A cybersecurity assessment for hybrid virtualized-physical digital substations

被引:0
作者
Kabbara, Nadine [1 ,2 ]
Cibin, Nicola [3 ]
Morais, Hugo [4 ]
Stefanov, Alexandru [3 ]
Gibescu, Madeleine [2 ]
机构
[1] EDF R&D Paris Saclay, Palaiseau, France
[2] Univ Utrecht, Utrecht, Netherlands
[3] Delft Univ Technol, Delft, Netherlands
[4] Inesc ID, Lisbon, Portugal
关键词
Digital substations; Virtualization; Cybersecurity; IEC; 61850; Cyber-physical power systems; Virtual machines; ATTACKS;
D O I
10.1016/j.segan.2025.101795
中图分类号
TE [石油、天然气工业]; TK [能源与动力工程];
学科分类号
0807 ; 0820 ;
摘要
Virtualization in digital substations is a rising trend in the power sector, opening up interesting research avenues. The virtualization of intelligent electronic devices (IEDs) is thought to enable more flexible and agile cybersecurity software updates and patching processes while seamlessly integrating with current physical IEDs. However, no studies have yet considered a general cybersecurity assessment for such novel hybrid systems. To fill this gap, a systematic cybersecurity assessment of a digital substation composed of hybrid (virtual and physical) IEDs is presented in this paper. A testbed was developed to assess the different attack vectors with a focus on targeting virtual machines (resource exhaustion) and injection attacks on IEC 61850-compliant communication streams. A hybrid protection selectivity use case was successfully demonstrated with multiple targeted cyber attacks on the testbed where the non-attacked IED successfully cleared the grid fault. The attacks' impacts ranged from minor to major effects on the IEDs' tripping signals (and eventually circuit breaker actions) including forced signal delays, signal latching, and signal drops. The results of this study highlight the importance of providing a proper cybersecurity by design strategy for integrating hybrid substation systems with virtualization technologies.
引用
收藏
页数:12
相关论文
共 55 条
[11]  
Blue Goat Cyber, 2024, Understanding VM escape: a threat to virtualized environments
[12]   A survey of Denial-of-Service and distributed Denial of Service attacks and defenses in cloud computing [J].
Bonguet, Adrien ;
Bellaiche, Martine .
Future Internet, 2017, 9 (03)
[13]   Towards the virtualization of measurements: architecture, solutions and challenges [J].
Carducci, Carlo Guarnieri Calo ;
Pau, Marco ;
Ponci, Ferdinanda ;
Monti, Antonello .
2021 IEEE 11TH INTERNATIONAL WORKSHOP ON APPLIED MEASUREMENTS FOR POWER SYSTEMS (AMPS), 2021,
[14]   A critical survey of live virtual machine migration techniques [J].
Choudhary, Anita ;
Govil, Mahesh Chandra ;
Singh, Girdhari ;
Awasthi, Lalit K. ;
Pilli, Emmanuel S. ;
Kapil, Divya .
JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS, 2017, 6
[15]  
Defense Use Case, 2016, ANAL CYBER ATTACK UK, V388, P3
[16]  
Gary H.F., 2010, Power system selectivity: the basics of protective coordination
[17]   Smart Substation Communications and Cybersecurity: A Comprehensive Survey [J].
Gaspar, Jose ;
Cruz, Tiago ;
Lam, Chan-Tong ;
Simoes, Paulo .
IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2023, 25 (04) :2456-2493
[18]   Coordination of Overcurrent, Directional and Differential Relays for the Protection of Microgrid System [J].
Haron, Ahmad Razani ;
Mohamed, Azah ;
Shareef, Hussain .
4TH INTERNATIONAL CONFERENCE ON ELECTRICAL ENGINEERING AND INFORMATICS (ICEEI 2013), 2013, 11 :366-373
[19]   SoK: Security in Real-Time Systems [J].
Hasan, Monowar ;
Kashinath, Ashish ;
Chen, Chien-Ying ;
Mohan, Sibin .
ACM COMPUTING SURVEYS, 2024, 56 (09)
[20]  
Hasan M, 2017, Arxiv, DOI arXiv:1705.00138