Intelligent Data Refinement and Analysis of Real-World Cyber Attacks on SCADA Systems
File version
Version of Record (VoR)
Author(s)
Dong, N
Choi, T
Bai, G
Ko, RKL
Griffith University Author(s)
Primary Supervisor
Other Supervisors
Editor(s)
Date
Size
File type(s)
Location
Rotterdam, Netherlands
Abstract
As cyberattacks targeting Supervisory Control and Data Acquisition (SCADA) systems have increased significantly in recent years, researchers have begun to collect and generate SCADA datasets for analyzing attack signatures and characteristics. Insights from the analyses are then used to build detection and prevention mechanisms. However, most existing SCADA datasets primarily contain simulated attack records and focus on generic network threats –– hindering the research on zero-day attacks and the effectiveness of defense mechanisms developed using these datasets.
In this paper, we introduce real-world attack datasets for SCADA systems that were collected through the deployment of SCADA honeypots in realistic Internet environments. The datasets contain the original raw data and a refined dataset processed by our proposed tool – HoneyParser which automatically cleans, extracts and enriches parameters to transform raw data into a structured and standardized format. HoneyParser stores the refined data in MySQL format which is directly usable and query-able, improving the scalability and efficiency of future attack pattern analysis and defense development. To demonstrate its usability, we performed a classical analysis using the refined attack dataset to explore the time trends and geolocation patterns. The analyses’ insights provide a deeper understanding of cyberattacks targeting SCADA systems and contribute to the enhancement of SCADA systems’ resilience in future work.
Journal Title
Conference Title
E-Energy '25: Proceedings of the 16th ACM International Conference on Future and Sustainable Energy Systems
Book Title
Edition
Volume
Issue
Thesis Type
Degree Program
School
Publisher link
Patent number
Funder(s)
Grant identifier(s)
Rights Statement
Rights Statement
© 2025 Copyright held by the owner/author(s). This work is licensed under a Creative Commons Attribution 4.0 International License.
Item Access Status
Note
Access the data
Related item(s)
Subject
Persistent link to this record
Citation
Zhang, W; Dong, N; Choi, T; Bai, G; Ko, RKL, Intelligent Data Refinement and Analysis of Real-World Cyber Attacks on SCADA Systems, E-Energy '25: Proceedings of the 16th ACM International Conference on Future and Sustainable Energy Systems, 2025, pp. 846-852