CORTEXA
← Browse
openalexJournal of Intelligent Decision Making and Information Science2026-07-23Cited by 0

Cyber-Physical Attack Detection in Water Distribution Systems Using a Hybrid Ensemble of XGBoost, Isolation Forest, and LSTM Autoencoder on the BATADAL Dataset

Bhushankumar Nemade

Water distribution systems (WDSs) are critical public infrastructures increasingly controlled through cyber-physical layers, making them attractive targets for malicious intrusions. Real-time detection is difficult: confirmed attack data is scarce, sensor readings co-vary across dozens of channels, and well-crafted intrusions are deliberately kept within plausible operating ranges. This paper proposes a three-model hybrid ensemble that combines a supervised XGBoost classifier, an unsupervised Isolation Forest with principal component analysis (PCA) dimensionality reduction, and an unsupervised LSTM Autoencoder trained on 24-hour sliding windows of sensor sequences. All models are evaluated on the BATtle of the Attack Detection Algorithms (BATADAL) training dataset, which contains 4,177 hourly observations from a simulated SCADA-monitored C-Town network spanning July–December 2016, with 219 confirmed attack hours (5.2%) across five distinct attack campaigns. The weighted ensemble (XGBoost 40%, LSTM Autoencoder 50%, Isolation Forest 10%) achieves an F1-score of 0.9336, ROC-AUC of 0.9967, and an average precision of 0.9390, detecting 211 of 219 attack hours with only 22 false positives and a false positive rate of 0.56%. Time-to-detection analysis across all five attack windows confirms that the ensemble provides rapid and reliable detection, identifying four of five attack campaigns within one hour of onset. Results demonstrate that combining complementary detection paradigms substantially outperforms any single-model approach on this benchmark.

View free PDFSource page

Related papers

openalexJournal of Intelligent Decision Making and Information Science2026-07-23

Hybrid Attention Convolutional Neural Network and Soft Sign Long Short-Term Memory Based Cyber-Attack Detection and Classification

Ankitha K

The extensive use of smart devices and several security weaknesses of networks has intensively enhanced the number of cyber-attacks in Internet of Things (IoT) networks. The detection and classification of malicious traffic is a key to ensure the security of those systems. It aim…

View free PDFSource page
openalexJournal of Intelligent Decision Making and Information Science2026-07-23

A Unified Multi-Source Deep Learning Framework for Cybersecurity Anomaly Detection Using Cross-Modal Attention and Behavioral Representation

Ananth Prabhu G

Traditionally, cybersecurity anomaly detection systems rely on only one source of data. However, these systems are no longer effective because modern cyber infrastructures are complex and versatile. This paper introduces a new technique called UMS, DLF: Unified Multi, Source Deep…

View free PDFSource page
openalexJournal of Intelligent Decision Making and Information Science2026-07-23

Prediction of In-Situ Properties of Coastal Soils Using GWO-XGBoost Model

Sail S

In coastal port infrastructure, accurate prediction of soil profiles and Standard Penetration Test (SPT) N-values at intermediate borehole locations is critical for safe, economical and resilient foundation design, as across all three dimensions subsoil conditions can vary signif…

View free PDFSource page
openalexJournal of Intelligent Decision Making and Information Science2026-07-23

Dual-Stream Fraud Detection Framework Using Behaviour Feature Engineering and Graph Neural Networks for Financial Transaction Analysis

Aditi Vishal Akshar Yadav

Data distributions are very skewed in financial fraud detection, and fraud behaviours are constantly changing in digital transaction systems, making financial fraud detection a tougher task. In this paper, they present a multimodal fraud detection framework that combines the repr…

View free PDFSource page
crossrefJournal of Intelligent Decision Making and Information Science2026-07-14

Plant Leaf Disease Detection Using Machine Learning and Deep Learning: A Review and Experimental Study

Yuvraj Narayan Gholap

India’s economy is primarily based on agriculture. Agriculture has significant contribution in nation’s GDP. Food security and employment significantly influenced by agriculture. However factors like uncertain weather conditions, poor quality of seeds and plant diseases impact on…

View free PDFSource page
openalexJournal of Intelligent Decision Making and Information Science2026-07-23

Resilience Indices for Smart City Utility Telemetry Networks

Prashant Vijay Thokal

Resilient communication infrastructures are needed to enable the continuous monitoring of smart city utility telemetry networks in the face of cyber-physical failures, congestion and dynamics in the way operations are conducted. In this paper, a composite resilience index framewo…

View free PDFSource page