Data-Driven Detection of Stealth Cyber-Attacks in DC Microgrids

Cyber-physical systems such as microgrids contain numerous attack surfaces in communication links, sensors, and actuators forms. Manipulating the communication links and sensors is done to inject anomalous data that can be transmitted through the cyber layer along with the original data stream. The...

Full description

Saved in:
Bibliographic Details
Published in:IEEE systems journal Vol. 16; no. 4; pp. 6097 - 6106
Main Authors: Takiddin, Abdulrahman, Rath, Suman, Ismail, Muhammad, Sahoo, Subham
Format: Journal Article
Language:English
Published: New York IEEE 01.12.2022
The Institute of Electrical and Electronics Engineers, Inc. (IEEE)
Subjects:
ISSN:1932-8184, 1937-9234
Online Access:Get full text
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Cyber-physical systems such as microgrids contain numerous attack surfaces in communication links, sensors, and actuators forms. Manipulating the communication links and sensors is done to inject anomalous data that can be transmitted through the cyber layer along with the original data stream. The presence of malicious, anomalous data packets in the cyber layer of a dc microgrid can create hindrances in fulfilling the control objectives, leading to voltage instability and affecting load dispatch patterns. Hence, detecting anomalous data is essential for the restoration of system stability. This article answers two important research questions: 1) Which data-driven detection scheme offers the best detection performance against stealth cyber-attacks in dc microgrids? 2) What is the detection performance improvement when fusing two features (i.e., current and voltage data) for training compared with using a single feature (i.e., current)? Our investigations revealed that 1) adopting an unsupervised deep recurrent autoencoder anomaly detection scheme in dc microgrids offers superior detection performance compared with other benchmarks. The autoencoder is trained on benign data generated from a multisource dc microgrid model. 2) Fusing current and voltage data for training offers a 14.7% improvement. The efficacy of the results is verified using experimental data collected from a dc microgrid testbed when subjected to stealth cyber-attacks.
Bibliography:ObjectType-Article-1
SourceType-Scholarly Journals-1
ObjectType-Feature-2
content type line 14
ISSN:1932-8184
1937-9234
DOI:10.1109/JSYST.2022.3183140