Deep Reinforcement Learning for Penetration Testing of Cyber-Physical Attacks in the Smart Grid

被引:0
|
作者
Li, Yuanliang [1 ,2 ]
Yan, Jun [1 ]
Naili, Mohamed [2 ]
机构
[1] Concordia Univ, Concordia Inst Informat Syst Engn CIISE, Montreal, PQ, Canada
[2] Ericsson, Global Artificial Intelligence Accelerator GAIA, Montreal, PQ, Canada
基金
加拿大自然科学与工程研究理事会;
关键词
Cyber-physical security; penetration testing; smart grid; deep reinforcement learning;
D O I
10.1109/IJCNN55064.2022.9892584
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The fast expansion of interconnectivity in cyberphysical critical infrastructures like smart grids has given rise to concerning exposures and vulnerabilities. Although penetration testing (PT) has been an effective approach to searching for vulnerabilities in software, devices, and networks from the attacker's view, the strong cyber-physical coupling in these large-scale infrastructures has made it challenging to manually pinpoint critical vulnerabilities, particularly at system levels due to the complexity, dimensionality, and uncertainty therein. To better protect the security of cyber-physical systems, this paper proposes a deep reinforcement learning (DRL)-based PT framework to efficiently and adaptively identify critical vulnerabilities in smart grids. Using replay attacks as an example, the paper models the attack as a Markov Decision Process with three actions - stop, record, and replay - to learn the optimal timing and ordering of replays in different operating scenarios. A cyber-physical cosimulation platform with dedicated simulators for the physical part, cyber part, control part, and attacker part of a smart distribution grid was developed as a sandbox environment to train the DRL agent. Scenarios with different levels of difficulty are tested to validate the learning capability and performance in finding critical attack paths of the DRL-based PT. The simulation results show that DRL-based PT can learn to find the optimal attack path against system stability when the grid is under high load demand, solar power generation, and weather variation. These results are promising first steps toward a highly customizable framework to pen-test complex cyber-physical systems with automatic DRL agents and various attack schemes.
引用
收藏
页数:9
相关论文
共 50 条
  • [31] Security Protection and Testing System for Cyber-Physical Based Smart Power Grid
    Zheng, Luolin
    Gao, Tiefeng
    Zhang, Xiaofei
    PROCEEDINGS OF 2019 INTERNATIONAL FORUM ON SMART GRID PROTECTION AND CONTROL (PURPLE MOUNTAIN FORUM), VOL I, 2020, 584 : 847 - 857
  • [32] Stealthy False Data Injection Attacks Detection and Classification in Cyber-Physical Systems Using Deep Reinforcement Learning
    Xin, Liang
    He, Guang
    Long, Zhiqiang
    IEEE TRANSACTIONS ON AUTOMATION SCIENCE AND ENGINEERING, 2025, 22 : 141 - 153
  • [33] Coordinated Topology Attacks in Smart Grid Using Deep Reinforcement Learning
    Wang, Zhenhua
    He, Haibo
    Wan, Zhiqiang
    Sun, Yan
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2021, 17 (02) : 1407 - 1415
  • [34] Falsification of Cyber-Physical Systems with Reinforcement Learning
    Kato, Koki
    Ishikawa, Fuyuki
    Honiden, Shinichi
    2018 IEEE 3RD WORKSHOP ON MONITORING AND TESTING OF CYBER-PHYSICAL SYSTEMS (MT-CPS 2018), 2018, : 5 - 6
  • [35] Decoy-based Moving Target defense Against Cyber-physical Attacks On Smart Grid
    Abdelwahab, Ahmed
    Lucia, Walter
    Youssef, Amr
    2020 IEEE ELECTRIC POWER AND ENERGY CONFERENCE (EPEC), 2020,
  • [36] Review of Cyber-Physical Attacks and Counter Defense Mechanisms for Advanced Metering Infrastructure in Smart Grid
    Wei, Longfei
    Rondon, Luis Puche
    Moghadasi, Amir
    Sarwat, Arif, I
    2018 IEEE/PES TRANSMISSION AND DISTRIBUTION CONFERENCE AND EXPOSITION (T&D), 2018,
  • [37] Cyber-Physical Security and Privacy in the Electric Smart Grid
    1600, Morgan and Claypool Publishers (09):
  • [38] Smart Grid Cyber-Physical Attack and Defense: A Review
    Zhang, Hang
    Liu, Bo
    Wu, Hongyu
    IEEE ACCESS, 2021, 9 : 29641 - 29659
  • [39] Guest Editorial Smart Grid Cyber-Physical Security
    Zhang, Yan
    Yau, David
    Zonouz, Saman
    Jin, Dong
    Qiu, Meikang
    Erol-Kantarci, Melike
    IEEE TRANSACTIONS ON SMART GRID, 2017, 8 (05) : 2409 - 2410
  • [40] A Survey on Smart Grid Cyber-Physical System Testbeds
    Cintuglu, Mehmet Hazar
    Mohammed, Osama A.
    Akkaya, Kemal
    Uluagac, A. Selcuk
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2017, 19 (01): : 446 - 464