• DocumentCode
    1670971
  • Title

    AMI threats, intrusion detection requirements and deployment recommendations

  • Author

    Grochocki, David ; Huh, Jun Ho ; Berthier, Robin ; Bobba, Rakesh ; Sanders, William H. ; Cardenas, Alvaro A. ; Jetcheva, Jorjeta G.

  • Author_Institution
    Electr. & Comput. Eng. Dept., Univ. of Illinois at Urbana-Champaign, Urbana, IL, USA
  • fYear
    2012
  • Firstpage
    395
  • Lastpage
    400
  • Abstract
    Advanced Metering Infrastructures (AMI) facilitate bidirectional communication between smart meters and utilities, allowing information about consumption, outages, and electricity rates to be shared reliably and efficiently. However, the numerous smart meters being connected through mesh networks open new opportunities for attackers to interfere with communications and compromise utilities´ assets or steal customers´ private information. The goal of this paper is to survey the various threats facing AMIs and the common attack techniques used to realize them in order to identify and understand the requirements for a comprehensive intrusion detection solution. The threat analysis leads to an extensive “attack tree” that captures the attackers´ key objectives (e.g., energy theft) and the individual attack steps (e.g., eavesdropping on the network) that would be involved in achieving them. With reference to the attack tree, we show the type of information that would be required to effectively detect attacks. We also suggest that the widest coverage in monitoring the attacks can be provided by a hybrid sensing infrastructure that uses both a centralized intrusion detection system and embedded meter sensors.
  • Keywords
    metering; power system security; security of data; smart meters; smart power grids; AMI threat analysis; advanced metering infrastructures; attack detection; attack tree; centralized intrusion detection system; common attack techniques; comprehensive intrusion detection solution; embedded meter sensors; hybrid sensing infrastructure; mesh networks; smart meters; Cryptography; Intrusion detection; Mesh networks; Monitoring; Routing; Sensors;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Smart Grid Communications (SmartGridComm), 2012 IEEE Third International Conference on
  • Conference_Location
    Tainan
  • Print_ISBN
    978-1-4673-0910-3
  • Electronic_ISBN
    978-1-4673-0909-7
  • Type

    conf

  • DOI
    10.1109/SmartGridComm.2012.6486016
  • Filename
    6486016