综合智慧能源 ›› 2024, Vol. 46 ›› Issue (5): 58-64.doi: 10.3969/j.issn.2097-0706.2024.05.007

• 网络攻击防御 • 上一篇    下一篇

电力信息物理系统的网络攻击建模、演化规律及应对成本研究

叶飞1(), 钟晓静2,*(), 关前锋1()   

  1. 1.中国能源建设集团广东省电力设计研究院,广州 510663
    2.广州大学 机械与电气工程学院,广州 510006
  • 收稿日期:2022-10-27 修回日期:2022-11-24 出版日期:2024-05-25
  • 通讯作者: *钟晓静(1986),女,讲师,博士,从事传播系统建模分析与控制等方面的研究,zhongxj@gzhu.edu.cn
  • 作者简介:叶飞(1987),男,高级工程师,硕士,从事电力工程造价及工程咨询等方面的工作,yefei@gedi.com.cn
    关前锋(1984),男,高级工程师,硕士,从事电力工程造价及工程咨询等方面的工作,guanqianfeng@gedi.com.cn
  • 基金资助:
    广州市科技计划项目(20210202710)

Research on network attack modeling, evolution and response cost of power cyber physical systems

YE Fei1(), ZHONG Xiaojing2,*(), GUAN Qianfeng1()   

  1. 1. China Energy Engineering Group Guangdong Electric Power Design Institute,Guangzhou 510663,China
    2. School of Mechanical and Electrical Engineering, Guangzhou University, Guangzhou 510006, China
  • Received:2022-10-27 Revised:2022-11-24 Published:2024-05-25

摘要:

随着电网信息层和物理层的不断融通发展,信息流交互频繁,电力信息物理系统(CPS)面临巨大安全挑战,针对信息层的网络攻击传播至物理层,极易导致整个电力系统的崩溃。基于电力CPS的双层耦合结构,运用传播演化理论建立了一类新型的 S I A I B R A R B网络攻击传播模型,描述了网络攻击在电力网络节点中的传播行为。运用动力学分析方法分析网络攻击对电力CPS的攻击力和影响范围,提供预判网络攻击破坏力的具体算法;运用偏秩相关系数法和三维关联偏微分方法对系统参数进行敏感度分析,研究发现电力CPS的网络结构和传播概率对网络安全性至关重要,通过2个仿真模拟验证了上述理论结果的正确性。以南方电网有限公司历次典型设计和典型造价为例,梳理了电力系统网络安全防护体系实际建设费用变化趋势,建议从3个角度对安全防护体系进行精准定位建设,在降低电力CPS造价成本的同时保证系统的安全性。研究结果可为电网防御者在信息物理协同攻击威胁下制定新的防御方案提供参考。

关键词: 电力信息物理系统, 网络攻击传播模型, 演化规律, 敏感度分析, 安全防护体系, 成本分析

Abstract:

With the frequent interactions between the cyber layer and the physical layer, power cyber physical systems (CPSs) are facing great security challenges. Network attacks propagating from the cyber layer to the physical layer may cause the collapse of the entire power system. A new type of network attack propagation model,SIAIBRARB,is established based on the double-layer coupling structure of power CPSs and the propagation evolution theory. The model describes the propagation behavior of network attacks in power network nodes. Using dynamic analysis method, we analyze the attack intensity and influence range of a network attack on a power CPS,and provide a specific algorithm to predict the attack intensity. Moreover, the PRCCs and 3D correlation partial differential method are used to analyze the sensitivity of system parameters. The importance of the power CPS network structure and propagation probability to network security have been verified by two simulation tests. Taking the prior case of China Southern Power Grid Company Limited as an example, its typical design and costs are summarized,and the variation of the actual construction cost of the power network security protection system is analyzed. Considering from three perspectives, the construction of a security protection system can be precisely graded, in which the construction costs and CPS security should be considered simultaneously. The theoretical results can provide a reference for power grid defenders to develop new defense schemes under the threat of network attacks.

Key words: power CPS, network attack propagation model, evolution theory, sensitivity analysis, security protection system, cost analysis

中图分类号: