CYBER RESILIENCE ANALYSIS OF SCADA SYSTEMS IN NUCLEAR POWER PLANTS

被引:0
|
作者
Galiardi, Meghan [1 ]
Gonzales, Amanda [1 ]
Thorpe, Jamie [1 ]
Vugrin, Eric [1 ]
Fasano, Raymond [1 ]
Lamb, Christopher [1 ]
机构
[1] Sandia Natl Labs, 1515 Eubank SE, Albuquerque, NM 87185 USA
关键词
PRESSURIZER;
D O I
暂无
中图分类号
TL [原子能技术]; O571 [原子核物理学];
学科分类号
0827 ; 082701 ;
摘要
Aging plants, efficiency goals, and safety needs are driving increased digitalization in nuclear power plants (NPP). Security has always been a key design consideration for NPP architectures, but increased digitalization and the emergence of malware such as Stuxnet, CRASHOVERRIDE, and TRITON that specifically target industrial control systems have heightened concerns about the susceptibility of NPPs to cyber attacks. The cyber security community has come to realize the impossibility of guaranteeing the security of these plants with 100% certainty, so demand for including resilience in NPP architectures is increasing. Whereas cyber security design features often focus on preventing access by cyber threats and ensuring confidentiality, integrity, and availability (CIA) of control systems, cyber resilience design features complement security features by limiting damage, enabling continued operations, and facilitating a rapid recovery from the attack in the event control systems are compromised. This paper introduces the REsilience VeRification UNit (RevRun) toolset, a software platform that was prototyped to support cyber resilience analysis of NPP architectures. Researchers at Sandia National Laboratories have recently developed models of NPP control and SCADA systems using the SCEPTRE platform. SCEPTRE integrates simulation, virtual hardware, software, and actual hardware to model the operation of cyber-physical systems. RevRun can be used to extract data from SCEPTRE experiments and to process that data to produce quantitative resilience metrics of the NPP architecture modeled in SCEPTRE. This paper details how RevRun calculates these metrics in a customizable, repeatable, and automated fashion that limits the burden placed upon the analyst. This paper describes RevRun's application and use in the context of a hypothetical attack on an NPP control system. The use case specifies the control system and a series of attacks and explores the resilience of the system to the attacks. The use case further shows how to configure RevRun to run experiments, how resilience metrics are calculated, and how the resilience metrics and RevRun tool can be used to conduct the related resilience analysis.
引用
收藏
页数:9
相关论文
共 50 条
  • [1] Operator Resilience to Cyber Interdictions in Nuclear Power Plants
    Boring, Ronald L.
    Ulrich, Thomas A.
    Medema, Heather M.
    Lew, Roger
    2019 RESILIENCE WEEK (RWS), 2019, : 247 - 251
  • [2] Cyber Security of SCADA Network in Thermal Power Plants
    Lakhoua, Mohamed Najeh
    2018 INTERNATIONAL CONFERENCE ON SMART APPLICATIONS, COMMUNICATIONS AND NETWORKING (SMARTNETS), 2018,
  • [3] Cyber Threat Scenarios for Electrical Systems of Nuclear Power Plants
    Gupta, Deeksha
    Bajramovic, Edith
    Parekh, Mithil
    Waedt, Karl
    PROCEEDINGS OF THE 26TH INTERNATIONAL CONFERENCE ON NUCLEAR ENGINEERING, 2018, VOL 9, 2018,
  • [4] Analysis on Cyber Threats to SCADA systems
    Kang, Dong-Joo
    Lee, Jong-Joo
    Kim, Seog-Joo
    Park, Jong-Hyuk
    T& D ASIA: 2009 TRANSMISSION & DISTRIBUTION CONFERENCE & EXPOSITION: ASIA AND PACIFIC, 2009, : 14 - +
  • [5] RESILIENCE OF MASONRY SYSTEMS IN NUCLEAR POWER PLANTS UNDER BLAST RISK
    Campidelli, Manuel
    EI-Dakhakhni, Wael W.
    Tait, Michael J.
    Mekky, Waleed
    PROCEEDINGS OF THE ASME PRESSURE VESSELS AND PIPING CONFERENCE, 2017, VOL 4, 2017,
  • [6] Cyber Resilience of SCADA at the Level of Energy Facilities
    Kolosok, Irina N.
    Korkina, Elena S.
    PROCEEDINGS OF THE VTH INTERNATIONAL WORKSHOP CRITICAL INFRASTRUCTURES: CONTINGENCY MANAGEMENT, INTELLIGENT, AGENT-BASED, CLOUD COMPUTING AND CYBER SECURITY (IWCI 2018), 2018, 158 : 100 - 105
  • [7] DETECTING CYBER ATTACKS ON NUCLEAR POWER PLANTS
    Rrushi, Julian
    Campbell, Roy
    CRITICAL INFRASTRUCTURE PROTECTION II, 2008, 290 : 41 - +
  • [8] Cyber Norms for Civilian Nuclear Power Plants
    Spirito, Christopher M.
    2016 IEEE INTERNATIONAL CONFERENCE ON CYBER CONFLICT (CYCON U.S.), 2016, : 140 - 145
  • [9] Cyber Wargaming on SCADA Systems
    Colbert, Edward
    Sullivan, Daniel
    Kott, Alexander
    PROCEEDINGS OF THE 12TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2017), 2017, : 96 - 104
  • [10] Reliability Analysis of Power Grids with Cyber Vulnerability in SCADA System
    Zhang, Yichi
    Xiang, Yingmeng
    Wang, Lingfeng
    2014 IEEE PES GENERAL MEETING - CONFERENCE & EXPOSITION, 2014,