Detection of Compromised Smart Grid Devices with Machine Learning and Convolution Techniques

04/13/2018
by   Cengiz Kaygusuz, et al.
0

The smart grid concept has transformed the traditional power grid into a massive cyber-physical system that depends on advanced two-way communication infrastructure to integrate a myriad of different smart devices. While the introduction of the cyber component has made the grid much more flexible and efficient with so many smart devices, it also broadened the attack surface of the power grid. Particularly, compromised devices pose a great danger to the healthy operations of the smart-grid. For instance, the attackers can control the devices to change the behaviour of the grid and can impact the measurements. In this paper, to detect such misbehaving malicious smart grid devices, we propose a machine learning and convolution-based classification framework. Our framework specifically utilizes system and library call lists at the kernel level of the operating system on both resource-limited and resource-rich smart grid devices such as RTUs, PLCs, PMUs, and IEDs. Focusing on the types and other valuable features extracted from the system calls, the framework can successfully identify malicious smart-grid devices. In order to test the efficacy of the proposed framework, we built a representative testbed conforming to the IEC-61850 protocol suite and evaluated its performance with different system calls. The proposed framework in different evaluation scenarios yields very high accuracy (avg. 91 is effective to overcome compromised smart grid devices problem.

READ FULL TEXT
research
12/02/2019

A System-level Behavioral Detection Framework for Compromised CPS Devices: Smart-Grid Case

Cyber-Physical Systems (CPS) play a significant role in our critical inf...
research
11/08/2022

Distribution Grid Monitoring Based on Widely Available Smart Plugs

During the last few years, smart home devices have become increasingly p...
research
03/30/2021

A Taxonomy of Cyber Defence Strategies Against False Data Attacks in Smart Grid

Modern electric power grid, known as the Smart Grid, has fast transforme...
research
08/01/2021

A Sequential Supervised Machine Learning Approach for Cyber Attack Detection in a Smart Grid System

Modern smart grid systems are heavily dependent on Information and Commu...
research
10/11/2022

Detecting Hidden Attackers in Photovoltaic Systems Using Machine Learning

In modern smart grids, the proliferation of communication-enabled distri...
research
06/15/2023

A Learning Assisted Method for Uncovering Power Grid Generation and Distribution System Vulnerabilities

Intelligent attackers can suitably tamper sensor/actuator data at variou...
research
09/16/2020

Hardware-Assisted Detection of Firmware Attacks in Inverter-Based Cyberphysical Microgrids

The electric grid modernization effort relies on the extensive deploymen...

Please sign up or login with your details

Forgot password? Click here to reset