Machine-Learning-Based Anomaly Detection for GOOSE in Digital Substations

Citations

WEB OF SCIENCE

24
Citations

SCOPUS

28

초록

Digital substations have adopted a high amount of information and communication technology (ICT) and cyber-physical systems (CPSs) for monitoring and control. As a result, cyber attacks on substations have been increasing and have become a major concern. An intrusion-detection system (IDS) could be a solution to detect and identify the abnormal behaviors of hackers. In this paper, a Deep Neural Network (DNN)-based IDS is proposed to detect malicious generic object-oriented substation event (GOOSE) communication over the process and station bus network, followed by the multiclassification of the cyber attacks. For training, both the abnormal and the normal substation networks are monitored, captured, and logged, and then the proposed algorithm is applied for distinguishing normal events from abnormal ones within the network communication packets. The designed system is implemented and tested with a real-time IEC 61850 GOOSE message dataset using two different approaches. The experimental results show that the proposed system can successfully detect intrusions with an accuracy of 98%. In addition, a comparison is performed in which the proposed IDS outperforms the support vector machine (SVM)-based IDS.

키워드

deep neural networkspower systems fault classificationfault line location identificationINTRUSION DETECTION SYSTEM
제목
Machine-Learning-Based Anomaly Detection for GOOSE in Digital Substations
저자
Nhung-Nguyen, HongGirdhar, MansiKim, Yong-HwaHong, Junho
DOI
10.3390/en17153745
발행일
2024-08
유형
Article
저널명
Energies
17
15