Abstract
Our research presented in this article comprises of network based cyber-attacks in a laboratory setup consisting of a power grid substation implemented as a hardware-in-the-loop simulation with hardware (Intelligent Electronic Devices a.k.a. IEDs), and the analysis on how these cyber-attacks can be detected using network forensics. The investigated cyber-attacks exploit the IEC 61850 MMS and GOOSE protocols, and one of the attacks has been already implemented in an existing malware. Additionally we organized a cybersecurity themed workshop for energy sector companies in Finland. The workshop participants were given a task to search for the aforementioned cyber-attacks from network traffic captures. The key finding from the workshop is that for the domain expert it is crucial to know different kind of cyber-attack scenarios in order to detect and mitigate them in a timely manner.
| Original language | English |
|---|---|
| Title of host publication | 10th International Symposium on Digital Forensics and Security, ISDFS 2022 |
| Editors | Asaf Varol, Murat Karabatak, Cihan Varol |
| Publisher | IEEE Institute of Electrical and Electronic Engineers |
| ISBN (Electronic) | 978-1-66549-796-1 |
| DOIs | |
| Publication status | Published - 2022 |
| MoE publication type | A4 Article in a conference publication |
| Event | 10th International Symposium on Digital Forensics and Security, ISDFS 2022 - Istanbul, Turkey Duration: 6 Jun 2022 → 7 Jun 2022 |
Conference
| Conference | 10th International Symposium on Digital Forensics and Security, ISDFS 2022 |
|---|---|
| Country/Territory | Turkey |
| City | Istanbul |
| Period | 6/06/22 → 7/06/22 |
Funding
This article is based on research conducted in the Secure Collaborative Intelligent Industrial Assets (SeCoIIA) project that aims at securing the digital transition of manufacturing industry towards more connected, collaborative, flexible and automated production techniques. The project has received funding from the European Union’s Horizon 2020 research and innovation programme under grant agreement No 871967.
UN SDGs
This output contributes to the following UN Sustainable Development Goals (SDGs)
-
SDG 9 Industry, Innovation, and Infrastructure
Keywords
- critical infrastructure protection
- cyber-attack
- digital forensics
- hardware-in-the-loop
- power grid
- sub-station
Fingerprint
Dive into the research topics of 'The Digital Forensics of Cyber-Attacks at Electrical Power Grid Substation'. Together they form a unique fingerprint.Research output
- 7 Citations
- 1 Dissertation
-
Wireless 5G for Medium-Voltage Grid IEC 61850 based Protection Communication
Raussi, P., 13 Oct 2023, Helsinki: Unigrafia oy. 133 p.Research output: Thesis › Dissertation › Collection of Articles
Open Access
Projects
- 1 Finished
-
SeCoIIA: Secure Collaborative Intelligent Industrial Assets
Salonen, J. (Manager)
1/12/19 → 31/05/22
Project: EU project
Equipment
-
IntelligentEnergy testbed
Häsä, S. (Contact), Faheem, M. (Contact) & Raussi, P. (Operator)
Facility/equipment: ResearchLaboratory
Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver