2017
DOI: 10.1145/3084456
|View full text |Cite
|
Sign up to set email alerts
|

A Case Study in Power Substation Network Dynamics

Abstract: The modern world is becoming increasingly dependent on computing and communication technology to function, but unfortunately its application and impact on areas such as critical infrastructure and industrial control system (ICS) networks remains to be thoroughly studied. Significant research has been conducted to address the myriad security concerns in these areas, but they are virtually all based on artificial testbeds or simulations designed on assumptions about their behavior either from knowledge of tradit… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
10
0

Year Published

2018
2018
2024
2024

Publication Types

Select...
4
3
2

Relationship

1
8

Authors

Journals

citations
Cited by 14 publications
(10 citation statements)
references
References 16 publications
0
10
0
Order By: Relevance
“…The datasets shown in the paper were taken from four medium-voltage distribution substations non-consecutively over the course of two-and-a-half years. Formby, et al [20], also investigated TCP characteristics based on the real traffic captured from real power grid networks. Their observations mainly focused on the TCP behaviors of the DNP3 devices that could be distinguished from those in the traditional network.…”
Section: Traffic Characterizationmentioning
confidence: 99%
See 1 more Smart Citation
“…The datasets shown in the paper were taken from four medium-voltage distribution substations non-consecutively over the course of two-and-a-half years. Formby, et al [20], also investigated TCP characteristics based on the real traffic captured from real power grid networks. Their observations mainly focused on the TCP behaviors of the DNP3 devices that could be distinguished from those in the traditional network.…”
Section: Traffic Characterizationmentioning
confidence: 99%
“…In this study, we focused on possible attacks by interlopers able to manipulate the function codes of the message. We generated DNP3 application traffic, and formulated various datasets that reflected the traffic characteristics of DNP3 application messages, which were observed in real-life substations for a long time period [19][20][21]. Based on the datasets generated in this way, we used the occurrences of each function code per TCP connection as input features.…”
Section: Introductionmentioning
confidence: 99%
“…In addition to this, research was published in 2014 that provided a high-level look at power substation traffic [21]. Then in 2017, an in-depth study was published that provided a more detailed characterization [15] of behavior across multiple substations and discussed methods to improve TCP for ICS networks.…”
Section: Related Workmentioning
confidence: 99%
“…Kleinman and Wool also applied the DFA approach to S7 protocol [12]. In 2017, Formby et al [9] characterized the power grid traffic. This work focused on DNP3 protocol and examined some common assumptions about the SCADA network such as stable traffic volume, regularity of DNP3 poll time, and long availability of SCADA devices.…”
Section: Related Workmentioning
confidence: 99%