共 40 条
Dynamic cross-layer security risk assessment and mitigation for cyber-physical power systems
被引:0
作者:

Yao, Pengchao
论文数: 0 引用数: 0
h-index: 0
机构:
Zhejiang Univ, Coll Control Sci & Engn, Hangzhou 310027, Peoples R China Zhejiang Univ, Coll Control Sci & Engn, Hangzhou 310027, Peoples R China

Yang, Qiang
论文数: 0 引用数: 0
h-index: 0
机构:
Zhejiang Univ, Coll Elect Engn, Hangzhou 310027, Peoples R China Zhejiang Univ, Coll Control Sci & Engn, Hangzhou 310027, Peoples R China

Wang, Wenhai
论文数: 0 引用数: 0
h-index: 0
机构:
Zhejiang Univ, Coll Control Sci & Engn, Hangzhou 310027, Peoples R China Zhejiang Univ, Coll Control Sci & Engn, Hangzhou 310027, Peoples R China
机构:
[1] Zhejiang Univ, Coll Control Sci & Engn, Hangzhou 310027, Peoples R China
[2] Zhejiang Univ, Coll Elect Engn, Hangzhou 310027, Peoples R China
关键词:
Cyber-physical power system (CPPS);
Cyber-attack;
Risk management;
Decision-making;
Bayesian network;
CYBERATTACKS;
IMPACT;
D O I:
10.1016/j.ress.2025.111027
中图分类号:
T [工业技术];
学科分类号:
08 ;
摘要:
Cyber-attacks targeting cyber-physical power systems (CPPSs) are increasingly recognized as complex and persistent cyber-to-physical (C2P) security threats, which introduce substantial cross-layer risks to critical power infrastructures. However, existing security frameworks fail to provide a comprehensive approach for risk assessment and mitigation against these ongoing and stealthy cross-layer attacks in CPPSs. This paper presents a cross-layer security risk management method that enables dynamic evaluation of cyber-physical security risks and the formulation of optimal defense strategies to reduce those risks. Specifically, an Extended Hierarchical Bayesian Attack Graph (EHBAG) is introduced to model the C2P attack risk propagation, which can infer the probability of physical-space incidents occurring based on detected attack nodes in the cyber layer. Observation nodes are incorporated into the EHBAG to represent uncertainty in the detected evidence. An attack surface generation algorithm is used to identify the most dangerous set of detected attack nodes within the EHBAG that require immediate attention. Then, a multi-objective security decision-making approach is presented to derive the optimal strategy for defending the highest-value nodes within the attack surface, aiming to reduce the cyberphysical security risks of the system. The proposed approach is implemented and evaluated using a real-world CPPS testbed and the numerical results confirmed its feasibility and effectiveness for risk assessment and mitigation.
引用
收藏
页数:13
相关论文
共 40 条
[1]
Hybrid ontology for safety, security, and dependability risk assessments and Security Threat Analysis (STA) method for industrial control systems
[J].
Alanen, Jarmo
;
Linnosmaa, Joonas
;
Malm, Timo
;
Papakonstantinou, Nikolaos
;
Ahonen, Toni
;
Heikkila, Eetu
;
Tiusanen, Risto
.
RELIABILITY ENGINEERING & SYSTEM SAFETY,
2022, 220

Alanen, Jarmo
论文数: 0 引用数: 0
h-index: 0
机构:
VTT Tech Res Ctr Finland Ltd, Oulu, Finland VTT Tech Res Ctr Finland Ltd, Oulu, Finland

Linnosmaa, Joonas
论文数: 0 引用数: 0
h-index: 0
机构:
VTT Tech Res Ctr Finland Ltd, Oulu, Finland VTT Tech Res Ctr Finland Ltd, Oulu, Finland

Malm, Timo
论文数: 0 引用数: 0
h-index: 0
机构:
VTT Tech Res Ctr Finland Ltd, Oulu, Finland VTT Tech Res Ctr Finland Ltd, Oulu, Finland

Papakonstantinou, Nikolaos
论文数: 0 引用数: 0
h-index: 0
机构:
VTT Tech Res Ctr Finland Ltd, Oulu, Finland VTT Tech Res Ctr Finland Ltd, Oulu, Finland

Ahonen, Toni
论文数: 0 引用数: 0
h-index: 0
机构:
VTT Tech Res Ctr Finland Ltd, Oulu, Finland VTT Tech Res Ctr Finland Ltd, Oulu, Finland

Heikkila, Eetu
论文数: 0 引用数: 0
h-index: 0
机构:
VTT Tech Res Ctr Finland Ltd, Oulu, Finland VTT Tech Res Ctr Finland Ltd, Oulu, Finland

Tiusanen, Risto
论文数: 0 引用数: 0
h-index: 0
机构:
VTT Tech Res Ctr Finland Ltd, Oulu, Finland VTT Tech Res Ctr Finland Ltd, Oulu, Finland
[2]
Cyber-Physical Attack-Resilient Wide-Area Monitoring, Protection, and Control for the Power Grid
[J].
Ashok, Aditya
;
Govindarasu, Manimaran
;
Wang, Jianhui
.
PROCEEDINGS OF THE IEEE,
2017, 105 (07)
:1389-1407

Ashok, Aditya
论文数: 0 引用数: 0
h-index: 0
机构:
PNNL, Richland, WA 99354 USA PNNL, Richland, WA 99354 USA

Govindarasu, Manimaran
论文数: 0 引用数: 0
h-index: 0
机构:
Iowa State Univ, Dept Elect & Comp Engn, Comp Engn, Ames, IA USA PNNL, Richland, WA 99354 USA

Wang, Jianhui
论文数: 0 引用数: 0
h-index: 0
机构:
Argonne Natl Lab, Div Energy Syst, 9700 S Cass Ave, Argonne, IL 60439 USA PNNL, Richland, WA 99354 USA
[3]
A dynamic Bayesian network approach to characterize multi-hazard risks and resilience in interconnected critical infrastructures
[J].
Bakhtiari, Soheil
;
Najafi, Mohammad Reza
;
Goda, Katsuichiro
;
Peerhossaini, Hassan
.
RELIABILITY ENGINEERING & SYSTEM SAFETY,
2025, 257

Bakhtiari, Soheil
论文数: 0 引用数: 0
h-index: 0
机构:
Western Univ, Dept Civil & Environm Engn, London, ON, Canada Western Univ, Dept Civil & Environm Engn, London, ON, Canada

Najafi, Mohammad Reza
论文数: 0 引用数: 0
h-index: 0
机构:
Western Univ, Dept Civil & Environm Engn, London, ON, Canada Western Univ, Dept Civil & Environm Engn, London, ON, Canada

Goda, Katsuichiro
论文数: 0 引用数: 0
h-index: 0
机构:
Western Univ, Dept Earth Sci, London, ON, Canada Western Univ, Dept Civil & Environm Engn, London, ON, Canada

Peerhossaini, Hassan
论文数: 0 引用数: 0
h-index: 0
机构:
Western Univ, Dept Civil & Environm Engn, London, ON, Canada
Univ Paris Cite, Astroparticule & Cosmol Lab, Paris, France Western Univ, Dept Civil & Environm Engn, London, ON, Canada
[4]
Review of Internet of Things (IoT) in Electric Power and Energy Systems
[J].
Bedi, Guneet
;
Venayagamoorthy, Ganesh Kumar
;
Singh, Rajendra
;
Brooks, Richard R.
;
Wang, Kuang-Ching
.
IEEE INTERNET OF THINGS JOURNAL,
2018, 5 (02)
:847-870

Bedi, Guneet
论文数: 0 引用数: 0
h-index: 0
机构:
Clemson Univ, Real Time Power & Intelligent Syst Lab, Holcombe Dept Elect & Comp Engn, Clemson, SC 29634 USA Clemson Univ, Real Time Power & Intelligent Syst Lab, Holcombe Dept Elect & Comp Engn, Clemson, SC 29634 USA

Venayagamoorthy, Ganesh Kumar
论文数: 0 引用数: 0
h-index: 0
机构:
Clemson Univ, Real Time Power & Intelligent Syst Lab, Holcombe Dept Elect & Comp Engn, Clemson, SC 29634 USA
Univ KwaZulu Natal, Sch Engn, ZA-4041 Durban, South Africa Clemson Univ, Real Time Power & Intelligent Syst Lab, Holcombe Dept Elect & Comp Engn, Clemson, SC 29634 USA

论文数: 引用数:
h-index:
机构:

Brooks, Richard R.
论文数: 0 引用数: 0
h-index: 0
机构:
Clemson Univ, Real Time Power & Intelligent Syst Lab, Holcombe Dept Elect & Comp Engn, Clemson, SC 29634 USA Clemson Univ, Real Time Power & Intelligent Syst Lab, Holcombe Dept Elect & Comp Engn, Clemson, SC 29634 USA

Wang, Kuang-Ching
论文数: 0 引用数: 0
h-index: 0
机构:
Clemson Univ, Real Time Power & Intelligent Syst Lab, Holcombe Dept Elect & Comp Engn, Clemson, SC 29634 USA Clemson Univ, Real Time Power & Intelligent Syst Lab, Holcombe Dept Elect & Comp Engn, Clemson, SC 29634 USA
[5]
An enhanced fast non-dominated solution sorting genetic algorithm for multi-objective problems
[J].
Deng, Wu
;
Zhang, Xiaoxiao
;
Zhou, Yongquan
;
Liu, Yi
;
Zhou, Xiangbing
;
Chen, Huiling
;
Zhao, Huimin
.
INFORMATION SCIENCES,
2022, 585
:441-453

Deng, Wu
论文数: 0 引用数: 0
h-index: 0
机构:
Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China

Zhang, Xiaoxiao
论文数: 0 引用数: 0
h-index: 0
机构:
Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China

Zhou, Yongquan
论文数: 0 引用数: 0
h-index: 0
机构:
Guangxi Univ Natl, Coll Artificial Intelligence, Nanning 530006, Peoples R China Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China

Liu, Yi
论文数: 0 引用数: 0
h-index: 0
机构:
Civil Aviat Management Inst China, Res Ctr Big Data & Informat Management, Beijing 100102, Peoples R China Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China

Zhou, Xiangbing
论文数: 0 引用数: 0
h-index: 0
机构:
Sichuan Tourism Univ, Sch Informat & Engn, Chengdu 610100, Peoples R China Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China

Chen, Huiling
论文数: 0 引用数: 0
h-index: 0
机构:
Wenzhou Univ, Comp Sci, Wenzhou 325035, Zhejiang, Peoples R China Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China

Zhao, Huimin
论文数: 0 引用数: 0
h-index: 0
机构:
Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China Civil Aviat Univ China, Sch Elect Informat & Automat, Tianjin 300300, Peoples R China
[6]
Dynamic probabilistic risk assessment for electric grid cybersecurity
[J].
Diao, Xiaoxu
;
Zhao, Yunfei
;
Smidts, Carol
;
Vaddi, Pavan Kumar
;
Li, Ruixuan
;
Lei, Hangtian
;
Chakhchoukh, Yacine
;
Johnson, Brian
;
Le Blanc, Katya
.
RELIABILITY ENGINEERING & SYSTEM SAFETY,
2024, 241

Diao, Xiaoxu
论文数: 0 引用数: 0
h-index: 0
机构:
Ohio State Univ, Columbus, OH 43210 USA Ohio State Univ, Columbus, OH 43210 USA

Zhao, Yunfei
论文数: 0 引用数: 0
h-index: 0
机构:
Ohio State Univ, Columbus, OH 43210 USA Ohio State Univ, Columbus, OH 43210 USA

Smidts, Carol
论文数: 0 引用数: 0
h-index: 0
机构:
Ohio State Univ, Columbus, OH 43210 USA Ohio State Univ, Columbus, OH 43210 USA

Vaddi, Pavan Kumar
论文数: 0 引用数: 0
h-index: 0
机构:
Ohio State Univ, Columbus, OH 43210 USA Ohio State Univ, Columbus, OH 43210 USA

Li, Ruixuan
论文数: 0 引用数: 0
h-index: 0
机构:
Idaho Natl Lab, Idaho Falls, ID USA Ohio State Univ, Columbus, OH 43210 USA

Lei, Hangtian
论文数: 0 引用数: 0
h-index: 0
机构:
Univ Idaho, Moscow, ID USA Ohio State Univ, Columbus, OH 43210 USA

Chakhchoukh, Yacine
论文数: 0 引用数: 0
h-index: 0
机构:
Univ Idaho, Moscow, ID USA Ohio State Univ, Columbus, OH 43210 USA

论文数: 引用数:
h-index:
机构:

Le Blanc, Katya
论文数: 0 引用数: 0
h-index: 0
机构:
Idaho Natl Lab, Idaho Falls, ID USA Ohio State Univ, Columbus, OH 43210 USA
[7]
Playing Bayesian Stackelberg game model for optimizing the vulnerability level of security incident system in petrochemical plants
[J].
Dong, Mingxin
;
Zhang, Zhen
;
Liu, Yi
;
Zhao, Dong Feng
;
Meng, Yifei
;
Shi, Jihao
.
RELIABILITY ENGINEERING & SYSTEM SAFETY,
2023, 235

Dong, Mingxin
论文数: 0 引用数: 0
h-index: 0
机构:
Shandong Police Coll, Dept Publ Secur, Jinan 250200, Shandong, Peoples R China
Res Ctr Inherently Safety Technol Petrochem Engn, Qingdao 266580, Shandong, Peoples R China Shandong Police Coll, Dept Publ Secur, Jinan 250200, Shandong, Peoples R China

Zhang, Zhen
论文数: 0 引用数: 0
h-index: 0
机构:
Shandong Police Coll, Dept Invest, Jinan 250200, Shandong, Peoples R China Shandong Police Coll, Dept Publ Secur, Jinan 250200, Shandong, Peoples R China

Liu, Yi
论文数: 0 引用数: 0
h-index: 0
机构:
Res Ctr Inherently Safety Technol Petrochem Engn, Qingdao 266580, Shandong, Peoples R China Shandong Police Coll, Dept Publ Secur, Jinan 250200, Shandong, Peoples R China

Zhao, Dong Feng
论文数: 0 引用数: 0
h-index: 0
机构:
Res Ctr Inherently Safety Technol Petrochem Engn, Qingdao 266580, Shandong, Peoples R China Shandong Police Coll, Dept Publ Secur, Jinan 250200, Shandong, Peoples R China

Meng, Yifei
论文数: 0 引用数: 0
h-index: 0
机构:
Res Ctr Inherently Safety Technol Petrochem Engn, Qingdao 266580, Shandong, Peoples R China Shandong Police Coll, Dept Publ Secur, Jinan 250200, Shandong, Peoples R China

Shi, Jihao
论文数: 0 引用数: 0
h-index: 0
机构:
China Univ Petr East China, Coll Mech & Elect Engn, Qingdao 266580, Shandong, Peoples R China Shandong Police Coll, Dept Publ Secur, Jinan 250200, Shandong, Peoples R China
[8]
Analysis of safety and security challenges and opportunities related to cyber-physical systems
[J].
El-Kady, Ahmed Hamdy
;
Halim, Syeda
;
El-Halwagi, Mahmoud M.
;
Khan, Faisal
.
PROCESS SAFETY AND ENVIRONMENTAL PROTECTION,
2023, 173
:384-413

El-Kady, Ahmed Hamdy
论文数: 0 引用数: 0
h-index: 0
机构:
Texas A&M Univ, Mary Kay OConnor Proc Safety Ctr, Artie McFerrin Dept Chem Engn, College Stn, TX 77843 USA Texas A&M Univ, Mary Kay OConnor Proc Safety Ctr, Artie McFerrin Dept Chem Engn, College Stn, TX 77843 USA

Halim, Syeda
论文数: 0 引用数: 0
h-index: 0
机构:
Texas A&M Univ, Mary Kay OConnor Proc Safety Ctr, Artie McFerrin Dept Chem Engn, College Stn, TX 77843 USA Texas A&M Univ, Mary Kay OConnor Proc Safety Ctr, Artie McFerrin Dept Chem Engn, College Stn, TX 77843 USA

El-Halwagi, Mahmoud M.
论文数: 0 引用数: 0
h-index: 0
机构:
Texas A&M Univ, Mary Kay OConnor Proc Safety Ctr, Artie McFerrin Dept Chem Engn, College Stn, TX 77843 USA Texas A&M Univ, Mary Kay OConnor Proc Safety Ctr, Artie McFerrin Dept Chem Engn, College Stn, TX 77843 USA

Khan, Faisal
论文数: 0 引用数: 0
h-index: 0
机构:
Texas A&M Univ, Mary Kay OConnor Proc Safety Ctr, Artie McFerrin Dept Chem Engn, College Stn, TX 77843 USA Texas A&M Univ, Mary Kay OConnor Proc Safety Ctr, Artie McFerrin Dept Chem Engn, College Stn, TX 77843 USA
[9]
Navigating uncertainty: A dynamic Bayesian network-based risk assessment framework for maritime trade routes
[J].
Fan, Hanwen
;
Jia, Haiying
;
He, Xuzhuo
;
Lyu, Jing
.
RELIABILITY ENGINEERING & SYSTEM SAFETY,
2024, 250

Fan, Hanwen
论文数: 0 引用数: 0
h-index: 0
机构:
Dalian Maritime Univ, Coll Transportat Engn, 1 Ling Hai Rd, Dalian 116026, Liaoning, Peoples R China
Norwegian Sch Econ, Dept Business & Management Sci, Bergen, Norway Dalian Maritime Univ, Coll Transportat Engn, 1 Ling Hai Rd, Dalian 116026, Liaoning, Peoples R China

Jia, Haiying
论文数: 0 引用数: 0
h-index: 0
机构:
Norwegian Sch Econ, Dept Business & Management Sci, Bergen, Norway Dalian Maritime Univ, Coll Transportat Engn, 1 Ling Hai Rd, Dalian 116026, Liaoning, Peoples R China

He, Xuzhuo
论文数: 0 引用数: 0
h-index: 0
机构:
Dalian Maritime Univ, Coll Transportat Engn, 1 Ling Hai Rd, Dalian 116026, Liaoning, Peoples R China Dalian Maritime Univ, Coll Transportat Engn, 1 Ling Hai Rd, Dalian 116026, Liaoning, Peoples R China

Lyu, Jing
论文数: 0 引用数: 0
h-index: 0
机构:
Dalian Maritime Univ, Coll Transportat Engn, 1 Ling Hai Rd, Dalian 116026, Liaoning, Peoples R China Dalian Maritime Univ, Coll Transportat Engn, 1 Ling Hai Rd, Dalian 116026, Liaoning, Peoples R China
[10]
A Survey of IIoT Protocols: A Measure of Vulnerability Risk Analysis Based on CVSS
[J].
Figueroa-Lorenzo, Santiago
;
Anorga, Javier
;
Arrizabalaga, Saioa
.
ACM COMPUTING SURVEYS,
2020, 53 (02)

论文数: 引用数:
h-index:
机构:

Anorga, Javier
论文数: 0 引用数: 0
h-index: 0
机构:
CEIT, Basque Res & Technol Alliance BRTA, Manuel Lardizabal 15, San Sebastian 20018, Spain
Univ Navarra, Tecnun, Manuel Lardizabal 13, San Sebastian 20018, Spain CEIT, Basque Res & Technol Alliance BRTA, Manuel Lardizabal 15, San Sebastian 20018, Spain

论文数: 引用数:
h-index:
机构: