CORTEXA
← Browse
zenodoJournal article2026-07-27

Reducing False Positives in AI-Based Intrusion Detection Systems Using Hybrid Artificial Intelligence for Oil and Gas Critical Infrastructure

Nonye Peter Awurum

Abstract: The increasing frequency and sophistication of cyberattacks targeting critical infrastructure have accelerated the adoption of Artificial Intelligence (AI)-based Intrusion Detection Systems (IDSs) for real-time cyber threat detection. Although machine learning and deep learning techniques have significantly improved intrusion detection accuracy, high false-positive rates remain one of the most significant challenges affecting operational cybersecurity. Excessive false alerts overwhelm Security Operations Centres (SOCs), increase analyst workload, delay incident response, and may lead to alert fatigue, causing genuine cyber threats to be overlooked. This challenge is particularly critical within oil and gas environments, where cyber incidents can disrupt industrial operations, compromise safety, and result in substantial economic losses.   This study proposes a Hybrid Artificial Intelligence (Hybrid AI) approach designed to reduce false positives while maintaining high detection accuracy for intrusion detection systems deployed within oil and gas critical infrastructure. The proposed architecture combines traditional machine learning algorithms, deep learning models, confidence-based decision fusion, and Explainable Artificial Intelligence (XAI) into a unified detection framework. Machine learning algorithms provide efficient classification of structured attack patterns, while deep learning models capture complex spatial and temporal characteristics of network traffic. Decision fusion integrates predictions from multiple AI models using weighted confidence scoring to improve classification reliability and minimize erroneous alerts.   The proposed hybrid model is evaluated using publicly available benchmark cybersecurity datasets, including CICIDS2017, UNSW-NB15, NSL-KDD, and a hybrid Operational Technology (OT)/Information Technology (IT) dataset representative of industrial environments. Model performance is assessed using accuracy, precision, recall, F1-score, false positive rate (FPR), false negative rate (FNR), Matthews Correlation Coefficient (MCC), Area Under the Receiver Operating Characteristic Curve (ROC-AUC), and detection latency.   The expected findings demonstrate that integrating complementary AI models through intelligent decision fusion significantly reduces false-positive alerts while preserving high detection accuracy and operational efficiency. The study contributes to cybersecurity research by presenting a practical Hybrid AI architecture that improves intrusion detection reliability, enhances analyst confidence through explainable AI, and supports proactive cyber defence within critical infrastructure environments. The proposed approach provides valuable guidance for organizations seeking to improve the effectiveness of AI-enabled intrusion detection systems while reducing operational costs associated with excessive false alarms.

View free PDFSource page

Related papers

zenodoJournal article2026-07-28

Artificial Intelligence-Based Mathematical Modeling: Recent Advances, Challenges and Future Directions

Mohammad Sayeed, Umesh Chandra Gupta, Nitin Bharti

Abstract: Artificial Intelligence (AI) is becoming an important tool for improving mathematical modeling and solving complex real-world problems. Traditional mathematical models have been widely used in science and engineering, but they often require more time, high computat…

View free PDFSource page
zenodoJournal article2026-07-27

Hybrid Ensemble Learning for Real-Time Intrusion Detection in Critical Infrastructure Environments.

Nonye Peter Awurum

Abstract: The increasing digitization of critical infrastructure environments has significantly enhanced operational efficiency while simultaneously exposing industrial systems to sophisticated cyber threats. Critical sectors such as oil and gas, energy, transportation, and manuf…

View free PDFSource page
zenodoJournal article2026-07-27

Performance Evaluation of Machine Learning and Deep Learning Models for Real-Time Cyberattack Detection in Oil and Gas Networks

Nonye Peter Awurum

Abstract: The rapid digital transformation of the oil and gas industry has significantly improved operational efficiency through the integration of Information Technology (IT) and Operational Technology (OT) systems. However, this increased connectivity has also expanded the cybe…

View free PDFSource page
zenodoJournal article2026-07-27

An AI-Powered Cybersecurity Framework for Real-Time Threat Detection and Resilience in Oil and Gas Critical Infrastructure

Nonye Peter Awurum

Abstract: The rapid digital transformation of the oil and gas industry has accelerated the convergence of Information Technology (IT) and Operational Technology (OT), enabling enhanced operational efficiency, predictive maintenance, and remote asset management. While these techno…

View free PDFSource page
zenodoJournal article2026-07-28

Enhancing Depression Detection Accuracy in Northwest Nigerian Adults Using Ensemble Learning Technique

Shuaibu Samaila Mohammed Ali Kawo

Abstract — Millions of individuals all over the world suffer from depression, a serious and common mental illness. In Northwest Nigeria, depression is still not well recognized because of stigma, the use of multiple languages, including English, Hausa, and Fulfulde, and a l…

View free PDFSource page
zenodoJournal article2025-10-17

EXPLORING DUAL-PROCESS ARCHITECTURES IN MODERN AI SYSTEMS: A REVIEW OF BICAMERAL MIND THEORY APPLICATIONS

Mukhitdinova Munavvarkhon Hayot kizi

This paper examines the emerging application of Julian Jaynes’ bicameral mind theory to modern artificial intelligence systems, particularly in reinforcement learning (RL) and large language models (LLMs). The dual-process structure proposed by Jaynes—c…

View free PDFSource page