The Digital Forensics of Cyber-Attacks at Electrical Power Grid Substation

被引:3
|
作者
Parssinen, Juha [1 ]
Raussi, Petra [1 ]
Noponen, Sami [2 ]
Opas, Mikael [1 ]
Salonen, Jarno [3 ]
机构
[1] VTT Tech Res Ctr Finland, Espoo, Finland
[2] VTT Tech Res Ctr Finland, Oulu, Finland
[3] VTT Tech Res Ctr Finland, Tampere, Finland
基金
欧盟地平线“2020”;
关键词
digital forensics; power grid; cyber-attack; substation; hardware-in-the-loop; critical infrastructure protection;
D O I
10.1109/ISDFS55398.2022.9800831
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Our research presented in this article comprises of network based cyber-attacks in a laboratory setup consisting of a power grid substation implemented as a hardware-in-theloop simulation with hardware (Intelligent Electronic Devices a.k.a. IEDs), and the analysis on how these cyber-attacks can be detected using network forensics. The investigated cyber-attacks exploit the IEC 61850 MMS and GOOSE protocols, and one of the attacks has been already implemented in an existing malware. Additionally we organized a cybersecurity themed workshop for energy sector companies in Finland. The workshop participants were given a task to search for the aforementioned cyber-attacks from network traffic captures. The key finding from the workshop is that for the domain expert it is crucial to know different kind of cyber-attack scenarios in order to detect and mitigate them in a timely manner.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Fronesis: Digital Forensics-Based Early Detection of Ongoing Cyber-Attacks
    Dimitriadis, Athanasios
    Lontzetidis, Efstratios
    Kulvatunyou, Boonserm
    Ivezic, Nenad
    Gritzalis, Dimitris
    Mavridis, Ioannis
    [J]. IEEE ACCESS, 2023, 11 : 728 - 743
  • [2] Integrated Simulation to Analyze the Impact of Cyber-Attacks on the Power Grid
    Liu, R.
    Srivastava, A. .
    [J]. 2015 WORKSHOP ON MODELING AND SIMULATION OF CYBER-PHYSICAL ENERGY SYSTEMS (MSCPES), 2015,
  • [3] Detection of power grid disturbances and cyber-attacks based on machine learning
    Wang, Defu
    Wang, Xiaojuan
    Zhang, Yong
    Jin, Lei
    [J]. JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2019, 46 : 42 - 52
  • [4] Cyber-Attacks on Smart Grid System: A Review
    Gajanan, Linge Sagar
    Kirar, Mukesh
    Raju, More
    [J]. 2022 IEEE 10TH POWER INDIA INTERNATIONAL CONFERENCE, PIICON, 2022,
  • [5] Analysis of cyber-attacks on smart grid applications
    Gunduz, M. Zekeriya
    Das, Resul
    [J]. 2018 INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE AND DATA PROCESSING (IDAP), 2018,
  • [6] Detection and Mitigation of Cyber-Attacks on AGC Systems of Low Inertia Power Grid
    Roy, Siddhartha Deb
    Debbarma, Sanjoy
    [J]. IEEE SYSTEMS JOURNAL, 2020, 14 (02): : 2023 - 2031
  • [7] Distributed Quickest Detection of Cyber-Attacks in Smart Grid
    Kurt, Mehmet Necip
    Yilmaz, Yasin
    Wang, Xiaodong
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (08) : 2015 - 2030
  • [8] Futuristic cyber-attacks
    Chakkaravarthy, S. Sibi
    Sangeetha, D.
    Rathnam, M. Venkata
    Srinithi, K.
    Vaidehi, V.
    [J]. INTERNATIONAL JOURNAL OF KNOWLEDGE-BASED AND INTELLIGENT ENGINEERING SYSTEMS, 2018, 22 (03) : 195 - 204
  • [9] Transient Stability Enhancement of Power Grid by Neural Network Controlled BFCL Considering Cyber-Attacks
    Sadi, Mohammad Ashraf Hossain
    Zheng, Huaxi
    Ali, Mohd. Hasan
    [J]. SOUTHEASTCON 2017, 2017,
  • [10] Analysis of Joint Cyber-Attacks Strategy in Micro-Grid System
    Shao, Cheng-Wu
    Li, Yan-Fu
    [J]. 2019 PROGNOSTICS AND SYSTEM HEALTH MANAGEMENT CONFERENCE (PHM-QINGDAO), 2019,