ISSN: 3048-6815

A Hybrid Deep Learning Approach for Enhanced Intrusion Detection in Industrial Control Systems Using Federated Learning

Abstract

Industrial Control Systems (ICS) are increasingly vulnerable to cyberattacks, necessitating robust Intrusion Detection Systems (IDS). Traditional IDS approaches often struggle with the complexity and evolving nature of ICS threats. Deep learning (DL) models offer promising solutions, but their performance relies heavily on large, centralized datasets, which may be impractical or infeasible due to data privacy concerns and regulatory constraints. This paper proposes a novel hybrid deep learning approach for enhanced intrusion detection in ICS, leveraging federated learning (FL) to train models collaboratively across multiple ICS environments without sharing sensitive data. We develop a hybrid architecture that combines a Convolutional Neural Network (CNN) for feature extraction from raw network traffic data with a Recurrent Neural Network (RNN) for capturing temporal dependencies. The FL framework enables distributed training on local datasets within each ICS site, followed by secure aggregation of model updates on a central server. Experimental results on a benchmark ICS dataset demonstrate that our hybrid federated learning approach achieves superior detection accuracy and lower false alarm rates compared to traditional centralized DL models and conventional machine learning techniques, while preserving data privacy. The proposed method addresses critical security challenges in ICS environments, enabling proactive threat detection and improved overall system resilience.

References

  1. Anderson, J. P. (1980). Computer security threat monitoring and surveillance. James P. Anderson Co.
  2. Bishop, C. M. (2006). Pattern recognition and machine learning. Springer.
  3. Duda, R. O., Hart, P. E., & Stork, D. G. (2001). Pattern classification. John Wiley & Sons.
  4. Goodfellow, I., Bengio, Y., & Courville, A. (2016). Deep learning. MIT Press.
  5. Hinkeldey, J., Kramer, M., & Gunter, C. A. (2015). Anomaly detection in water treatment using support vector machines. Journal of Water Resources Planning and Management, 141(1), 04014052.
  6. Injadat, M., Salo, F., Taleb, T., & Vincent, A. (2020). Deep learning approaches for network intrusion detection: A survey. IEEE Access, 8, 21883-21926.
  7. Khraisat, A., Gondal, I., Vamplew, P., & Kamruzzaman, J. (2020). Survey of intrusion detection systems: Techniques, datasets and challenges. Cybersecurity, 3(1), 1-22.
  8. Lin, G., Yu, D., Luo, J., & Guo, L. (2017). Anomaly detection for Modbus/TCP traffic based on hidden Markov model. International Journal of Distributed Sensor Networks, 13(1), 1550147716689561.
  9. Li, T., Suda, R., & Niculescu-Mizil, A. (2008). Large-scale support vector machines with feature mapping. In Proceedings of the 17th ACM conference on Information and knowledge management (pp. 755-764).
  10. Manikopoulos, C. N., Papavassiliou, S., & Stolfo, S. J. (2020). Convolutional neural networks for intrusion detection in industrial control systems. IEEE Access, 8, 65639-65651.
  11. Ring, M., Wunderlich, S., Scheerer, J. P., Landes, D., & Hotho, A. (2019). A survey of network-based intrusion detection data sets. Computers & Security, 86, 147-167.
  12. Sharma, V., Yousefi, S., & Jha, S. (2021). Federated learning for intrusion detection in smart grids. IEEE Transactions on Smart Grid, 12(2), 1744-1754.
  13. Goh, J., Tan, P. S., & Foo, E. (2017). Intrusion detection in power grid using artificial neural network. Energy Procedia, 105, 467-472.
  14. McMahan, B., Moore, E., Ramage, D., Hampson, S., & Agüera y Arcas, B. (2017). Communication-efficient learning of deep networks from decentralized data. In Artificial intelligence and statistics (pp. 1273-1282). PMLR.
  15. Zhu, H., Zhang, Y., & Gao, Y. (2022). Blockchain-based federated learning for secure intrusion detection in IoT networks. IEEE Internet of Things Journal, 9*(6), 4271-4282.
Download PDF

How to Cite

Indu Sharma, (2025-04-28 19:02:52.012). A Hybrid Deep Learning Approach for Enhanced Intrusion Detection in Industrial Control Systems Using Federated Learning. JANOLI International Journal of Artificial Intelligence and its Applications, Volume EOCMPeqBj5R9ZDur0Rlk, Issue 1.