DOE PAGES title logo U.S. Department of Energy
Office of Scientific and Technical Information

Title: Analysing a multi‐stage cyber threat and its impact on the power system

Journal Article · · IET Cyber-Physical Systems: Theory & Applications
DOI: https://doi.org/10.1049/cps2.12107 · OSTI ID:2506903

Abstract Electric power systems are composed of physical and cyber sub‐systems. The sub‐systems depend on each other. If the cyber sub‐system is compromised by a cyber threat, what is the impact on the physical system? This paper presents a case study that shows the steps of a multi‐stage cyber threat involving a database injection attack, and what happens to the power system if this threat is not detected in its early stages. The threat first affects one utility but it can spread to the balancing authority, which is responsible for keeping the voltage and frequency stable in the power grid. During the cyber threat, the authors also show defence tools, such as a cyber‐physical data fusion tool that displays and analyses power and cyber telemetry.

Sponsoring Organization:
USDOE
Grant/Contract Number:
CR0000018; OE0000895
OSTI ID:
2506903
Journal Information:
IET Cyber-Physical Systems: Theory & Applications, Journal Name: IET Cyber-Physical Systems: Theory & Applications Journal Issue: 1 Vol. 10; ISSN 2398-3396
Publisher:
Institution of Engineering and Technology (IET)Copyright Statement
Country of Publication:
United Kingdom
Language:
English

References (21)

Cyber-security on smart grid: Threats and potential solutions journal March 2020
A framework for the resilience analysis of electric infrastructure systems including temporary generation systems journal October 2020
Design and evaluation of a cyber‐physical testbed for improving attack resilience of power systems journal June 2021
Resilience enhancement strategy for cyber–physical distribution systems that considers cross‐space propagation of information risk journal June 2023
Mitigation of frequency disturbance in power systems during cyber-attack conference December 2016
Quantitative Risk Assessment of Cyber Attacks on Cyber-Physical Systems using Attack Graphs conference May 2022
Data integrity attacks and their impacts on SCADA control system conference July 2010
Comparative Study on Smart Grid Security Testbeds Using MITRE ATT&CK Matrix conference October 2023
The Design and Implementation of a Cyber Exercise on EPIC Microgrid Testbed conference October 2023
Cyber Forensic Analysis for Operational Technology Using Graph-Based Deep Learning conference October 2023
On Grid Resiliency: Cyber-Physical Detection Tool Evaluated in a Multi-Stage Attack Scenario conference October 2023
Multi-Source Multi-Domain Data Fusion for Cyberattack Detection in Power Systems journal January 2021
Cyber Attacks on Power Grids: Causes and Propagation of Cascading Failures journal January 2023
Digital Twins Serving Cybersecurity: More Than a Model: Cybersecurity as a Future Benefit of Digital Twins 2 journal January 2024
Design of Next-Generation Cyber-Physical Energy Management Systems: Monitoring to Mitigation journal January 2023
Model-Based Attack Detection and Mitigation for Automatic Generation Control journal March 2014
Attack Graph Model for Cyber-Physical Power Systems Using Hybrid Deep Learning journal September 2023
Research on SQL Injection Attack and Defense Technology of Power Dispatching Data Network: Based on Data Mining journal July 2022
Dynamic Risk Assessment in Cybersecurity: A Systematic Literature Review journal September 2023
Cyberattacks in Smart Grids: Challenges and Solving the Multi-Criteria Decision-Making for Cybersecurity Options, Including Ones That Incorporate Artificial Intelligence, Using an Analytical Hierarchy Process journal September 2023
SCADA-Based Message Generator for Multi-Vendor Smart Grids: Distributed Integration and Verification of TASE.2 journal October 2021