首页> 外文期刊>Journal of network and computer applications >Prevailing and emerging cyber threats and security practices in IoT-Enabled smart grids: A survey
【24h】

Prevailing and emerging cyber threats and security practices in IoT-Enabled smart grids: A survey

机译:启用物联网的智能电网中流行和新兴的网络威胁与安全实践:一项调查

获取原文
获取原文并翻译 | 示例

摘要

This paper presents a comprehensive survey of existing as well as evolving security threats and vulnerabilities and the state-of-the-art countermeasures in Internet of Things (IoT)-enabled smart grids. The cybersecurity risks in smart grid networks and associated devices prevail in the form of malicious use leading to data espionage, physical damage to devices, intentional denial of service and exploitation for financial gain. We begin with an introduction to IoT and data transfer techniques between different devices, and their role and significance in the growth of smart grids. We then discuss privacy concerns, and various attack motives with which intruders try to break into smart grids. This is followed by a classification of threat actors in modern networks based on the sophistication of attacks they can launch. We also provide a classification of threat vectors in smart grids including attacks against integrity, attacks against availability, attacks against privacy and attacks against authentication. In addition, we investigate the nature and extent of risk posed by advanced persistent threats and the significance of deploying next generation intrusion detection systems in smart grids. The seven-step attack procedure known as cyber kill-chain is discussed and current detection, prevention, and access control measures in practice are also summarized in form of tables. These tables would help the reader correlate prevalent and futuristic attack techniques, countermeasures, and the applicability, scalability and feasibility of current security mechanisms to smart grids for achieving effective cyber hygiene. The paper then introduces novel attack surfaces that inevitably get established due to various cutting-edge communication techniques used in smart grids. One such mechanism discussed in the paper is time sensitive networking that injects the possibility of harnessing time as an attack surface. Based on the current survey, several recommendations for further research are discussed at the end of this paper.
机译:本文对启用了物联网(IoT)的智能电网中现有的和不断发展的安全威胁和漏洞以及最新对策进行了全面调查。智能电网和相关设备中的网络安全风险以恶意使用的形式盛行,从而导致数据间谍活动,设备的物理损坏,故意拒绝服务以及为牟利而进行的开发。我们首先介绍不同设备之间的物联网和数据传输技术,以及它们在智能电网发展中的作用和重要性。然后,我们讨论隐私问题,以及入侵者试图闯入智能电网的各种攻击动机。其次,根据现代网络中威胁行为者可以发起的攻击的复杂程度对其进行分类。我们还提供了智能电网中威胁向量的分类,包括针对完整性的攻击,针对可用性的攻击,针对隐私的攻击以及针对身份验证的攻击。此外,我们研究了高级持续威胁带来的风险的性质和程度,以及在智能电网中部署下一代入侵检测系统的重要性。讨论了称为网络杀伤链的七步攻击程序,并以表格形式总结了当前的实际检测,预防和访问控制措施。这些表将帮助读者将流行的和未来的攻击技术,对策以及当前安全机制对智​​能电网的适用性,可扩展性和可行性进行关联,以实现有效的网络卫生。然后,本文介绍了由于智能电网中使用的各种尖端通信技术而不可避免地建立的新型攻击面。本文讨论的一种这样的机制是时间敏感型网络,它注入了利用时间作为攻击面的可能性。在当前调查的基础上,本文最后讨论了一些进一步研究的建议。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号