Increasing volatilities within power transmission and distribution force power grid operators to amplify their use of communication infrastructure to monitor and control their grid. The resulting increase in communication creates a larger attack surface for malicious actors. Indeed, cyber attacks on power grids have already succeeded in causing temporary, large-scale blackouts in the recent past. In this paper, we analyze the communication infrastructure of power grids to derive resulting fundamental challenges of power grids with respect to cybersecurity. Based on these challenges, we identify a broad set of resulting attack vectors and attack scenarios that threaten the security of power grids. To address these challenges, we propose to rely on a defense-in-depth strategy, which encompasses measures for (i) device and application security, (ii) network security, (iii) physical security, as well as (iv) policies, procedures, and awareness. For each of these categories, we distill and discuss a comprehensive set of state-of-the art approaches, and identify further opportunities to strengthen cybersecurity in interconnected power grids.
翻译:电源传输和配电网操作员在扩大使用通信基础设施来监测和控制电网方面不断增强的挥发性,因此通信量的增加为恶意行为者创造了更大的攻击面。事实上,对电网的网络攻击在最近的过去已经成功地造成了暂时的大规模停电。在本文中,我们分析电网的通信基础设施,以了解电网在网络安全方面产生的根本挑战。根据这些挑战,我们确定一系列广泛的攻击矢量和攻击情景,威胁电网安全。为了应对这些挑战,我们提议依靠一个深入防御的战略,其中包括(一) 装置和应用安全,(二) 网络安全,(三) 实体安全,以及(四) 政策、程序和认识等措施。对于所有这些类别,我们提出并讨论一套全面的先进方法,并找出在互联电网中加强网络安全的更多机会。