Access Control and Availability Vulnerabilities in the ISO/IEC 61850 Substation Automation Protocol
نویسندگان
چکیده
The ISO/IEC 61850 protocol for substation automation is a key component for the safe and efficient operation of smart grids, whilst offering a substantial range of functions. While extension standards, particularly ISO/IEC 62351 provide further security controls, the baseline protocol offers the assurances of access control and availability. In this paper a systematic study of selected aspects of the basic ISO/IEC 61850 protocol demonstrates that protocol-level vulnerabilities exist. The main finding is the development of a credential interception attack allowing an adversary, without credentials, to hijack a session during an initial association; the feasibility of this attack is proven using a formal language representation. A second attack based on a workflow amplification attack which relies on the assumptions in the protocol’s substation event model, which is independent of layered security controls and only relies on the protocol’s communication patterns is shown.
منابع مشابه
Comparative Reliability Analysis of Substation Automation Architecture Based on IEC 61850 Standard
Using IEC 61850 standard would increase the reliability and availability of electricity network and put a huge impact on network automation. Even though much research works has been done in substation system reliability, there is a few works in automated substation control system reliability. This paper evaluates the reliability of substation automation system based IEC 61850 comparatively cons...
متن کاملReliability and Availability Investigation for Next- Generation Substation Function Based on IEC 61850
During the last years utilities have been facing a strong trend towards new technologies and standards. The most significant task is to fundamentally transform the capabilities and bring new solutions that support better power quality supply. Standardization solution IEC 61850 in terms of protection, monitoring and control functions is a promising solution that provides a great impact on substa...
متن کاملEffect on Substation Engineering Costs of IEC 61850 and System Configuration Tools
Change management, software configuration training, and human error all impact the cost associated with substation automation engineering. Object-oriented engineering approaches as defined in the IEC 61850 standard represent significant cost savings when compared to traditional methods using hardwire and Distributed Network Protocol (DNP3). New multivendor system configuration tools are describ...
متن کاملDe-Synchronisation Attack Modelling in Real-Time Protocols Using Queue Networks: Attacking the ISO/IEC 61850 Substation Automation Protocol
Applications for developed Supervisory Control And Data Acquisition (SCADA) protocols in several domains, particularly the energy sector, must satisfy hard real-time constraints to ensure the safety of the systems they are deployed on. These systems are highly sensitive to Quality of Service (QoS) violations, but it is not always clear whether a compliant implementation will satisfy the stated ...
متن کاملTechniques for Securing Substation Automation Systems
Most critical infrastructure systems can be modeled as cyber-physical systems whose cyber components control the underlying physical components so as to optimize specified system objectives based on physical properties, physical constraints, and the current and estimated state of the system. Such systems usually require supports for security and performance guarantees: wrongly received or misse...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2016