Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “attack modeling”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 37 records · Page 2

Deception-Based Cyber Attacks on Hierarchical Control Systems using Domain-Aware Koopman Learning

Industrial control systems are subject to cyber attacks that produce physical consequences. These attacks can be both hard to detect and protracted. Here, we focus on deception-based sensor bias attacks made against a hierarchical control system where the attacker attempts to be stealthy. We develop a a data-driven, optimization-based attacker model and use the Koopman operator to represent the system dynamics in a domain-aware and computationally efficient manner. Using this model, we compute several different attacks against a high-fidelity commercial building emulator and compare the impacts of those attacks to each other. Finally, we discuss some computational considerations and identify avenues for future research.

koopman operator, Cyber-Physical Security, machine↗

A Risk Assessment Framework for Cyber-Physical Security in Distribution Grids with Grid-Edge DERs

Integration of inverter-based distributed energy resources (DERs) is reshaping the landscape of distribution grids to fulfill the socioeconomic, environmental, and sustainability goals. Addressing the technological challenges of DER grid integration requires an adaptive communication layer for efficient DER management and control. This transition has given rise to a cyberphysical system (CPS) architecture within the distribution system, causing new vulnerabilities for cyberphysical attacks. To better address potential threats, this paper presents a comprehensive risk assessment framework for cyberphysical security in distribution grids with grid-edge DERs. The framework incorporates a detailed CPS model accounting for dynamic DER characteristics within the distribution grid. It identifies vulnerabilities in DER communication systems, models attack scenarios, and addresses communication latency crucial for inverter control timescales. Subsequently, the quantification of attack impacts employs an attack probability model including both the vulnerability and criticality of cyber components. The proposed risk assessment framework was validated through testing on the modified IEEE 13-node and 123-node test feeders.

cyberattack↗

An Active Detection Scheme for Sensor Spoofing in Grid-tied PV Systems

In this paper an active detection scheme for sensor spoofing (manipulated externally via a cyber attack) in grid-tied PV systems is discussed. The core of the proposed active detection scheme is to introduce a private (secret) watermarking signal into the control inputs of the DC-DC converter and DC-AC inverter stages to detect any malicious spoofing (manipulation) of voltage/current sensor measurements controlling both the DC-DC converter maximum power point tracking (MPPT) stage and the DC-AC inverter of the grid-tied PV system. Several types of possible spoofing mechanisms (attack models) are discussed. The proposed sensor spoofing attack detector system consists of injecting a small magnitude of digital watermarking signal (DWS) and conduct three statistical watermark tests on the reported sensor measurements to determine if a) the proposed system is healthy and operating as expected b) if sensor signals were spoofed (manipulated) externally or c) if a particular sensor is malfunctioning due to a faulty hardware. It is shown via extensive simulations that the proposed DWS approach is robust in detecting malicious external manipulation of sensors controlling the grid tied PV system. A testing platform is currently under development and the experimental results will be discussed in the conference presentation.

Ibrahim, Hasan↗

The 12-foot pressure wind tunnel restoration project model support systems

The 12 Foot Pressure Wind Tunnel is a variable density, low turbulence wind tunnel that operates at subsonic speeds, and up to six atmospheres total pressure. The restoration of this facility is of critical importance to the future of the U.S. aerospace industry. As part of this project, several state of the art model support systems are furnished to provide an optimal balance between aerodynamic and operational efficiency parameters. Two model support systems, the Rear Strut Model Support, and the High Angle of Attack Model Support are discussed. This paper covers design parameters, constraints, development, description, and component selection.

Sasaki, Glen E.↗

Supersonic Aerodynamic Characteristics of a Space Shuttle Orbiter Model at Angles of Attack from 20 Deg to 90 Deg

Space Shuttle Orbiter aerodynamic characteristics have been determined in the angle-of-attack range from 20 to 90 degrees and Mach numbers from 4.60 to 1.80 at Reynolds numbers, based on body length, of 2.15 x 10 to the 6th and 4.30 x 10 to the 6th power. Emphasis is on vehicle stability, control, and trim characteristics above a 60 degree angle of attack. The model used was a 0.986 percent scale Orbiter, having a blade-mounted support system entering the model in the region of the vertical tail. Elevon deflections of 0, -10, -20, and -40 degrees and body-flap deflections of 0, +6 and -12 degrees were investigated individually and in combination. Schlieren photographs are also presented for selected configurations and Mach numbers. The Orbiter was found to be longitudinally stable and trimmable in the angle-of-attack range from approximately 60 to 80 degrees. Both the elevon and body flap provided positive pitch control-effectiveness at angles of attack from 60 to 80 degrees and the Mach numbers of this study. For the range of neutral to stable trim in the angle-of-attack range above about 55 degrees, the deflected elevon/body-flap combination provided positive trimmed lift and lift/drag ratios.

Spencer, Bernard, Jr.↗

Enhancing the Survivability of Power Systems With Grid-Edge DERs Against DoS Attacks

Power system survivability, defined as the ability of a system to maintain steady-state functionality under varying operational conditions, reflects its resilience against disturbances. While existing research primarily focuses on physical-layer disturbances, the increasing prevalence of grid-edge DERs, which are primarily used for integrating renewable energy, has significantly expanded the cyber attack surface. As a result, operational disruptions caused by cyber threats are posing significant challenges to system survivability and cannot be overlooked. To fill this gap, we redefine system survivability to incorporate the cyber layer’s status and propose a Distributionally Robust Optimization (DRO) approach to enhance power system survivability against potential cyber-physical threats. In this paper, we first analyze the operational guidelines of systems with a high penetration of DERs under various cyber network conditions and redefine survivability in this context. Next, we focus on the most common cyber threat, Denial-of-Service (DoS) attacks, and develop a corresponding attack model. This model allows for the creation of a kernel-based ambiguity set that captures attack uncertainties using historical data. Finally, we transform the proposed DRO model as a tractable optimization problem, with its solution providing an optimal cyber redundancy plan to enhance system survivability in DoS attack scenarios. Simulation results on the IEEE 13-node and 123-node test feeders demonstrate the effectiveness of our proposed model in improving system survivability. This model can also be expanded to include other types of common attacks and serve as a comprehensive planning tool to improve overall cyber physical survival of the system.

cybersecurity↗

A Cryptographic Method for Defense Against MiTM Cyber Attack in the Electricity Grid Supply Chain

Critical infrastructures such as the electricity grid can be severely impacted by cyber-attacks on its supply chain. Hence, having a robust cybersecurity infrastructure and management system for the electricity grid is a high priority. This paper proposes a cyber-security protocol for defense against man-in-the-middle (MiTM) attacks to the supply chain, which uses encryption and cryptographic multi-party authentication. A cyber-physical simulator is utilized to simulate the power system, control system, and security layers. The correctness of the attack modeling and the cryptographic security protocol against this MiTM attack is demonstrated in four different attack scenarios.

Paul, Shuva↗

Modeling and Evaluation of Cyber-Attacks on Grid-Interactive Efficient Buildings

Grid-interactive efficient buildings (GEBs) are not only exposed to passive threats (e.g., physical faults) but also active threats such as cyber-attacks launched on the network-based control systems. The impact of cyber-attacks on GEB operation are not yet fully understood, especially as regards the performance of grid services. To quantify the consequences of cyber-attacks on GEBs, this paper proposes a modeling and simulation framework that includes different cyber-attack models and key performance indexes to quantify the performance of GEB operation under cyber-attacks. The framework is numerically demonstrated to model and evaluate cyber-attacks such as data intrusion attacks and Denial-of-Service attacks on a typical medium-sized office building that uses the BACnet/IP protocol for communication networks. Simulation results show that, while different types of attacks could compromise the building systems to different extents, attacks via the remote control of a chiller yield the most significant consequences on a building system’s operation, including both the building service and the grid service. It is also noted that a cyber-attack impacts the building systems during the attack period as well as the post-attack period, which suggests that both periods should be considered to fully evaluate the consequences of a cyber-attack.

Fu, Yanyang↗

Nonlinear Analysis of a Two-Parachute System Undergoing Pendulum Motion

Motion resembling that of a pendulum undergoing large-amplitude limit cycle oscillation was observed during a series of flight tests of an unoccupied Orion Capsule Parachute Assembly System (CPAS) comprised of two parachutes and a capsule payload. Large excursions away from vertical by the capsule could cause it to strike the ground or ocean at a large angle with respect to vertical, or at a large horizontal speed. These conditions are undesirable because they would endanger the occupants of the capsule in an actual mission. A simplified planar dynamics model in conjunction with a nonlinear normal force coefficient vs. angle of attack model serves as the basis of an analytical investigation of the fundamental dynamics of this pendulum motion. Output error methodology from system identification theory was used to identify the parameters of the nonlinear aerodynamics model. The identified model yielded excellent comparison with portions of flight test data where the pendulum motion occurred. Due to the inherent nonlinear nature of the pendulum motion limit cycle, traditional nonlinear analysis techniques were applied to gain further insight into the system. Lyapunov’s direct method provided mathematical proof in the absolute stability of the pendulum mode. Describing Function method was used to predict the amplitude and frequency of the limit cycle oscillation. Finally, phase plane analysis allowed easy visualization on the size and shape of the limit cycle with respect to variations in key aerodynamic parameters.

Pei, Jing↗

Toward more environmentally resistant gas turbines - Progress in NASA-Lewis programs

The paper surveys programs for improving the environmental resistance of gas turbine and power system materials to oxidation and hot corrosion. A computer program Corest has been produced which provides an initial method for predicting long-time metal loss using short-time oxidation data. The role of the coefficient of thermal expansion mismatch on oxide spallation is being studied. A paralinear oxidation attack model in conjunction with regression analysis of weight change data has been applied to the study of oxidation and hot corrosion attack of some Ni-Cr-Al system alloys. Oxide-dispersion strengthened alloys based on the Ni-Cr-Al system are being developed. Sodium sulfate formation during turbine combustion is being investigated from a thermodynamic viewpoint.

Lowell, C. E.↗

GridSTIX

SF-25-112 Grid-STIX is a comprehensive extension of the STIX (Structured Threat Information Expression) 2.1 ontology specifically designed for electrical grid cybersecurity applications. This ontology provides a standardized, machine-readable framework for modeling grid assets, operational technology devices, threats, vulnerabilities, supply chain risks, and security relationships in electrical power systems. ## Key Features - **Comprehensive Grid Coverage**: Physical assets, OT devices, grid components, sensors, and energy storage systems - **Zero Trust Architecture**: Policy decision points, enforcement points, trust brokers, and continuous monitoring - **AMI Infrastructure**: Advanced metering networks, head-end systems, mesh gateways, and MDM systems - **Advanced Security Modeling**: Attack patterns, vulnerabilities, mitigations, and supply chain risks - **Critical Grid Relationships**: Power flow, protection, control, and synchronization relationships - **Supply Chain Security**: Supplier modeling, country of origin tracking, and risk assessment - **Protocol Support**: DNP3, Modbus, IEC 61850, IEC 60870-5-104, OPC-UA, and IEEE standards - **Python Code Generation**: Automated STIX-compliant Python class generation from ontologies - **Interactive Visualization**: Enhanced HTML network graphs with grid-specific categorization - **STIX 2.1 Compliance**: Full compatibility with STIX threat intelligence ecosystem

Blakely, Benjamin [Argonne National Laboratory (AN↗

Cyber Attack Sequences Generation for Electric Power Grid

Security assessment of cyber-physical energy systems (CPESs) such as the electric power grid is a critical operation to maintain availability, reliability, and quality of service in the presence of persistent threats from malicious cyber actors. Existing security assessment approaches such as penetration testing and red teaming rely on subject matter expert experience and forensic cyber analysis of historical events to perform realistic, threat-informed assessments of CPES defense. CPESs have a large attack surface because of the heterogeneity and complexity of underlying topology, devices, measurements, and vulnerabilities. The aforementioned approaches lead to partial coverage of the attack surface with a large set of unknown but possible exploits. There is a need to automate the CPES attack surface discovery and contextualize it for relevant, highly probable, real-world attack scenarios. We propose a methodology and framework to facilitate the discovery of the CPES attack surface. We present a multilayer attack graph with ranked attack sequences to describe CPES failure scenarios. We present a work-in-progress framework that lists key components to automate the attack modeling and sequence generation. We demonstrate the published National Electric Sector Cybersecurity Organization Resource CPES failure scenario to highlight the trustworthiness of generated attack sequences.

Dutta, Ashutosh↗

Optimal Client Sampling in Federated Learning with Client-level Heterogeneous Differential Privacy

Federated Learning with client-level differential privacy (DP) provides a promising framework for collaboratively training models while rigorously protecting clients’ privacy. However, classic approaches like DP-FedAvg struggle when clients have heterogeneous privacy requirements, as they must uniformly enforce the strictest privacy level across all clients, leading to excessive DP noise and significant degradation in model utility. Existing methods to improve the model utility in such heterogeneous privacy settings often assume a trusted server and are largely heuristic, resulting in suboptimal performance and lacking strong theoretical foundations. Here, in this work, we address these challenges under a practical attack model where both clients and the server are honest-but-curious. We propose GDPFed, which partitions clients into groups based on their privacy budgets and achieves client-level DP within each group to reduce the privacy budget waste and hence improve the model utility. Based on the privacy and convergence analysis of GDPFed, we find that the magnitude of DP noise depends on both model dimensionality and the per-group client sampling ratios. To further improve the performance of GDPFed, we introduce GDPFed+, which integrates model sparsification to eliminate unnecessary noise and optimizes per-group client sampling ratios to minimize convergence error. Extensive empirical evaluations on multiple benchmark datasets demonstrate the effectiveness of GDPFed+, showing substantial performance gains compared with state-of-the-art methods.

Xu, Jiahao [Univ. of Nevada, Reno, NV (United Stat↗

Rapid Calculations of Three-Dimensional Inlet/Fan Interaction

Two computational fluid dynamics codes have been merged to permit rapid calculations of inlet/fan interaction. Inlets are modeled using the WIND-US Navier-Stokes code. Fans are modeled using a new three-dimensional Euler code called CSTALL that solves the flow through the entire compression system but models blade rows using body forces for turning and loss. The body force model is described and it is shown how unknown terms in the model can be estimated from other Navier-Stokes solutions of the blade rows run separately. The inlet and fan calculations are run simultaneously and are coupled at an interface plane using a third code called SYNCEX that is described briefly. Results are shown for an axisymmetric nacelle at high angle of attack modeled both as an isolated inlet and coupled to a single stage fan. The isolated inlet calculations are unrealistic after the flow separates but the coupled codes can model large regions of separated flow extending from the lower lip of the nacelle into the fan rotor.

Chima, Rodrick V.↗

Lower length scale model for palladium attack of silicon carbide in TRISO fuel

TRistructural ISOtropic (TRISO) particle fuels rely on silicon carbide (SiC) as the primary barrier for metallic fission product (FP) release. Palladium (Pd) generated by fission degrades the SiC layer, resulting in the formation of lamellar layers of palladium silicides (PdxSi) and carbon (C) perpendicular to the direction of attack. The Pd attack has been hypothesized to be responsible for failure of the SiC layer and enhance FP release. To better understand and quantify Pd attack of SiC in TRISO particles, a multiscale, mechanistic model of Pd transport is being developed by the NEAMS program. Previous work provided an initial hypothesis for modeling lamellar microstructure formation in SiC due to Pd attack using a phase-field model. The work described in this report builds on the previous model by using molecular dynamics (MD) simulations to parameterize the phase-field model kinetics, and build a reduced order model in BISON using the improved mesoscale Pd penetration model.

11 NUCLEAR FUEL CYCLE AND FUEL MATERIALS↗

Forced Oscillation Wind Tunnel Testing for FASER Flight Research Aircraft

As unmanned air vehicles (UAVs) continue to expand their flight envelopes into areas of high angular rate and high angle of attack, modeling the complex unsteady aerodynamics for simulation in these regimes has become more difficult using traditional methods. The goal of this experiment was to improve the current six degree-of-freedom aerodynamic model of a small UAV by replacing the analytically derived damping derivatives with experimentally derived values. The UAV is named the Free-flying Aircraft for Sub-scale Experimental Research, FASER, and was tested in the NASA Langley Research Center 12- Foot Low-Speed Tunnel. The forced oscillation wind tunnel test technique was used to measure damping in the roll and yaw axes. By imparting a variety of sinusoidal motions, the effects of non-dimensional angular rate and reduced frequency were examined over a large range of angle of attack and side-slip combinations. Tests were performed at angles of attack from -5 to 40 degrees, sideslip angles of -30 to 30 degrees, oscillation amplitudes from 5 to 30 degrees, and reduced frequencies from 0.010 to 0.133. Additionally, the effect of aileron or elevator deflection on the damping coefficients was examined. Comparisons are made of two different data reduction methods used to obtain the damping derivatives. The results show that the damping derivatives are mainly a function of angle of attack and have dependence on the non-dimensional rate and reduced frequency only in the stall/post-stall regime

Hoe, Garrison↗

Optical methods for model angle of attack and transition measurement

A novel laser-based sensor for the in situ measurement of wind tunnel model angle of attack is described and the results of a successful demonstration in the NASA Ames 9 x 7-ft. Supersonic wind tunnel are presented. The design concepts of a scanning laser-based turbulence detector, which will enable nonintrusive, microscopic studies of the onset and extent of transition on wind tunnel test models, is also described.

Owen, F. K.↗