2021
DOI: 10.1016/j.comnet.2021.108008
|View full text |Cite
|
Sign up to set email alerts
|

SPEAR SIEM: A Security Information and Event Management system for the Smart Grid

Abstract: The technological leap of smart technologies has brought the conventional electrical grid in a new digital era called Smart Grid (SG), providing multiple benefits, such as two-way communication, pervasive control and self-healing. However, this new reality generates significant cybersecurity risks due to the heterogeneous and insecure nature of SG. In particular, SG relies on legacy communication protocols that have not been implemented having cybersecurity in mind. Moreover, the advent of the Internet of Thin… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
32
0
1

Year Published

2021
2021
2024
2024

Publication Types

Select...
4
3
3

Relationship

0
10

Authors

Journals

citations
Cited by 60 publications
(33 citation statements)
references
References 62 publications
0
32
0
1
Order By: Relevance
“…Although the modern electrical grid has many advantages, such as ubiquitous control and self-healing, it poses significant cybersecurity concerns. The combination of unsecured communication protocols, IoT security vulnerabilities, and the rapid advancement of cyberattacks and malware, in particular, might have severe results, including widespread blackouts and brownouts [90]. Exploring blockchain cyber risks, vulnerabilities, and mitigations in the context of safeguarding the grid's edge and offering more secure transactive energy solutions would be a massive benefit to grid cybersecurity and resilience research [47].…”
Section: Cybersecuritymentioning
confidence: 99%
“…Although the modern electrical grid has many advantages, such as ubiquitous control and self-healing, it poses significant cybersecurity concerns. The combination of unsecured communication protocols, IoT security vulnerabilities, and the rapid advancement of cyberattacks and malware, in particular, might have severe results, including widespread blackouts and brownouts [90]. Exploring blockchain cyber risks, vulnerabilities, and mitigations in the context of safeguarding the grid's edge and offering more secure transactive energy solutions would be a massive benefit to grid cybersecurity and resilience research [47].…”
Section: Cybersecuritymentioning
confidence: 99%
“…IDS, firewalls, etc), normalization of the data to a common format and finally synchronization of associated event fields (e.g. timestamps) for further data processing and for performing alert correlation [18], [19]. Apart from data gathering, attack modeling is also important for contextual detection.…”
Section: B Contextual Detection Of Cyber Attacksmentioning
confidence: 99%
“…SIEM challenges will continue to evolve as security managers grapple with cloud services, mobile, the Internet of Things, and other new technologies the IT department does not always control. IoT will be a huge factor as it drives the number of endpoints vulnerable to attackers [ 111 , 112 ]. It gets harder for cybercriminals to infiltrate computers but is still fairly easy to hack cameras, refrigerators, microwaves, Bluetooth tools, and other connected devices and use them as an attack vector.…”
Section: The Future Of Siemsmentioning
confidence: 99%