Abstract
Power substations are the crucial nodes of an interconnected grid, serving as the points where power is transferred from the transmission/distribution grids to the loads. However, interconnected cyberphysical systems and communication-based operations at substations lead to many cybersecurity vulnerabilities. Therefore, more sophisticated cybersecurity vulnerability analyses and threat modeling are required during productization phases, and system hardening is mandatory for the commercialization of products. This paper shows the design and methods to test the cybersecurity of multicast messages for digital substations. The proposed vulnerability assessment methods are based on the semantics of IEC61850 Generic Object Oriented Substation Event (GOOSE) and Sampled Value (SV), and cybersecurity features from IEC62351-6. Different case scenarios for cyberattacks are considered to check the vulnerabilities of the device under test (DUT) based on the IEC62351-6 standard. In order to discover security vulnerabilities in a digital substation, the proposed cybersecurity tester will generate malicious packets that compromise the regular functionality. The results show that the proposed cybersecurity testing module is able to detect potential vulnerabilities in multicast messages and the authentication methods (e.g., message authentication code) of multicast communications. Both commercial and simulated devices are used for the case studies.
Subject
Energy (miscellaneous),Energy Engineering and Power Technology,Renewable Energy, Sustainability and the Environment,Electrical and Electronic Engineering,Control and Optimization,Engineering (miscellaneous),Building and Construction
Reference32 articles.
1. Cyber attack resilient distance protection and circuit breaker control for digital substations;Hong;IEEE Trans. Ind. Inform.,2019
2. DRAGOS (2017). CRASHOVERRIDE: Analyzing the Threat to Electric Grid Operations, Dragos Company. Available online: https://www.dragos.com/wp-content/uploads/CrashOverride-01.pdf.
3. ICS-CERT Alert (IR-ALERT-H-16-056-01) (2022, April 10). Cyber-Attack against Ukrainian Critical Infrastructure, Available online: https://www.cisa.gov/uscert/ics/alerts/IR-ALERT-H-16-056-01.
4. Real-Time Federated Cyber-Transmission-Distribution Testbed Architecture for the Resiliency Analysis;Venkataramanan;IEEE Trans. Ind. Appl.,2020
5. (2013). Standard No. IEC61850-1. Available online: https://webstore.iec.ch/publication/6007.
Cited by
5 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献