org/W2216035532","https://openalex.org/W2181429049"],"abstract_inverted_index":{"Current":[0],"state":[1,73],"of":[2,35,45,65,74,87],"the":[3,17,66,71,75,96],"art":[4,76],"intrusion":[5],"detection":[6,77],"and":[7,23,70],"network":[8,46],"monitoring":[9],"systems":[10],"have":[11],"a":[12,27,31,43,52,85],"tendency":[13],"to":[14,50,83],"focus":[15],"on":[16],"\u2019Five-Tuple\u2019":[18],"features":[19],"(Protocol,":[20],"IP":[21],"src/dst":[22],"Port":[24],"src/dest).":[25],"As":[26],"result":[28],"there":[29],"is":[30],"gap":[32],"in":[33,95],"visibility":[34],"security":[36],"at":[37],"an":[38,63],"application":[39,47],"level.":[40],"We":[41],"propose":[42],"collection":[44],"layer":[48],"metrics":[49,59,80],"provide":[51],"greater":[53],"insight":[54],"into":[55],"SCADA":[56,97],"communications.":[57],"These":[58],"are":[60,81],"devised":[61],"from":[62],"analysis":[64],"ICS":[67],"threat":[68],"landscape":[69],"current":[72],"systems.":[78],"Our":[79],"able":[82],"detect":[84],"range":[86],"adversary":[88],"capabilities":[89],"which":[90],"goes":[91],"beyond":[92],"previous":[93],"literature":[94],"domain.":[98]},"counts_by_year":[{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":1},{"year":2020,"cited_by_count":2},{"year":2019,"cited_by_count":1}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
