Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Secure by Design”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 109 records · Page 6

Advanced Transmission Technologies – GETs and HPCs Session 1: ATT Foundations and Dynamic Line Ratings (DLRs)

The INL TADA GETs Cohort Session 1, held on November 4, 2025, convened experts to address the integration of advanced transmission technologies, including Grid-Enhancing Technologies (GETs) and High Performance Conductors (HPCs), with a focus on digital assurance challenges. The session highlighted the growing importance of cybersecurity, supply chain transparency, reliability, and business risk management in deploying GETs, especially Dynamic Line Ratings (DLRs). Participants examined how expanded attack surfaces, limited vendor pools, and new regulatory requirements—such as FERC Orders 881, 2023, and 1920—are influencing utilities and technology providers. The workshop underscored the need for cyber-informed engineering, secure-by-design principles, and practical risk management strategies, while fostering collaboration and knowledge sharing among industry peers. Technical discussions covered the evolution from static to dynamic line ratings, complexities of cloud-based architectures, and NERC CIP compliance challenges. The session concluded with a collaborative risk exercise and a preview of future workshops on advanced power flow control and transmission topology optimization, reinforcing the cohort’s commitment to advancing digital assurance in the energy sector.

24 - POWER TRANSMISSION AND DISTRIBUTION↗

Recommendations for Secure Transport: Material Conveyance Physical Protection Technology

Nuclear material is at higher risk of theft and sabotage during transport than during any other phase of the nuclear fuel lifecycle. Nuclear materials are transported in the public domain where adversaries have an upper hand by taking advantage of the time and location of the theft or sabotage attempt. As such, even modest threat profiles for transport of nuclear and radioactive material can require substantial detection and delay measures to support timely response. Conveyance tracking augmented with technology that improves on-the-scene situational awareness at a remote monitoring center has been adopted as a de-facto standard approach for transportation security. At present, the extended tracking and situational awareness capabilities needed for a nuclear material shipment, as is provided by the purpose designed, Transportation – Security, Tracking and Reporting (T-STAR) System, do not exist in a single commercial off-the-shelf (COTS) solution. Typically, the COTS systems that excel in one area are deficient in other areas, presenting challenges to designing well-rounded, robust systems. Still, COTS solutions can offer the basic set of tracking and situational awareness capabilities by indicating last update time, current location, and route taken. By incorporating vehicle and driver performance measures via the vehicle’s controller area network (CAN bus) and video alongside other data streams allows telemetry and other shipment information to be assessed in novel ways.This paper describes the operation, capabilities and features of various conveyance protection systems and approaches, assesses emerging technologies and how they could be used through a unified interface, and enumerates additional ways to provide early detection using vehicle, onboard technologies, effective delay technologies and approaches and simple equipment to improve protection during transport.

Shannon, Michael↗

Securing Future Energy Supplies: From Renewables to Microreactors

This session will provide insight into how future energy deployments, critical to national-level programs focused on reducing carbon emissions, can be secured-by-design using lessons learned from current energy infrastructure. It will begin with an overview of current threats and risks associated with renewable energy assets and systems, primarily wind and solar, focusing on their control architecture and key system functions for both efficient and safe operations. This talk will then translate the key takeaways from current renewable infrastructure into applications for securing future energy systems, including microreactors and small modular reactors (SMRs), based on planned concepts of operations and control. Microreactors and SMRs are intended to be factory-assembled with commercially available components and deployed in more remote or distributed environments, necessitating centralized control centers, remote monitoring, and offsite maintenance and technical support. All of these factors lead these assets to a security posture and controls more similar to today's renewable energy assets than today's nuclear reactors, which represents a significant shift in mindset for the nuclear industry. This talk will provide justification for this shift as well as a path forward to motivate securing these groundbreaking technologies from the outset of their design and deployment.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Edge ML for CAN bus intrusion detection in AVs

Autonomous Vehicles (AVs) are revolutionizing transportation, but their reliance on interconnected cyber-physical systems exposes them to unprecedented cybersecurity risks. This study addresses the critical challenge of detecting real-time cyber intrusions in self-driving vehicles by leveraging a dataset from the Udacity self-driving car project. We simulate four high-impact attack vectors, Denial of Service (DoS), spoofing, replay, and fuzzy attacks, by injecting noise into spatial features (e.g., bounding box coordinates) to replicate adversarial scenarios. We develop and evaluate two lightweight neural network architectures (NN-1 and NN-2) alongside a logistic regression baseline (LG-1) for intrusion detection. The models achieve exceptional performance, with NN-2 attaining an AUC score of 93.15% and 93.15% accuracy, demonstrating their suitability for edge deployment in AV environments. Through explainable AI techniques, we uncover unique forensic fingerprints of each attack type, such as spatial corruption in fuzzy attacks and temporal anomalies in replay attacks, offering actionable insights for feature engineering and proactive defense. Visual analytics, including confusion matrices, ROC curves, and feature importance plots, validate the models' robustness and interpretability. This research sets a new benchmark for AV cybersecurity, delivering a scalable, field-ready toolkit for Original Equipment Manufacturers (OEMs) and policymakers. By aligning intrusion fingerprints with SAE J3061 automotive security standards, we provide a pathway for integrating machine learning into safety-critical AV systems. Our findings underscore the urgent need for security-by-design AI, ensuring that AVs not only drive autonomously but also defend autonomously. This work bridges the gap between theoretical cybersecurity and life-preserving engineering, offering a leap toward safer, more secure autonomous transportation.

97 MATHEMATICS AND COMPUTING↗

Using Cosmic Ray Muons to Assess Geological Characteristics in the Subsurface

Cosmic rays are energetic nuclei and elementary particles that originate from stars and intergalactic events. The interaction of these particles with the upper atmosphere produces a wide range of secondary particles that reach the surface of the earth, of which muons are the most prominent. With enough energy, muons can travel up to a few kilometers beneath the surface of the earth before being stopped completely. The terrestrial muon flux profile and associated zenith angle can be utilized to determine geological characteristics of a location (e.g., rock overburden and density) without having to use conventional methods such as boreholes. This work uses a low-power plastic scintillator-based muon detection system as a prototype for this non-destructive geological assay methodology. Four custom designed 102 cm x 51 cm x 5 cm plastic scintillation panels are used to realize two orthogonal detection planes. Optical photons from each scintillation panel are read using OnSemi J-Series 4x4 silicon photomultiplier (SiPM) arrays in conjunction with preamplifiers. Simultaneous triggers between detectors from two planes indicate a coincidence event which is recorded using the QuarkNet data acquisition system (DAQ) from Fermi National Accelerator Laboratory. A custom detector holder was designed to securely mount the detection system and rotate the panels along the zenith to collect data at variable angles. In order to quantify the systematic uncertainties associated with the detector, such as energy depositions and angular resolution of the detector design, a Monte Carlo (MC) simulation using Geant4 is being developed. Cosmic ray flux prediction will be included in the project by adding the CORSIKA MC code to the simulation toolchain. Simulated and experimental data will drive the development and validation of a reconstruction algorithm that, upon completion, is expected to predict average overburden and rock density. Extended detector exposure to muons can be used as a means to understand changes in the surrounding environment like rock porosity. On the experimental front, muons will initially be measured at the surface, establishing the baseline flux. This is followed by recording the muon flux at variable depths and zenith angles, where the data will be used by the reconstruction algorithm to predict the overburden. The result will be benchmarked against geological surveys. The measured flux data will also be used to benchmark independent and established models. Successful proof-of-concept demonstration of this technology can open doors for long term non-invasive geological monitoring. The detector design, experimental methodology, and the benchmarking efforts are detailed in this work.

Gadey, Harish Reddy↗

5G Communications in Nuclear: Potential Use Cases and Security Considerations

As fifth-generation (5G) communications continues to revolutionize the future of wireless technology, there is growing demand to utilize its benefits for critical infrastructures such as nuclear power plants (NPPs). In regard to achieving full automation and control in the operation of existing and future nuclear reactors, the unique capabilities of 5G can bring several potential advantages over other wireless technologies. However, a deep investigation is needed for the availability and security of 5G communications under various NPP operational scenarios. This article examines how 5G security capabilities can be architecturally deployed in nuclear applications so as to replace existing communication infrastructures. We discuss the current use of all wireless technologies in NPPs with their key features. Consequently, we investigated several NPP use cases in which 5G offers potential advantages but entails specific security considerations. The present article covers the characteristics of 5G communications, general challenges to its application in nuclear, and the security gaps that need to be addressed. We also highlight certain 5G security-by-design features that can help addressing current stringent NPP requirements. In addition, we discuss some future research direction that can facilitate the implementation of 5G in a nuclear facility. The findings presented herein can help foster 5G deployment in NPPs, thus enabling secured data transmission, cost savings, and increased operational efficiency with enhanced reliability.

21 SPECIFIC NUCLEAR REACTORS AND ASSOCIATED PLANTS↗

Trade-off Analysis of Operational Technologies to Advance Cyber Resilience through Automated and Autonomous Response to Threats

The advancement of cyber resilience requires a preliminary stage of characterizing the trade-off space of mitigation options and how these might affect the stability and determinism of an operational technology (OT). This first step will set the stage for the proper cyber-secure and cyber-resilient design and confirm the affects that can be considered and approved by the OT and the security groups. To provide a baseline for this discussion, this paper provides a consideration of the cyberphysical interactions, possible mitigation steps against certain attacks and their corresponding affects that lend to the security design planning and evaluation process. As an integral part of the proposed scheme this work introduces the concept of systemwide fuzzer, i.e., a tool that manipulates the system state in an effort to determine mitigation response sequences that minimize detriments and maximize benefit in accordance with specified operational requirements.

97 MATHEMATICS AND COMPUTING↗

Material Control & Accountancy for Molten Salt Reactors (FY2021 Report)

There is significant domestic and international interest, investment, and research and development momentum to pursue advanced nuclear reactor technologies. Molten salt reactor (MSR) concepts display the largest variability in fuel type and design features among the current advanced concepts. MSRs have been proposed with various core designs, sizes (power), and fuel cycles. Salt-fueled molten salt systems represent the only advanced reactor type with fuel that is not in a solid form during operation. These “liquid-fueled” MSRs are unique from perspectives of fuel fabrication, spent irradiated fuel and waste components, licensing, and material control and accountability (MC&A) including the potential of fissile material holdup. The liquid fuel salt is the defining distinction in comparison to other advanced reactors that propose TRI-structural ISOtropic particle fuel pebbles, various coolant options (e.g., molten salts or metals, high temperature gas), or small modular alternatives using solid fuel variants including both light water reactors and non-light water reactors. MSRs are appealing to the nuclear energy industry because of the diverse reactor characteristics they can support including various neutron energy spectra, fueling requirements, fuel cycles, and/or fuel utilization. However, because of the significant deviation and diversity of a salt-fueled system compared to traditional solid fuel light water-cooled reactors (LWRs), the history, regulatory licensing framework, modeling capabilities, and supporting engineering technology are either lacking or, in some cases, nonexistent. Therefore, the research community is actively supporting advanced MSR development on many of these fronts in particular to assist MSR vendors with licensing requirements. ORNL is leading the research and development of respective MC&A approaches for salt-fueled MSRs. This report summarizes the research performed at Oak Ridge National Laboratory (ORNL) under the US Department of Energy, Office of Nuclear Energy, Advanced Reactor Safeguards (ARS) program to investigate safeguards and security by design concepts, licensing and regulatory considerations, and dynamic system-level modeling to understand radioisotope concentrations for salt-fueled MSRs. The report builds upon the previous research and literature, identifies the MC&A challenges inherent to a salt-fueled MSR, reviews current regulatory frameworks for LWRs and their applicability towards salt-fueled MSRs, summarizes the status and progress of an MSR dynamic modeling tool, and discusses a prospective MC&A approach based on the Molten Salt Demonstration Reactor (MSDR) model.

21 SPECIFIC NUCLEAR REACTORS AND ASSOCIATED PLANTS↗

Enabling Design Space Exploration for RISC-V Secure Compute Environments

Cycle-level architectural simulation of Trusted Execution Environments (TEEs) can enable extensive design space exploration of these secure architectures. Existing architectural simulators which support TEEs are either based on hardware-level implementations or abstract analytic models. In this paper, we describe the implementation of the gem5 models necessary to run and evaluate the RISC- V-based open source TEE, Keystone, and we discuss how this simulation environment opens new avenues for designing and studying these trusted environments. We show that the Keystone simulations on gem5 exhibit similar performance as the previous hardware evaluations of Keystone. We also describe three simple example use cases (understanding the reason of trusted execution slowdown, performance of memory encryption, and micro-architecture impact on trusted execution performance) to demonstrate how the ability to simulate TEEs can provide useful information about their behavior in the existing form and also with enhanced designs.

97 MATHEMATICS AND COMPUTING↗

A technique to make an enterprise network a Darknet on the Internet, while providing required services to authorized users

In a well-designed and secure enterprise network, the hosts inside the network are not directly accessible from the Internet. The enterprise firewall blocks direct access to hosts inside the enterprise network and also blocks any attempts to probe or discover information about those hosts from the Internet. However, access to the enterprise network from the Internet is a must in today’s day and age. Hence, specialized mechanisms to allow secure access are implemented.

97 MATHEMATICS AND COMPUTING↗

Advanced Radiation Panel design for applications in National Security and Food Safety

We describe a new concept for a basic radiation detection panel based on conventional scintillator technology and commercially available solid-state photo-detectors. The panels are simple in construction, robust, very efficient and cost-effective and are easily scalable in size, from tens of cm 2 to tens of m 2 . We describe two possible applications: flagging radioactive food coontamination and detection of illicit radio nucleides, such as those potentially used in a terrorist attack with a dirty bomb.

46 INSTRUMENTATION RELATED TO NUCLEAR SCIENCE AND ↗

Cyber100 Compass User Guide

This document provides an overview of the Cyber100 Compass tool and serves as a guide to users interested in understanding the cybersecurity risks facing their clean energy transition. The National Renewable Energy Laboratory (NREL) developed the Cyber100 Compass tool for cyber risk assessment at the system-of-systems level for system planners trying to reach high levels of renewables. Two offices of the U.S. Department of Energy (DOE) - the Office of Electricity and the Office of Cybersecurity, Energy Security, and Emergency Response-funded NREL to develop this framework that will enable grid system planners to understand and mitigate cybersecurity risk for grids transitioning to high levels of renewable generation, including 100%. Cyber100 Compass can help systems planners apply the principle of security-by-design at scale. Investing in an upfront understanding of system-of-systems (where the constituent systems are operating entities of the different renewable resources) risks from high-renewable grids will result in a more resilient grid at a lower long-term cost.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Nuclear Material Control & Accounting for Pebble Bed Reactors (FY 2023 Summary Report)

This report discusses the work done under the US Department of Energy NE-5 Advanced Reactor Safeguards and Security Program during FY 2023. It provides a summary of material control and accounting (MC&A) for pebble bed reactors (PBRs) and addresses some of the main challenges with current PBR MC&A approaches that will inform safeguards and security by design efforts. The efforts to date have focused on tristructural isotropic (TRISO) pebble fuel material accounting and control including working with partners in industry, loss and production of nuclear material as part of reactor operations, burnup modeling and measurements, uncertainty quantifications for such modeling and measurements, statistical approaches needed, and measurement methods. The unique fuel management and utilization in a PBR, where the fuel in spherical form is introduced and circulates through the reactor, poses special challenges for MC&A. This contrasts with traditional water-cooled reactors in which the fuel is contained in large assemblies and can be easily identified and counted. Even online fueled reactors, such as the CANDU reactors (none of which operate in the United States), are significantly different because the fuel is still contained in relatively large assemblies, is uniquely identified, and the number of assemblies that pass through the core on an annual basis is much fewer than the hundreds of thousands that circulate in a PBR, none of which are uniquely identified. Additionally, the nature of the TRISO fuel results in very low heavy metal loading with each pebble containing less than 10 g of uranium and on the order of less than 1 g of fissile material. This low fuel density and the robustness of the TRISO particles are major features of the TRISO fuel from a safety basis as each TRISO particle and pebble acts as a containment for the nuclear material and fission products during normal and accident conditions. This also results in very low plutonium loading per pebble during normal operations, which is on the order of 0.1 g at full burnup. A major feature of PBRs is that they will allow for significantly higher burnup, on the order of 160 GWd/THM compared to the burnup of traditional LWRs, which is on the order of 45 GWd/THM. This is achieved by monitoring the pebbles as they circulate through the reactor and allowing them to be reintroduced into the core until the desired burnup is achieved and they are removed from the reactor and enter the spent fuel storage areas.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Advanced Reactor Safeguards and Security - Advanced Delay Technologies

As a new generation of reactors is developed, reducing the cost of physical security without impacting the required system effectiveness will help to make new reactors economical. This report discusses several access delay technologies available to help improve the overall effectiveness of the physical security system. These technologies include both passive and active delay elements, as well as guidance on best practices related to security by design principles.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Autonomous Inverter Controls for Resilient and Secure Grid Operation: Vector Control Design for Grid Forming

The project addresses both fundamental and practical challenges of GFM/GFL inverter control for the power grids with high inverter based resources (IBRs) penetration. A data- driven modeling technique is applied to accurately model dynamics of PWM inverters, including electromagnetic-transient (EMT). Systematic and integrative designs of grid- forming (GFM) and grid-following (GFL) primary controls are developed to guarantee system performance under either normal or abnormal operating conditions without violating constraints. This modeling and control framework provides black-start capability in case of an outage without relying on rotating generators, and its secondary control is also shown to enhance resilience against cyber-physical attacks.

14 SOLAR ENERGY↗

ARCADE Technical Pathway and Industry Impact

The Advanced Reactor Cyber Analysis and Development Environment (ARCADE) simplifies the evaluation and assessment of robustness factor and cyber resilience that support secure-by-design for advanced reactor nuclear power plants. In this manner, ARCADE supports risk-informed performance based (RIPB) evaluations of cybersecurity through its integration of plant physics with high-fidelity emulations of control systems. This cross domain approach enables comprehensive analysis of control system sensitivities, cyber-attack scenarios, and their consequences. ARCADE has been custom developed to meet the demands identified in Tier 1 of the Tiered Cyber Analysis (TCA) as outlined in NRC Draft Regulation Guide (RG) 5.96, which provides a RIPB cybersecurity approach for new reactors.

97 MATHEMATICS AND COMPUTING↗