Securing the Smart Grid: A Comprehensive Compilation of Intrusion Detection and Prevention Systems

被引:128
|
作者
Radoglou-Grammatikis, Panagiotis, I [1 ]
Sarigiannidis, Panagiotis G. [1 ]
机构
[1] Univ Western Macedonia, Dept Informat & Telecommun Engn, Kozani 50100, Greece
来源
IEEE ACCESS | 2019年 / 7卷
基金
欧盟地平线“2020”;
关键词
Advanced metering infrastructure; cyberattacks; intrusion detection system; intrusion prevention system; SCADA; security; smart grid; substation; synchrophasor; ADVANCED METERING INFRASTRUCTURE; CYBER-SECURITY; AUTOMATION; INTERNET; ATTACKS; ISSUES; CHALLENGES; NETWORKS; STUXNET;
D O I
10.1109/ACCESS.2019.2909807
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The smart grid (SG) paradigm is the next technological leap of the conventional electrical grid, contributing to the protection of the physical environment and providing multiple advantages such as increased reliability, better service quality, and the efficient utilization of the existing infrastructure and the renewable energy resources. However, despite the fact that it brings beneficial environmental, economic, and social changes, the existence of such a system possesses important security and privacy challenges, since it includes a combination of heterogeneous, co-existing smart, and legacy technologies. Based on the rapid evolution of the cyber-physical systems (CPS), both academia and industry have developed appropriate measures for enhancing the security surface of the SG paradigm using, for example, integrating efficient, lightweight encryption and authorization mechanisms. Nevertheless, these mechanisms may not prevent various security threats, such as denial of service (DoS) attacks that target on the availability of the underlying systems. An efficient countermeasure against several cyberattacks is the intrusion detection and prevention system (IDPS). In this paper, we examine the contribution of the IDPSs in the SG paradigm, providing an analysis of 37 cases. More detailed, these systems can be considered as a secondary defense mechanism, which enhances the cryptographic processes, by timely detecting or/and preventing potential security violations. For instance, if a cyberattack bypasses the essential encryption and authorization mechanisms, then the IDPS systems can act as a secondary protection service, informing the system operator for the presence of the specific attack or enabling appropriate preventive countermeasures. The cases we study focused on the advanced metering infrastructure (AMI), supervisory control and data acquisition (SCADA) systems, substations, and synchrophasors. Based on our comparative analysis, the limitations and the shortcomings of the current IDPS systems are identified, whereas appropriate recommendations are provided for future research efforts.
引用
收藏
页码:46595 / 46620
页数:26
相关论文
共 50 条
  • [1] Intrusion Detection Systems in Smart Grid
    Rakas, Slavica Bostjancic
    Timcenko, Valentina
    Kabovic, Milenko
    Kabovic, Anka
    2022 21ST INTERNATIONAL SYMPOSIUM INFOTEH-JAHORINA (INFOTEH), 2022,
  • [2] A survey of intrusion detection systems in smart grid
    Jow, Julius
    Xiao, Yang
    Han, Wenlin
    INTERNATIONAL JOURNAL OF SENSOR NETWORKS, 2017, 23 (03) : 170 - 186
  • [3] A nifty collaborative intrusion detection and prevention architecture for Smart Grid ecosystems
    Patel, Ahmed
    Alhussian, Hitham
    Pedersen, Jens Myrup
    Bounabat, Bouchaib
    Celestino Junior, Joaquim
    Katsikas, Sokratis
    COMPUTERS & SECURITY, 2017, 64 : 92 - 109
  • [4] Explainable Artificial Intelligence for Smart Grid Intrusion Detection Systems
    Yayla, Alper
    Haghnegahdar, Lida
    Dincelli, Ersin
    IT PROFESSIONAL, 2022, 24 (05) : 18 - 24
  • [5] Securing Collaborative Intrusion Detection Systems
    Cheung, Steven
    IEEE SECURITY & PRIVACY, 2011, 9 (06) : 36 - 42
  • [6] An Intrusion Detection Framework for the Smart Grid
    Ullah, Imtiaz
    Mahmoud, Qusay H.
    2017 IEEE 30TH CANADIAN CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING (CCECE), 2017,
  • [7] MELODY: SYNTHESIZED DATASETS FOR EVALUATING INTRUSION DETECTION SYSTEMS FOR THE SMART GRID
    Babu, Vignesh
    Kumar, Rakesh
    Hoang Hai Nguyen
    Nicol, David M.
    Palani, Kartik
    Reed, Elizabeth
    2017 WINTER SIMULATION CONFERENCE (WSC), 2017, : 1061 - 1072
  • [8] Smart architecture for high-speed intrusion detection and prevention systems
    Wu, Chih-Chiang
    Wen, Sung-Hua
    Huang, Nen-Fu
    CRYPTOLOGY AND NETWORK SECURITY, PROCEEDINGS, 2006, 4301 : 318 - 328
  • [9] Intrusion Detection on Critical Smart Grid Infrastructure
    Akbarian, Fatemeh
    Ramezani, Amin
    Hamidi-Beheshti, Mohammad-Taghi
    Haghighat, Vahid
    2018 SMART GRID CONFERENCE (SGC), 2018, : 255 - 260
  • [10] A Multi-Agent Adaptive Architecture for Smart-Grid-Intrusion Detection and Prevention
    Kisielewicz, Tomasz
    Stanek, Stanislaw
    Zytniewski, Mariusz
    ENERGIES, 2022, 15 (13)