Deep Reinforcement Learning for Penetration Testing of Cyber-Physical Attacks in the Smart Grid

被引:0
作者
Li, Yuanliang [1 ,2 ]
Yan, Jun [1 ]
Naili, Mohamed [2 ]
机构
[1] Concordia Univ, Concordia Inst Informat Syst Engn CIISE, Montreal, PQ, Canada
[2] Ericsson, Global Artificial Intelligence Accelerator GAIA, Montreal, PQ, Canada
来源
2022 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN) | 2022年
基金
加拿大自然科学与工程研究理事会;
关键词
Cyber-physical security; penetration testing; smart grid; deep reinforcement learning;
D O I
10.1109/IJCNN55064.2022.9892584
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The fast expansion of interconnectivity in cyberphysical critical infrastructures like smart grids has given rise to concerning exposures and vulnerabilities. Although penetration testing (PT) has been an effective approach to searching for vulnerabilities in software, devices, and networks from the attacker's view, the strong cyber-physical coupling in these large-scale infrastructures has made it challenging to manually pinpoint critical vulnerabilities, particularly at system levels due to the complexity, dimensionality, and uncertainty therein. To better protect the security of cyber-physical systems, this paper proposes a deep reinforcement learning (DRL)-based PT framework to efficiently and adaptively identify critical vulnerabilities in smart grids. Using replay attacks as an example, the paper models the attack as a Markov Decision Process with three actions - stop, record, and replay - to learn the optimal timing and ordering of replays in different operating scenarios. A cyber-physical cosimulation platform with dedicated simulators for the physical part, cyber part, control part, and attacker part of a smart distribution grid was developed as a sandbox environment to train the DRL agent. Scenarios with different levels of difficulty are tested to validate the learning capability and performance in finding critical attack paths of the DRL-based PT. The simulation results show that DRL-based PT can learn to find the optimal attack path against system stability when the grid is under high load demand, solar power generation, and weather variation. These results are promising first steps toward a highly customizable framework to pen-test complex cyber-physical systems with automatic DRL agents and various attack schemes.
引用
收藏
页数:9
相关论文
共 50 条
  • [31] An Integrated Cyber-Physical Simulation Environment for Smart Grid Applications
    Yuxin Wan
    Junwei Cao
    Shuqing Zhang
    Guoyu Tu
    Chao Lu
    Xingtao Xu
    Keqin Li
    TsinghuaScienceandTechnology, 2014, 19 (02) : 133 - 143
  • [32] A Systems Approach to Analysing Cyber-Physical Threats in the Smart Grid
    AlMajali, Anas
    Rice, Eric
    Viswanathan, Arun
    Tan, Kymie
    Neuman, Clifford
    2013 IEEE INTERNATIONAL CONFERENCE ON SMART GRID COMMUNICATIONS (SMARTGRIDCOMM), 2013, : 456 - 461
  • [33] An Integrated Cyber-Physical Simulation Environment for Smart Grid Applications
    Wan, Yuxin
    Cao, Junwei
    Zhang, Shuqing
    Tu, Guoyu
    Lu, Chao
    Xu, Xingtao
    Li, Keqin
    TSINGHUA SCIENCE AND TECHNOLOGY, 2014, 19 (02) : 133 - 143
  • [34] A survey for deep reinforcement learning in markovian cyber-physical systems: Common problems and solutions
    Rupprecht, Timothy
    Wang, Yanzhi
    NEURAL NETWORKS, 2022, 153 : 13 - 36
  • [35] Defending Against Data Integrity Attacks in Smart Grid: A Deep Reinforcement Learning-Based Approach
    An, Dou
    Yang, Qingyu
    Liu, Wenmao
    Zhang, Yang
    IEEE ACCESS, 2019, 7 : 110835 - 110845
  • [36] Deep Reinforcement Learning for Edge Service Placement in Softwarized Industrial Cyber-Physical System
    Hao, Yixue
    Chen, Min
    Gharavi, Hamid
    Zhang, Yin
    Hwang, Kai
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2021, 17 (08) : 5552 - 5561
  • [37] A New Classification of Attacks against the Cyber-Physical Security of Smart Grids
    Elbez, Ghada
    Keller, Hubert B.
    Hagenmeyer, Veit
    13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,
  • [38] A Control Strategy for the Prevention of Cyber-Physical Switching Attacks on Smart Grids
    Yogi, Subhash Chand
    Behera, Laxmidhar
    2019 SIXTH INDIAN CONTROL CONFERENCE (ICC), 2019, : 455 - 460
  • [39] Physical layer attack identification and localization in cyber-physical grid: An ensemble deep learning based approach
    Sakhnini, Jacob
    Karimipour, Hadis
    Dehghantanha, Ali
    Parizi, Reza M.
    PHYSICAL COMMUNICATION, 2021, 47
  • [40] Needs and Challenges Concerning Cyber-risk Assessment in the Cyber-physical Smart Grid
    Erdogan, Gencer
    Tondel, Inger Anne
    Tokas, Shukun
    Garau, Michele
    Jaatun, Martin Gilje
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON SOFTWARE TECHNOLOGIES (ICSOFT), 2022, : 21 - 32