Cyber risk assessment of power control systems — A metrics weighed by attack experiments

San Diego, CA(2011)

引用 31|浏览14
暂无评分
摘要
The paper summarises the results of research activities, both methodological and experimental, performed by RSE to evaluate the exposition to cyber risks of the power grid control systems. On the methodological side a risk metric has been defined assigning a value to the cyber/power risk in relation to the occurrence rate of cyber contingencies and their impact on the power service. The higher criticality threats have been experimented in the RSE Laboratory by simulating selected attack processes on telecontrol test beds of passive interconnected HV/MV distribution grids. The experiments concern cyber threats to ICT network components, such as routers and SCADA systems, having a critical role in power grid operation. The experiments assessed the residual vulnerabilities of protected IEC 60870-5-104 TCP/IP based communications between Control Centres and Substation Automation Systems in presence of attack processes assuming different degrees of knowledge about the attacked system's behaviour. The evaluation framework supporting the experimental activity allows monitoring the communication status through a set of measurements such as Inter Message Time, Number of Lost Messages, Inter Reconnection Time and Time To Failure. The knowledge and measures from controlled experiments are then exploited by the cyber-risk metrics to improve the estimation of the vulnerability and threat probabilities related to the successfulness of a given attack.
更多
查看译文
关键词
power system control,power system protection,substation protection,ict network components,attack experiments,cyber risk assessment,cyber risks,cyber threats,inter reconnection time,number of lost messages,passive interconnected hv/mv distribution grids,power control systems,power grid control systems,power grid operation,substation automation systems,telecontrol test beds,time to failure,computer-based attacks,information and communication security,power emergency management,power grid control,resilience testing,scada systems,substation automation,test beds,power system,power systems,power control,malware,process control,test bed,scada system,emergency management,control system,risk assessment,secure computation
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要