Real-Time Detection of Hybrid and Stealthy Cyber-Attacks in Smart Grid
نویسندگان
چکیده
For a safe and reliable operation of the smart grid, timely detection of cyber-attacks is of critical importance. Moreover, considering smarter and more capable attackers, robust detection mechanisms are needed against a diverse range of cyber-attacks. With these purposes, we propose a robust online detection algorithm for (possibly combined) false data injection (FDI) and jamming attacks, that also provides online estimates of the unknown and time-varying attack parameters and recovered state estimates. Further, considering smarter attackers that are capable of designing stealthy attacks to prevent the detection or to increase the detection delay of the proposed algorithm, we propose additional countermeasures. Numerical studies illustrate the quick and reliable response of the proposed detection mechanisms against hybrid and stealthy cyber-attacks. Index Terms Smart grid, Kalman filter, quickest detection, CUSUM, online estimation, state recovery, false data injection attack, jamming attack, hybrid attack, stealthy attack, Shewhart test, chi-squared test.
منابع مشابه
Catching Anomalous Distributed Photovoltaics: An Edge-based Multi-modal Anomaly Detection
A significant challenge in energy system cyber security is the current inability to detect cyber-physical attacks targeting and originating from distributed grid-edge devices such as photovoltaics (PV) panels, smart flexible loads, and electric vehicles. Cyber grid defenders lack the necessary algorithms and other detection capabilities to distinguish between normal operations, cyber-attacks, a...
متن کاملGraph-Theoretic Framework for Unified Analysis of Observability and Data Injection Attacks in the Smart Grid
State estimation is a fundamental process needed for the effective operation of the smart grid. As such, cyber-physical attacks such as denial-of-service and data injection attacks, which often target the availability and the integrity of the collected state estimation measurements, can have detrimental consequences on the operation of the system. In this paper, a novel graph-theoretic framewor...
متن کاملCyber Security of Smart Grid Systems Using Intrusion Detection Methods
The wide area monitoring of power systems is implemented at a central control center to coordinate the actions of local controllers. Phasor measurement units (PMUs) are used for the collection of data in real time for the smart grid energy systems. Intrusion detection and cyber security of network are important requirements for maintaining the integrity of wide area monitoring systems. The intr...
متن کاملThreat Analysis of BlackEnergy Malware for Synchrophasor based Real-time Control and Monitoring in Smart Grid
The BlackEnergy malware targeting critical infrastructures has a long history. It evolved over time from a simple DDoS platform to a quite sophisticated plug-in based malware. The plug-in architecture has a persistent malware core with easily installable attack specific modules for DDoS, spamming, info-stealing, remote access, boot-sector formatting etc. BlackEnergy has been involved in several...
متن کاملDistributed host-based collaborative detection for false data injection attacks in smart grid cyber-physical system
False data injection (FDI) attacks are a crucial security threat to smart grid cyber-physical system (CPS), and could result in cataclysmic consequences to the entire power system. However, due to the high dependence on open information networking, countering FDI attacks is challenging in smart grid CPS. Most existing solutions are based on state estimation (SE) at the highly centralized contro...
متن کامل