A Novel Network Modeling and Evaluation Approach for Security Vulnerability Quantification in Substation Automation Systems

被引:4
|
作者
Ko, Jongbin [1 ]
Lee, Seokjun [1 ]
Lim, Yong-hun [2 ]
Ju, Seong-ho [2 ]
Shon, Taeshik [1 ]
机构
[1] Ajou Univ, Div Comp Engn, Suwon 441749, South Korea
[2] Korea Elect Power Corp, Res Inst, Taejon 305380, South Korea
来源
关键词
IEC; 61850; substation automation system; security vulnerability quantification; smart grid; 62351; CVSS; MTTC;
D O I
10.1587/transinf.E96.D.2021
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the proliferation of smart grids and the construction of various electric IT systems and networks, a next-generation substation automation system (SAS) based on IEC 61850 has been agreed upon as a core element of smart grids. However, research on security vulnerability analysis and quantification for automated substations is still in the preliminary phase. In particular, it is not suitable to apply existing security vulnerability quantification approaches to IEC 61850-based SAS because of its heterogeneous characteristics. In this paper, we propose an EEC 61850-based SAS network modeling and evaluation approach for security vulnerability quantification. The proposed approach uses network-level and device groupings to categorize the characteristic of the SAS. In addition, novel attack scenarios are proposed through a zoning scheme to evaluate the network model. Finally, an MTTC (Mean Time-to-Compromise) scheme is used to verify the proposed network model using a sample attack scenario.
引用
收藏
页码:2021 / 2025
页数:5
相关论文
共 50 条
  • [21] A threat modeling language for generating attack graphs of substation automation systems
    Ling, Engla Rencelj
    Ekstedt, Mathias
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2023, 41
  • [22] Network Security Architecture Based on Vulnerability Evaluation
    Li, June
    Wang, Tongqing
    Zhou, Dongru
    ITESS: 2008 PROCEEDINGS OF INFORMATION TECHNOLOGY AND ENVIRONMENTAL SYSTEM SCIENCES, PT 1, 2008, : 104 - 109
  • [23] An approach for modeling vulnerability of the network of networks
    Zhang, Jianhua
    Song, Bo
    Zhang, Zhaojun
    Liu, Haikuan
    PHYSICA A-STATISTICAL MECHANICS AND ITS APPLICATIONS, 2014, 412 : 127 - 136
  • [24] Design and Maintenance Optimisation of Substation Automation Systems: A Multiobjectivisation Approach Exploration
    Cacereno, Andres
    Greiner, David
    Zuniga, Andres
    Galvan, Blas J.
    JOURNAL OF ENGINEERING, 2024, 2024
  • [25] Security by envelopment - a novel approach to data-security-oriented configuration of lightweight-automation systems
    Asatiani, Aleksandre
    Hakkarainen, Tuuli
    Paaso, Kimmo
    Penttinen, Esko
    EUROPEAN JOURNAL OF INFORMATION SYSTEMS, 2024, 33 (05) : 631 - 653
  • [26] An Innovative Network Security Vulnerability Modeling Method and Tool
    Qiu, Xiangqun
    Paterson, Rob
    IEEE COMMUNICATIONS MAGAZINE, 2010, 48 (01) : 104 - 108
  • [27] Security and Vulnerability of Extreme Automation Systems: The IoMT and IoA Case Studies
    Fiaidhi, Jinan
    Mohammed, Sabah
    IT PROFESSIONAL, 2019, 21 (04) : 48 - 55
  • [28] Modeling and quantification of security attributes of software systems
    Madan, BB
    Goseva-Popstojanova, K
    Vaidyanathan, K
    Trivedi, KS
    INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, PROCEEDINGS, 2002, : 505 - 514
  • [29] Modernizing Substation Automation Systems ADOPTING IEC STANDARD 61850 FOR MODELING AND COMMUNICATION
    Cheng, Xueyang
    Lee, Wei-Jen
    Pan, Xianghua
    IEEE INDUSTRY APPLICATIONS MAGAZINE, 2017, 23 (01) : 42 - 49
  • [30] Network Design Options for Substation Automation in Wide Area Monitored Power Systems
    Thyagarajan, Prakash
    Senthilkumar, V
    2018 INTERNATIONAL CONFERENCE ON RECENT INNOVATIONS IN ELECTRICAL, ELECTRONICS & COMMUNICATION ENGINEERING (ICRIEECE 2018), 2018, : 1076 - 1082