Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Critical Infrastructure Security”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 253 records · Page 14

Critical review of lithium recovery from geothermal brines with implications for Smackover Formation, USA

The rapidly growing demand for lithium, a critical element for energy storage and national security technologies, has intensified concerns over the long-term availability and environmental impact of conventional lithium sources, such as hard-rock mining. To meet future demand, it is vital to explore unconventional resources that can provide sustainable domestic supplies. Geothermal brines, produced as a byproduct of geothermal energy generation, offer a promising alternative for lithium recovery by leveraging existing infrastructure and renewable energy production. In particular, the Smackover Formation, an extensive reservoir of high-salinity brines spanning Arkansas, Texas, Louisiana, Mississippi, and Alabama in the U.S. Gulf Coast, holds significant untapped lithium reserves. Co-producing geothermal energy and lithium from these brines aligns with sustainable extraction objectives while addressing resource scarcity. This review synthesizes current knowledge of lithium occurrence in the Smackover Formation and geothermal resources in the region, while also exploring how emerging tools such as machine learning can enhance resource targeting and co-production efficiency. Finally, we discuss key technical challenges and outline future research directions needed to advance lithium extraction from geothermal brines and secure a resilient domestic supply chain.

15 GEOTHERMAL ENERGY↗

Achieving Runtime State Verification Assurance in Critical Cyber-Physical Infrastructures

Industrial Cyber-Physical Systems (ICPS) are an essential backbone of national critical infrastructures. They help monitor and control crucial cyber-enabled services such as energy generation. Commonly ICPS monitors the physical process through Supervisory Control and Data Acquisition (SCADA) systems. The SCADA ecosystem takes critical real-time and future system operational decisions based on the runtime state behavior of field sensors. Traditional SCADA systems use legacy and insecure communication protocols such as the Modbus protocol that lack adequate security mechanisms to provide robust runtime state behavior assurance of constrained field sensors. Therefore, constrained field sensors are commonly vulnerable to standard semantic attacks that gradually change the behavior state of infected devices. This paper discusses process integrity assurance techniques necessary to enhance the security of behavior-based protocols such as the Modbus protocol. The Runtime State Verification (RSV) protocol proposed in this paper aims to address semantic attacks in the SCADA ecosystem by integrating behavior-based Mandatory Results Automata (MRA) and a Hyperledger Fabric (HLF) network. The RSV protocol provides high process integrity assurance through enhanced behavior-based MRA suitable for the constrained field devices. A proof of concept of the RSV protocol has been evaluated in an emulated water-tube boiler. Preliminary evaluations of the RSV protocol aimed to measure the efficiency of the proposed protocol by monitoring an Combustion Efficiency (CE) process necessary to preserve optimal combustion, thus minimizing costs and future maintenance of water-tube boilers. We analyze the overall network overhead and latency of the proposed RSV protocol by evaluating the HLF network performance and comparing the proposed RSV protocol with the state-ofart BloSPAI protocol. Through the preliminary evaluations of the proposed RSV protocol, this paper demonstrates that the proposed RSV protocol overcomes the shortcomings and network overhead of the BloSPAI protocol by integrating behavior-based authentication through novel MRAs and HLF networks.

Rivera, Abel Gomez↗

Remote operation of the DIII-D National Fusion Facility

Abstract Full remote scientific operation of the DIII-D National Fusion Facility is now possible through significant advances in the computer science hardware and software infrastructure made over the last decade. Capabilities around information visualization, data movement, and communication have all been enhanced. The level of capability deployed to remotely operate DIII-D required an infrastructure advancement over what had previously been achieved in the fusion community. The large quantity of real-time data that is automatically displayed on DIII-D’s control room screens can now be visualized by remote participants via web-based applications. New audio/video solutions using the VoIP and instant messaging application Discord have been implemented to mimic the dynamic and ad-hoc scientific conversations that are critical in successfully operating an experimental campaign. Discord’s ability for a user to rapidly move between audio channels, text with images, and share screens is a significant enhancement over traditional videoconferencing tools. In addition, multiple combinations of broadcast audio are made available via a web-based application to allow remote participants to simultaneously listen to general announcements/sounds while conducting their own specific conversations. Secure methodologies have been put into place to allow remote control of hardware including DIII-D’s plasma control system application. Secure methods also included the ability of the on-site team to closely coordinate their work with remote team members which has been enhanced through extensions to the wireless network and the use of tablet computers for audio/video/screen sharing. However, no amount of software can fully replace the need for ‘hands on hardware.’ This infrastructure was severely stress tested during the COVID-19 pandemic where occupancy of the DIII-D control room was restricted. Operational efficiency during the pandemic, measured in discharges per hour, remained high (3.8 ± 0.8) compared to values obtained pre-pandemic (3.7 ± 0.8).

70 PLASMA PHYSICS AND FUSION TECHNOLOGY↗

Reconfigurable Network Slicing Orchestration in Network Function Virtualization Compatible Operational Technology Environment

The ongoing transition to Industry 4.0, which is characterized by increased inter-connectivity of cyber-physical systems, requires having time-sensitive, high throughput, and secure transfer of critical data in industrial sites. In this context, network slicing emerges as a critical tool to ensure timely data delivery by provisioning the network resources to cater to specific applications’ requirements and mitigating potential cyber attacks. To address these challenges, this paper aims to tackle two key questions essential for the successful implementation of network slicing in industrial environments. First, it investigates architectural considerations for developing a network infrastructure capable of supporting network slicing functionalities effectively. The proposed approach significantly improves deployment efficiency over traditional manual configurations. Second, it delves into the automated orchestration process, elucidating the steps and components involved in transitioning from a static network management approach to dynamically leverage network function virtualization schemes for creating network slices in ad-hoc manner. The system demonstrates high throughput suitable for production-level solutions and maintains exceptionally low latency, making it ideal for ultra-reliable low-latency communications. Even with increased network demands, the system remains stable, with effective Quality of Service (QoS) management, ensuring reliable performance under varying conditions. The proposed architecture outlines the necessary components, services, and communication protocols required for a production-level orchestrator for network segmentation in SCADA environments.

Rodiles Delgado, Brian G.↗

Factories-in-Space for Servicing, Assembly, & Manufacturing

Space 2.0 is a promising frontier for scientific exploration and the advancement of commerce, security, and technology. To effectively harness this potential, it is imperative to establish a multifunctional, resilient, and sustainable infrastructure that enables the maintenance and production of space-based systems. This capability is a driver for mission success on-orbit and for interplanetary travel to other celestial bodies. Central to this infrastructure is the establishment of orbital manufacturing facilities, referred to as 'factories-in-space' (FiS), which serve as critical nodes in the supply chain for the servicing, assembly, and production of systems essential for space-based operations. This paper presents a framework for understanding the key principles and design considerations underpinning FiS.

Technology↗

Secure Large-Scale Airport Simulations Using Distributed Computational Resources

To fully conduct research that will support the far-term concepts, technologies and methods required to improve the safety of Air Transportation a simulation environment of the requisite degree of fidelity must first be in place. The Virtual National Airspace Simulation (VNAS) will provide the underlying infrastructure necessary for such a simulation system. Aerospace-specific knowledge management services such as intelligent data-integration middleware will support the management of information associated with this complex and critically important operational environment. This simulation environment, in conjunction with a distributed network of supercomputers, and high-speed network connections to aircraft, and to Federal Aviation Administration (FAA), airline and other data-sources will provide the capability to continuously monitor and measure operational performance against expected performance. The VNAS will also provide the tools to use this performance baseline to obtain a perspective of what is happening today and of the potential impact of proposed changes before they are introduced into the system.

McDermott, William J.↗

User-Focused Tools to Enhance IT/OT Cyber Resilience within the Power Grid

The power grid is undergoing several changes that are increasing its complexity as nexuses between electric-gas, transmission-distribution, and energy-communications continue to become increasingly critical. This system is heavily dependent on communication infrastructure and controls, and it relies on humans in operational technology (OT) and information technology (IT) roles to manage the increasing breadth, depth, and speed of data. Many technical challenges have presented themselves and will need to be addressed to provide reliable grid operations. With increased reliance on distributed controls and communication infrastructure, cybersecurity becomes an inherent requirement. When considering current cyber-physical security solutions for the power grid, one can notice a clear divide between information technology and operation technology networks. However, in real-life applications, these networks are interdependent. This work presents results of interviews with key utility cybersecurity personnel, analyzes the results, and makes recommendations towards solution of existing technical and operational challenges realized. Existing workflows are presented, wireframe interviews are discussed, and tool requirements are described. The existence of easy-to-implement solutions, based on existing energy management systems, highlight the potential for real-life applications.

cybersecurity, resilience, user-centered design, p↗

Supply Chain Management in Cyber Grid Guard Framework

Grid modernization has impeded innovative power grid applications and energy resources that are increasingly distributed. Blockchain/distributed ledger technology (DLT) has the potential to enhance the resilience of the electric infrastructure, particularly in a decentralized and distributed environment. The benefits of blockchain are to ensure asset information and lifecycle events are secure and traceable and identify potential malicious modification of data. Oak Ridge National Laboratory (ORNL) has developed a framework, Cyber Grid Guard (CGG), incorporating blockchain. The system implements a low-energy, fast, and robust enhancement to system trustworthiness within and across electric grid systems, including substations, control centers, and metering infrastructures. Currently, one of the major concerns is supply chain attacks. There have been several recent attacks that have significantly impacted critical infrastructures and organizations around the world. This document focuses on how CGG can be used to address the supply chain issue.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Multilevel Cybersecurity for Photovoltaic Systems

The motivation behind this project is to protect critical infrastructure in electric power generation pertaining to solar photovoltaic (PV) systems. This growing renewable energy resource is becoming a more vital part of the nation’s energy portfolio, particularly since it has achieved grid-parity to existing generation methods in terms of cost. It is thus vital that steps be taken to ensure the cybersecurity of these assets. The project goal was to devise a multilevel cybersecurity solution to address PV security gaps at the inverter and system levels, and field test the solution under the supervision and review of a US-based solar inverter manufacturer and PV installer/operator. A two-level cyberattack defense approach was formulated whereby the first level, the solar inverter level, hardens individual devices and achieves a deeply cyber-secure inverter. The inverter level security involves a multi-layer defense-in-depth approach for securing the inverter while also providing data for the system level algorithms. The second level, the system level, addresses intrusion detection and restoration involving an ensemble of inverters and relevant systems.

14 SOLAR ENERGY↗

Sampling and Analysis Plan for Investigation of Undeclared Nuclear Activities - 20104

The nuclear-centered energy policy in South Korea is moving towards a nuclear-free era. It also facilitates an action or progress on the denuclearization of the Korean peninsula. The Nuclear Safety and Security Commission (NSSC) launched a new R and D project which attempts to verify nuclear activities via analyzing environmental samples. Environmental samples possibly contain significant radiological information relevant to past undeclared activities. In order to precisely verify them, it is essential to provide 1) the concrete information of target facilities, 2) appropriate methodologies and procedures, and 3) well-suited instrumentation and equipment corresponding to sample signatures. It is also important to provide scientific reliability or validity in any process such as sample collection, handling, transportation and laboratory analysis. Therefore, the information of nuclear facilities (fuel fabrication plant, graphite moderated reactor, reprocessing plant) in North Korea are reviewed in order to determine parameters for appropriate sampling methods representing a facility's characteristics. Secondly, a sampling procedure for radioactive elements is being developed based on international and domestic standards such as ASTM (American Society for Testing and Materials), KS (Korean industrial Standards), and International Atomic Energy Agency (IAEA) manuals. The procedure contains some specific information including sampling process, sampling tools, amount of sample, sample identification, and other related information. Developing the qualified national guidelines is most important since sampling and analyzing results can be used as evidences of nuclear activities. The guideline developed through this work will clearly define various methodologies such as document verification, sampling procedures, collection methods, sample storage criteria, chain of custody, and transportation conditions. The final objective of this work is to establish the infrastructure and regulatory framework for assessment of nuclear activities, and provide a national guideline for sampling and analysis. This will bring confidence in the results and play a critical role in complete denuclearization progress in South Korea. (authors)

98 NUCLEAR DISARMAMENT, SAFEGUARDS, AND PHYSICAL P↗

EQSIM and RAJA: Enabling Exascale Predictions of Earthquake Effects on Critical Infrastructure

Nearly 120 years ago, the great “San Francisco” earthquake of 1906 provided a stark and sobering view of the havoc that can be caused by the sudden and violent movement of Earth’s tectonic plates. According to USGS, the rupture along the San Andreas fault extended 296 miles (447 kilometers) and shook so violently that the motion could be felt as far north as Oregon and east into Nevada. The estimated 7.9-magnitude quake and subsequent fires decimated the major metropolis and surrounding areas: buildings turned to ruins, hundreds of thousands of people left homeless, and a death toll exceeding 3,000. Today, as evidenced by the catastrophic 7.8-magnitude earthquake that struck Turkey in February of 2023, large earthquakes still present a significant potential danger to life and economic security as researchers work to develop ways to better understand earthquake phenomena and quantify associated risks.

42 ENGINEERING↗

Offshore Advanced Infrastructure Integrity Model (AIIM) Dashboard

The Advanced Infrastructure Integrity Model (AIIM) is a multivariate, multi-machine learning modeling technology applied to evaluate the integrity of offshore energy infrastructure (e.g., pipelines, platforms) in the U.S Gulf Region. Offshore energy infrastructure plays an essential role in ensuring access to safe and secure energy for the United States. According to the U.S. Energy Information Administration (EIA), production in the U.S. Gulf Region accounts for 15% of total crude and 5% of total natural gas from the United States. Many of these structures have been operating for close to or past their design life, while others have the chance of attrition before return on investment. To better understand the potential for reuse or life extension opportunities, an assessment of the infrastructure integrity is critical to inform safe decision making. Assessing structural integrity, AIIM provides key insights that inform infrastructure use and reuse, as well as hazard prevention planning, in support of stakeholders including researchers and industry.

Advanced Infrastructure Integrity Model↗

Characterizing the Geothermal Lithium Resource at the Salton Sea

The energy transition towards a more sustainable and renewable future is a pivotal global endeavor. Central to this shift for the United States is the critical role of domestically sourced lithium, a key mineral in the production of high-performance batteries essential for electric vehicles and renewable energy storage systems. This has driven the United States to invest heavily in a domestic supply chain for batterygrade lithium to enhance energy security, reduce supply chain vulnerabilities, and foster economic growth by tapping into local resources. A notable example is the Biden Administration’s “American Battery Materials Initiative,” which was included in the $2.8-billion Bipartisan Infrastructure Law (The White House, 2022).

25 ENERGY STORAGE↗

Countering Weapons of Mass Destruction (CWMD) Zero Trust Framework: CWMD Zero Trust Principles Model

The research focuses on the critical need for enhanced cybersecurity within the Countering Weapons of Mass Destruction (CWMD) Office, specifically targeting Chemical, Biological, Radiological, and Nuclear devices. Traditional perimeter-based security models are insufficient against modern cyber threats, prompting a shift toward Zero Trust principles (ZTP) that emphasize continuous verification and stringent security for all devices. Federal directives mandate the adoption of Zero Trust (ZT) across agencies, supported by guidelines from National Institute of Standards and Technology (NIST), U.S. Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA), U.S. Department of Defense (DoD) and National Security Agency (NSA). The research involved mapping ZT guidance from these agencies to develop tailored CWMD ZTP. The study identified gaps and areas for improvement, including clear transitional guidance from traditional to ZT architectures and the focus on explicit cross cutting capabilities. Design improvements are recommended to ensure increased comprehensive protection and resilience against sophisticated cyber threats for Chemical, Biological, Radiological, and Nuclear (CBRN) devices. Collaborative efforts among federal agencies are essential for the successful deployment of an optimized ZT guidance.

45 MILITARY TECHNOLOGY, WEAPONRY, AND NATIONAL DEF↗

Controlling Infrastructure Costs: Right-Sizing the Mission Control Facility

Johnson Space Center's Mission Control Center is a space vehicle, space program agnostic facility. The current operational design is essentially identical to the original facility architecture that was developed and deployed in the mid-90's. In an effort to streamline the support costs of the mission critical facility, the Mission Operations Division (MOD) of Johnson Space Center (JSC) has sponsored an exploratory project to evaluate and inject current state-of-the-practice Information Technology (IT) tools, processes and technology into legacy operations. The general push in the IT industry has been trending towards a data-centric computer infrastructure for the past several years. Organizations facing challenges with facility operations costs are turning to creative solutions combining hardware consolidation, virtualization and remote access to meet and exceed performance, security, and availability requirements. The Operations Technology Facility (OTF) organization at the Johnson Space Center has been chartered to build and evaluate a parallel Mission Control infrastructure, replacing the existing, thick-client distributed computing model and network architecture with a data center model utilizing virtualization to provide the MCC Infrastructure as a Service. The OTF will design a replacement architecture for the Mission Control Facility, leveraging hardware consolidation through the use of blade servers, increasing utilization rates for compute platforms through virtualization while expanding connectivity options through the deployment of secure remote access. The architecture demonstrates the maturity of the technologies generally available in industry today and the ability to successfully abstract the tightly coupled relationship between thick-client software and legacy hardware into a hardware agnostic "Infrastructure as a Service" capability that can scale to meet future requirements of new space programs and spacecraft. This paper discusses the benefits and difficulties that a migration to cloud-based computing philosophies has uncovered when compared to the legacy Mission Control Center architecture. The team consists of system and software engineers with extensive experience with the MCC infrastructure and software currently used to support the International Space Station (ISS) and Space Shuttle program (SSP).

Martin, Keith↗

Gender Mainstreaming in Nuclear Security: Strategies for Incorporating Gender Equality by Design in the IAEA Milestones Approach

Gender mainstreaming has emerged as a critical mechanism towards achieving gender equality in the development and implementation of laws, policies, and programs, including those related to national security. Gender mainstreaming is generally defined as the process of assessing the implications for women and men of any planned action, including legislation, policies, and programs, in all areas and at all levels, with the ultimate goal to achieve gender equality. Gender mainstreaming, which in essence can be thought of as “gender equality by design,” is an important element for building a robust nuclear security infrastructure. To date, however, gender mainstreaming has not been fully operationalized in the nuclear sector. For instance, the IAEA Milestones Approach, which provides important guidance to states seeking to develop nuclear power programs, has not yet incorporated or addressed gender considerations in its various phases or nuclear infrastructure issues, including those related to nuclear security. Therefore, this paper will argue that specifically for nuclear newcomer states, gender mainstreaming could serve as a powerful tool to integrate gender considerations into the design of laws, policies, programs, and entities necessary to successfully implement a nuclear power program. The objective of this study is twofold: first, to explore the concept of gender mainstreaming and its relevance to nuclear security, and second, to identify how gender can be incorporated into the IAEA Milestones Approach. The paper will emphasize the importance of developing guidance for the IAEA and nuclear newcomer states on how gender considerations could be incorporated throughout the development of a nuclear security program.

Siserman-Gray, Ioana-Cristina↗

Consequence-Driven Cybersecurity for High-Power Electric Vehicle Charging Infrastructure

Cybersecurity of high-power charging infrastructure for electric vehicles (EVs) is critical to the safety, reliability, and consumer confidence in this publicly accessible technology. Cybersecurity vulnerabilities in high-power EV charging infrastructure may also present risks to broader transportation and energy-infrastructure systems. Here, this paper details a methodology used to analyze and prioritize high-consequence events that could result from cybersecurity sabotage to high-power charging infrastructure. The highest prioritized events are evaluated under laboratory conditions for the severity of impact and the complexity of cybersecurity manipulation. Mitigation solutions and strategies are presented to secure the vulnerabilities that potentially lead to high-consequence events. These mitigations can be immediately implemented by industry or executed during the design stage.

25 ENERGY STORAGE↗

Cyber-Physical Resiliency for Wind Power Generation

During the next three years, wind power generation is expected to add more generation capacity to the national electrical grid than any other energy sector. With new wind turbine designs rated power over 10 MW and wind farms reaching over 1 GW capacities, the consequences of cyber-attacks on wind power generation are becoming increasingly more critical. Moreover, the known vulnerabilities of wind turbine control systems and the potential damaging effects of intrusions, motivate an urgent protection improvement for the wind power generation sector. This program has developed a variety of new adaptive defense technologies that enable wind power generation systems to survive sophisticated cyberattacks by enhancing the control systems capabilities of detection, localization, and accommodation. The introduction of these technologies in the on-shore and the emerging off-shore market will result in a significantly more reliable and secure wind power infrastructure.

17 WIND ENERGY↗