A Novel Network Modeling and Evaluation Approach for Security Vulnerability Quantification in Substation Automation Systems
نویسندگان
چکیده
With the proliferation of smart grids and the construction of various electric IT systems and networks, a next-generation substation automation system (SAS) based on IEC 61850 has been agreed upon as a core element of smart grids. However, research on security vulnerability analysis and quantification for automated substations is still in the preliminary phase. In particular, it is not suitable to apply existing security vulnerability quantification approaches to IEC 61850-based SAS because of its heterogeneous characteristics. In this paper, we propose an IEC 61850based SAS network modeling and evaluation approach for security vulnerability quantification. The proposed approach uses network-level and device groupings to categorize the characteristic of the SAS. In addition, novel attack scenarios are proposed through a zoning scheme to evaluate the network model. Finally, an MTTC (Mean Time-to-Compromise) scheme is used to verify the proposed network model using a sample attack scenario. key words: IEC 61850, substation automation system, security vulnerability quantification, smart grid, IEC 62351, CVSS, MTTC
منابع مشابه
تولید خودکار الگوهای نفوذ جدید با استفاده از طبقهبندهای تک کلاسی و روشهای یادگیری استقرایی
In this paper, we propose an approach for automatic generation of novel intrusion signatures. This approach can be used in the signature-based Network Intrusion Detection Systems (NIDSs) and for the automation of the process of intrusion detection in these systems. In the proposed approach, first, by using several one-class classifiers, the profile of the normal network traffic is established. ...
متن کاملComparative Reliability Analysis of Substation Automation Architecture Based on IEC 61850 Standard
Using IEC 61850 standard would increase the reliability and availability of electricity network and put a huge impact on network automation. Even though much research works has been done in substation system reliability, there is a few works in automated substation control system reliability. This paper evaluates the reliability of substation automation system based IEC 61850 comparatively cons...
متن کاملFormal approach on modeling and predicting of software system security: Stochastic petri net
To evaluate and predict component-based software security, a two-dimensional model of software security is proposed by Stochastic Petri Net in this paper. In this approach, the software security is modeled by graphical presentation ability of Petri nets, and the quantitative prediction is provided by the evaluation capability of Stochastic Petri Net and the computing power of Markov chain. Each...
متن کاملAVQS: Attack Route-Based Vulnerability Quantification Scheme for Smart Grid
A smart grid is a large, consolidated electrical grid system that includes heterogeneous networks and systems. Based on the data, a smart grid system has a potential security threat in its network connectivity. To solve this problem, we develop and apply a novel scheme to measure the vulnerability in a smart grid domain. Vulnerability quantification can be the first step in security analysis be...
متن کاملTechniques for Securing Substation Automation Systems
Most critical infrastructure systems can be modeled as cyber-physical systems whose cyber components control the underlying physical components so as to optimize specified system objectives based on physical properties, physical constraints, and the current and estimated state of the system. Such systems usually require supports for security and performance guarantees: wrongly received or misse...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
- IEICE Transactions
دوره 96-D شماره
صفحات -
تاریخ انتشار 2013