Man-in-The-Middle Attacks and Defense in a Power System Cyber-Physical Testbed

02/23/2021
by   Patrick Wlazlo, et al.
0

Man-in-The-Middle (MiTM) attacks present numerous threats to a smart grid. In a MiTM attack, an intruder embeds itself within a conversation between two devices to either eavesdrop or impersonate one of the devices, making it appear to be a normal exchange of information. Thus, the intruder can perform false data injection (FDI) and false command injection (FCI) attacks that can compromise power system operations, such as state estimation, economic dispatch, and automatic generation control (AGC). Very few researchers have focused on MiTM methods that are difficult to detect within a smart grid. To address this, we are designing and implementing multi-stage MiTM intrusions in an emulation-based cyber-physical power system testbed against a large-scale synthetic grid model to demonstrate how such attacks can cause physical contingencies such as misguided operation and false measurements. MiTM intrusions create FCI, FDI, and replay attacks in this synthetic power grid. This work enables stakeholders to defend against these stealthy attacks, and we present detection mechanisms that are developed using multiple alerts from intrusion detection systems and network monitoring tools. Our contribution will enable other smart grid security researchers and industry to develop further detection mechanisms for inconspicuous MiTM attacks.

READ FULL TEXT

page 1

page 4

page 5

page 12

research
10/18/2021

Investigating Man-in-the-Middle-based False Data Injection in a Smart Grid Laboratory Environment

With the increasing use of information and communication technology in e...
research
05/18/2018

Review of Cyber-Physical Attacks and Counter Defense Mechanisms for Advanced Metering Infrastructure in Smart Grid

The Advanced Metering Infrastructure (AMI) is a vital element in the cur...
research
08/29/2021

Outlier Detection in Smart Grid Communication

Industrial Control System (ICS) networks transmit control and monitoring...
research
11/10/2021

Cross-Layered Distributed Data-driven Framework For Enhanced Smart Grid Cyber-Physical Security

Smart Grid (SG) research and development has drawn much attention from a...
research
03/11/2020

Designing False Data Injection attacks penetrating AC-based Bad Data Detection System and FDI Dataset generation

The evolution of the traditional power system towards the modern smart g...
research
07/13/2021

Toward Safe Integration of Legacy SCADA Systems in the Smart Grid

A SCADA system is a distributed network of cyber-physical devices used f...
research
03/16/2023

DeeBBAA: A benchmark Deep Black Box Adversarial Attack against Cyber-Physical Power Systems

An increased energy demand, and environmental pressure to accommodate hi...

Please sign up or login with your details

Forgot password? Click here to reset