Coherency-Based Detection Algorithm for Synchrophasor Cyberattacks

The wide area monitoring system (WAMS) is critical for power system situational awareness, but represents a growing cybersecurity vulnerability. Malicious adversaries may seek to compromise one or more PMUs in order to effect control decisions that unnecessarily disrupt typical grid operations. One...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:2019 North American Power Symposium (NAPS) S. 1 - 6
Hauptverfasser: Hart, Philip, Acharya, Sowmya, Wang, Honggang
Format: Tagungsbericht
Sprache:Englisch
Veröffentlicht: IEEE 01.10.2019
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Abstract The wide area monitoring system (WAMS) is critical for power system situational awareness, but represents a growing cybersecurity vulnerability. Malicious adversaries may seek to compromise one or more PMUs in order to effect control decisions that unnecessarily disrupt typical grid operations. One example of a particularly pernicious attack vector is the spoofing or replaying of a fault event using one or more compromised PMUs. This work documents the development and validation of a coherency-based cyberattack detection algorithm that integrates a sliding-window singular value decomposition (SVD) with physics-based partitioning analysis to achieve accurate classification of events. Special consideration is given to discerning a sophisticated fault-replay or fault spoofing attack from actual faults. A software-based cybersecurity testbed has been developed for rigorous testing of the algorithm. The algorithm is further validated using simulated synchrophasor datasets obtained from a MinniWECC 63-bus test system. Results show that the algorithm can successfully detect fault-replay attacks even when over half of the PMUs are compromised.
AbstractList The wide area monitoring system (WAMS) is critical for power system situational awareness, but represents a growing cybersecurity vulnerability. Malicious adversaries may seek to compromise one or more PMUs in order to effect control decisions that unnecessarily disrupt typical grid operations. One example of a particularly pernicious attack vector is the spoofing or replaying of a fault event using one or more compromised PMUs. This work documents the development and validation of a coherency-based cyberattack detection algorithm that integrates a sliding-window singular value decomposition (SVD) with physics-based partitioning analysis to achieve accurate classification of events. Special consideration is given to discerning a sophisticated fault-replay or fault spoofing attack from actual faults. A software-based cybersecurity testbed has been developed for rigorous testing of the algorithm. The algorithm is further validated using simulated synchrophasor datasets obtained from a MinniWECC 63-bus test system. Results show that the algorithm can successfully detect fault-replay attacks even when over half of the PMUs are compromised.
Author Wang, Honggang
Hart, Philip
Acharya, Sowmya
Author_xml – sequence: 1
  givenname: Philip
  surname: Hart
  fullname: Hart, Philip
  organization: GE Global Research,Niskayuna,New York,USA
– sequence: 2
  givenname: Sowmya
  surname: Acharya
  fullname: Acharya, Sowmya
  organization: GE Global Research,Niskayuna,New York,USA
– sequence: 3
  givenname: Honggang
  surname: Wang
  fullname: Wang, Honggang
  organization: GE Global Research,Niskayuna,New York,USA
BookMark eNotj8tOwzAURI0EC1r4AiSUH0iwHT_iZRqeUgVIhXV1Y98Qi9auHG_y90SimsXobEZnVuQyxICE3DNaMUbNw3v7uROqlqzilJnKUEq5ZhdkxTRvGBVUq2uy6eKICYOdyw1M6IpHzGizj6FoDz8x-TweiyGmYjcHO6Z4GmFaqJt7TJAz2N_phlwNcJjw9txr8v389NW9ltuPl7eu3Zae6yaXxinjmAQwCqERWhpYvKzmgx24EDj0hveuka62hisJNaIQtBGIul_C6zW5-9_1iLg_JX-ENO_Pt-o_QehIWA
ContentType Conference Proceeding
DBID 6IE
6IL
CBEJK
RIE
RIL
DOI 10.1109/NAPS46351.2019.9000271
DatabaseName IEEE Electronic Library (IEL) Conference Proceedings
IEEE Xplore POP ALL
IEEE Xplore All Conference Proceedings
IEEE Electronic Library (IEL)
IEEE Proceedings Order Plans (POP All) 1998-Present
DatabaseTitleList
Database_xml – sequence: 1
  dbid: RIE
  name: IEEE Xplore : IEEE Electronic Library (IEL) [unlimited simultaenous users]
  url: https://ieeexplore.ieee.org/
  sourceTypes: Publisher
DeliveryMethod fulltext_linktorsrc
EISBN 1728104076
9781728104072
EndPage 6
ExternalDocumentID 9000271
Genre orig-research
GroupedDBID 6IE
6IL
CBEJK
RIE
RIL
ID FETCH-LOGICAL-i278t-9d69d15aa96ea84759a201c72fcf244efb92bd85d3c9265a3ee44084ee7b7b723
IEDL.DBID RIE
ISICitedReferencesCount 1
ISICitedReferencesURI http://www.webofscience.com/api/gateway?GWVersion=2&SrcApp=Summon&SrcAuth=ProQuest&DestLinkType=CitingArticles&DestApp=WOS_CPL&KeyUT=000553797300107&url=https%3A%2F%2Fcvtisr.summon.serialssolutions.com%2F%23%21%2Fsearch%3Fho%3Df%26include.ft.matches%3Dt%26l%3Dnull%26q%3D
IngestDate Thu Jun 29 18:38:51 EDT 2023
IsDoiOpenAccess false
IsOpenAccess true
IsPeerReviewed false
IsScholarly false
Language English
LinkModel DirectLink
MergedId FETCHMERGED-LOGICAL-i278t-9d69d15aa96ea84759a201c72fcf244efb92bd85d3c9265a3ee44084ee7b7b723
OpenAccessLink https://www.osti.gov/biblio/1985688
PageCount 6
ParticipantIDs ieee_primary_9000271
PublicationCentury 2000
PublicationDate 2019-Oct.
PublicationDateYYYYMMDD 2019-10-01
PublicationDate_xml – month: 10
  year: 2019
  text: 2019-Oct.
PublicationDecade 2010
PublicationTitle 2019 North American Power Symposium (NAPS)
PublicationTitleAbbrev NAPS
PublicationYear 2019
Publisher IEEE
Publisher_xml – name: IEEE
Score 1.714358
Snippet The wide area monitoring system (WAMS) is critical for power system situational awareness, but represents a growing cybersecurity vulnerability. Malicious...
SourceID ieee
SourceType Publisher
StartPage 1
SubjectTerms Circuit faults
coherency
Computer crime
Cyberattack
detection algorithm
Detection algorithms
event classification
fault
Mathematical model
Partitioning algorithms
Phasor measurement units
Power systems
replay attack
synchrophasors
WAMS
Title Coherency-Based Detection Algorithm for Synchrophasor Cyberattacks
URI https://ieeexplore.ieee.org/document/9000271
WOSCitedRecordID wos000553797300107&url=https%3A%2F%2Fcvtisr.summon.serialssolutions.com%2F%23%21%2Fsearch%3Fho%3Df%26include.ft.matches%3Dt%26l%3Dnull%26q%3D
hasFullText 1
inHoldings 1
isFullTextHit
isPrint
link http://cvtisr.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwlV1LSwMxEA61ePCk0opv9uDRtG422WSObbV4kLJQhd5KHrO2oNvSboX-e5PtUhG8SC55QZgM5Msk880QcudSqxMwhhobG8qZRX8Opki9vnXsNFO1pl_kaKQmE8ga5H7PhUHEyvkMO6Fa_eW7hd2Ep7IuVB9l3tY5kFLuuFo16Td-gO6ol425x89g9cXQqSf_yppSgcbw-H_LnZD2D_suyva4ckoaWLRIP_AowtiW9j3wuOgRy8qLqoh6H-8Lb-LPPiN_AY3G28KG1AczvfatwdaEqMllYNK3ydvw6XXwTOv8B3TOpCopuBRcLLSGFLUKgfm0l8xKltvcozLmBphxSrjEAkuFThBD_miOKI0vLDkjzWJR4DmJBIjEGRAWueNWAPDUKOmU5V6FCZoL0gryT5e7EBfTWvTLv7uvyFHY4p1P2zVplqsN3pBD-1XO16vbSi_fU86RnA
linkProvider IEEE
linkToHtml http://cvtisr.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwlV1LSwMxEA5FBT2ptOLbPXg0rZtNdjPHtloq1qXQCr2VPKa2oFtpt0L_vcl2qQheJJe8IEwG8mWS-WYIubWxURFoTbUJNeXMoDsHY6RO3yq0islS070kTeVoBP0KudtyYRCxcD7Duq8Wf_l2blb-qawBxUeZs3V2Becs3LC1StpveA-NtNkfcIeg3u4LoV5O_5U3pYCNzuH_FjwitR_-XdDfIssxqWBWJS3PpPBja9py0GODB8wLP6osaL6_zZ2RP_0I3BU0GKwz45MfTNXStdpr7eMm555LXyOvncdhu0vLDAh0xhKZU7Ax2FAoBTEq6UPzKSeZSdjETBwu40QD01YKGxlgsVARos8gzRET7QqLTshONs_wlAQCRGQ1CIPcciMAeKxlYqXhTokR6jNS9fKPPzdBLsal6Od_d9-Q_e7wpTfuPaXPF-TAb_fGw-2S7OSLFV6RPfOVz5aL60JH3xZylOM
openUrl ctx_ver=Z39.88-2004&ctx_enc=info%3Aofi%2Fenc%3AUTF-8&rfr_id=info%3Asid%2Fsummon.serialssolutions.com&rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&rft.genre=proceeding&rft.title=2019+North+American+Power+Symposium+%28NAPS%29&rft.atitle=Coherency-Based+Detection+Algorithm+for+Synchrophasor+Cyberattacks&rft.au=Hart%2C+Philip&rft.au=Acharya%2C+Sowmya&rft.au=Wang%2C+Honggang&rft.date=2019-10-01&rft.pub=IEEE&rft.spage=1&rft.epage=6&rft_id=info:doi/10.1109%2FNAPS46351.2019.9000271&rft.externalDocID=9000271