Explainable Autonomic Cybersecurity System for Smart Power Grid

Chengjun Zhang, Wenda Shao, Xianglong Wang, Yinzhi Cao, Ahmed Hussain J. Alhamadah, Yu Zheng Lin, Pratik Satam, Lanier Watkins

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

The proliferation of high-speed networks in modern power systems has increased the interaction between internet and physical infrastructures, making them vulnerable to cyber-attacks. In response to this challenge, this paper offers a comprehensive power system simulation process and introduces the notion of explainable autonomic cybersecurity (eACS) for smart power grids. This approach leverages the existing framework in the area of autonomic cybersecurity, but with a specific focus on model explainability. Our testbed emulates a smart grid, incorporating data from power system components, a control center, and a substation. We implement a 2-level self-aware autonomic system with micro-intrusion detection systems (IDS) monitoring the control system, substation, and physical aspects of the smart grid separately. These micro-IDS feed their findings into an aggregator that identifies the threat type and provides an active response to mitigate it. The active countermeasure component automatically generates dedicated firewall rules based on the model's explainer, accompanied by a detailed diagnostic report to aid security analysts. Our results demonstrate that this approach effectively detects and reports a wide range of attacks, aiding in their mitigation.

Original languageEnglish (US)
Title of host publication2024 IEEE Conference on Communications and Network Security, CNS 2024
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronic)9798350375961
DOIs
StatePublished - 2024
Event2024 IEEE Conference on Communications and Network Security, CNS 2024 - Taipei, Taiwan, Province of China
Duration: Sep 30 2024Oct 3 2024

Publication series

Name2024 IEEE Conference on Communications and Network Security, CNS 2024

Conference

Conference2024 IEEE Conference on Communications and Network Security, CNS 2024
Country/TerritoryTaiwan, Province of China
CityTaipei
Period9/30/2410/3/24

Keywords

  • Cybersecurity
  • Industrial Control
  • Intrusion Detection
  • Network Security
  • Power Grids
  • Power System
  • Smart Grid

ASJC Scopus subject areas

  • Computer Networks and Communications
  • Artificial Intelligence
  • Information Systems
  • Safety, Risk, Reliability and Quality

Fingerprint

Dive into the research topics of 'Explainable Autonomic Cybersecurity System for Smart Power Grid'. Together they form a unique fingerprint.

Cite this