Engineering PapersSearch

DOE OSTI · 2997948

Threat Landscape for BESS and IBR

Abstract

The cyber risk landscape for BESS and IBR can be broken up by threats, vulnerabilities, and consequences for these systems. This presentation walks through the cyber risk landscape for BESS through the lens of consequence-informed awareness and mitigation for each risk factor. Threats with varying capabilities have been demonstrated in real-world events. Though threat actors can rarely be directly influenced by organizations, exposure of systems to adversaries can be limited (a known issue with IBR systems) to reduce likelihood of adversaries accessing systems with disruptive consequences. Common trends in disclosed IBR vulnerabilities include weak password generation or managements for various devices or services and web portal vulnerabilities that provide unauthorized access to data or capabilities or elevated user privileges. Understanding these common vulnerabilities and considering the consequences if these types of vulnerabilities were to occur can help mitigate risk. Consequences range from loss-of-view events that have no reliability impact to asset damage or grid stability impacts. Five case studies are briefly shared to highlight trends in real-world events affecting IBR.

Explore related subjects

Keep this discovery

Explore connections, maps & timelines

BibTeXRIS

Culler, Megan Jordan [Idaho National Laboratory] (ORCID:0000000331297823). 2025-01-23. Threat Landscape for BESS and IBR. https://www.osti.gov/biblio/2997948

Cite the original work for its findings. Save a collection to share your selection of sources.

KEEP EXPLORING

Related reports

Grid-Forming and -Following Background, Future, and Strategies

This paper reviews current grid forming (GFM) and grid following (GFL) inverter control strategies and explores the optimized ratio between these assets in high-penetration inverter-based resource (IBR) grids. Two case studies demonstrate that an insufficient GFM ratio leads to instability, while increasing GFM participation improves fault recovery, voltage stability, and frequency regulation.

14 - SOLAR ENERGY

Roadmap for Solar Photovoltaic (PV) Cybersecurity: A vision for improving cyber maturity of distributed and utility-scale solar energy installations

As the solar energy sector continues to expand, its integration into the broader energy infrastructure presents both unprecedented opportunities and new risks. The increasing reliance on digital technologies and interconnected systems in solar energy creates an expanded attack surface for motivated cyber adversaries. Cyberattacks have the potential to cause disruptions in energy production, damage to equipment, financial losses, and compromises in national security. Therefore, ensuring robust cybersecurity measures is paramount to protect the integrity, availability, confidentiality, and access control of solar energy systems. However, there are still key gaps and challenges to be addressed in industry and research, which stakeholders must race to address as they combat a growing number of real-world cyber incidents that affect solar energy systems and a growing number of vulnerabilities discovered and disclosed in key types of equipment. This roadmap explore the current state of solar PV cybersecurity and the gaps and challenges still to be addressed.

14 - SOLAR ENERGY