Dispatching advanced and adaptive intrusion responses for IIoT-based system

dc.centroE.T.S.I. Informática
dc.contributor.authorElicha, Jacobo
dc.contributor.authorLópez-Muñoz, Francisco Javier
dc.date.accessioned2026-02-11T09:29:48Z
dc.date.issued2025
dc.departamentoLenguajes y Ciencias de la Computación
dc.description.abstractThe ever-increasing number of cyber-attacks poses a serious challenge to incident response teams. Recent cyber-attacks, such as the attack against energy distribution companies in Ukraine, highlight the disruption which can be caused and its consequences. More than 53 % of recorded incidents targeted essential entities, which heavily rely in Industrial Internet of Things (IIoT) devices, according to ENISA. Despite the amount of work in Cyber Threat Intelligence (CTI) and Intrusion Detection Systems (IDSs), automated response systems have been avoided in connected industrial environments mainly due to the criticality of the underlying assets, where a misstep has the potential to result in the disruption of critical processes. This paper therefore presents an Early and Adaptive Automated Intrusion Response Service for industrial environments, named EAIRS, which combines several techniques, including expert systems and reinforcement learning, to classify and mitigate anomalies detected by IDSs. The incidents EAIRS is designed to face range from network to host-based attacks. This paper provides the architecture for the described approach and the evaluation of a proof-of-concept implementation on an experimental testbed.
dc.description.sponsorshipFunding for open access charge: Universidad de Málaga / CBUA
dc.identifier.citationJacobo Elicha, Javier Lopez, Dispatching advanced and adaptive intrusion responses for IIoT-based systems, Future Generation Computer Systems, Volume 179, 2026, 108314, ISSN 0167-739X, https://doi.org/10.1016/j.future.2025.108314.
dc.identifier.doihttps://doi.org/10.1016/j.future.2025.108314
dc.identifier.urihttps://hdl.handle.net/10630/45359
dc.language.isoeng
dc.publisherElsevier
dc.rightsAttribution-NonCommercial 4.0 Internationalen
dc.rights.accessRightsopen access
dc.rights.urihttp://creativecommons.org/licenses/by-nc/4.0/
dc.subjectSeguridad informática
dc.subjectInternet de los objetos
dc.subjectEnergía eléctrica - Distribución
dc.subjectCiberterrorismo
dc.subject.otherAdvanced recovery
dc.subject.otherIndustrial cyber-security
dc.subject.otherIntrusion response
dc.subject.otherAttack mitigation
dc.subject.otherIIoT
dc.subject.otherSituational awareness
dc.titleDispatching advanced and adaptive intrusion responses for IIoT-based system
dc.typejournal article
dc.type.hasVersionAM
dspace.entity.typePublication
relation.isAuthorOfPublicationc1875514-a0c5-4d77-a6f1-f7dfc736eeb2
relation.isAuthorOfPublication.latestForDiscoveryc1875514-a0c5-4d77-a6f1-f7dfc736eeb2

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
1-s2.0-S0167739X25006089-main.pdf
Size:
10.18 MB
Format:
Adobe Portable Document Format

Collections