Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “failure cause”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 127 records · Page 7

Characterization of Damage in Triaxial Braid Composites Under Tensile Loading

Carbon fiber composites utilizing flattened, large tow yarns in woven or braided forms are being used in many aerospace applications. Their complex fiber architecture and large unit cell size present challenges in both understanding deformation processes and measuring reliable material properties. This report examines composites made using flattened 12k and 24k standard modulus carbon fiber yarns in a 0 /+60 /-60 triaxial braid architecture. Standard straight-sided tensile coupons are tested with the 0 axial braid fibers either parallel with or perpendicular to the applied tensile load (axial or transverse tensile test, respectively). Nonuniform surface strain resulting from the triaxial braid architecture is examined using photogrammetry. Local regions of high strain concentration are examined to identify where failure initiates and to determine the local strain at the time of initiation. Splitting within fiber bundles is the first failure mode observed at low to intermediate strains. For axial tensile tests splitting is primarily in the 60 bias fibers, which were oriented 60 to the applied load. At higher strains, out-of-plane deformation associated with localized delamination between fiber bundles or damage within fiber bundles is observed. For transverse tensile tests, the splitting is primarily in the 0 axial fibers, which were oriented transverse to the applied load. The initiation and accumulation of local damage causes the global transverse stress-strain curves to become nonlinear and causes failure to occur at a reduced ultimate strain. Extensive delamination at the specimen edges is also observed.

Littell, Justin D.↗

The compressive failure of graphite/epoxy plates with circular holes

The results of an experimental investigation of the compressive behavior of T300/5203 graphite/epoxy laminated plates measuring 127.0 by 254.0 mm and containing circular holes ranging to 38.1 mm are reported. Two thicknesses, 24-ply and 48-ply, were chosen to differentiate between stability failures resulting from buckling and strength failures caused by the hole. Both quasi-isotropic and orthotropic stacking arrangements were used. The critical buckling load of the 24-ply panels was independent of hole size. Bifurcation occurred in the two half-wave mode longitudinally and one half-wave mode laterally in the quasi-isotropic panels. For the orthotropic 24-ply panels, bifurcation began in the one half-wave mode shape in each direction, but changed to the two half-wave mode before failure. Consistent post-buckling strength was exhibited by both laminated configurations. Panels with hole diameters below 3.175 mm displayed buckling before failure; those with holes larger than 6.35 mm experienced material failure around the hole before panel collapse.

Knauss, J. F.↗

STS-55 pad abort: Engine 2011 oxidizer preburner augmented spark igniter check valve leak

The STS-55 initial launch attempt of Columbia (OV102) was terminated on KSC launch pad A March 22, 1993 at 9:51 AM E.S.T. due to violation of an ME-3 (Engine 2011) Launch Commit Criteria (LCC) limit exceedance. The event description and timeline are summarized. Propellant loading was initiated on 22 March, 1993 at 1:15 AM EST. All SSME chill parameters and launch commit criteria (LCC) were nominal. At engine start plus 1.44 seconds, a Failure Identification (FID) was posted against Engine 2011 for exceeding the 50 psia Oxidizer Preburner (OPB) purge pressure redline. The engine was shut down at 1.50 seconds followed by Engines 2034 and 2030. All shut down sequences were nominal and the mission was safely aborted. The OPB purge pressure redline violation and the abort profile/overlay for all three engines are depicted. SSME Avionics hardware and software performed nominally during the incident. A review of vehicle data table (VDT) data and controller software logic revealed no failure indications other than the single FID 013-414, OPB purge pressure redline exceeded. Software logic was executed according to requirements and there was no anomalous controller software operation. Immediately following the abort, a Rocketdyne/NASA failure investigation team was assembled. The team successfully isolated the failure cause to the oxidizer preburner augmented spark igniter purge check valve not being fully closed due to contamination. The source of the contaminant was traced to a cut segment from a rubber O-ring which was used in a fine clean tool during valve production prior to 1992. The valve was apparently contaminated during its fabrication in 1985. The valve had performed acceptably on four previous flights of the engine, and SSME flight history shows 780 combined check valve flights without failure. The failure of an Engine 3 (SSME No. 2011) check valve to close was sensed by onboard engine instruments even though all other engine operations were normal. This resulted in an engine shutdown and safe sequential shutdown of all three engines prior to ignition of the solid boosters.

Source record↗

High Resolution Computed Tomography Inspection of Components Uncovers Root Causes of Vexing Failure Mysteries

During testing of actuators for fight programs, failures have occurred that required closure with an understanding of the root cause of the failure. For some InSight project actuators, intermittent changes of the winding resistance of the motors during temperature changes was extremely baffling. It was critical to determine the cause of the intermittent characteristic because the actuators were stock from a previous program and the company that provided the motors was no longer in business. Using an X-Ray Computed-Tomography (CT) method, the exact source of the intermittent failure was determined and completely understood – at dimensions of less than 20 microns. In another case, after the completion of an actuator’s life-test-to-failure, inspection was required to determine the source of the failure. The size of the actuator (10 mm diameter) required destructive means to get to the interior of the actuator for inspection, risking the loss of the source of the failure. Using CT imaging, the exact source of the failure was determined.

Johnson, Michael R.↗

Safety Expertise and the Perils of Novelty

Emerging aviation markets such as urban air mobility are giving rise to new technologies and means of operation. However, novelty may hide ‘unknown unknowns,’ raising new hazards. This paper examines how expertise and safety techniques enable transformative technologies such as reduced crew operations, hybrid wing-borne and rotor-born flight, federated air traffic services, and urban operations. We explore how analysts use expertise to address common-cause failures, collect and interpret safety data, and perform exacting tradeoffs between dissimilarity, redundancy, independence, and diversity (human, process lifecycle, or otherwise) to ensure safety. When novelty is present, analysts might not possess the expertise needed to fully understand the implications of design decisions and tradeoffs being made, especially in early lifecycle phases, on emergent properties such as safety. Safety expertise must be carefully cultivated. The conflicting views of safety experts must be unpacked to identify the divergence in fundamental assumptions, models, means, and methods that may be causing them. Once systems venture beyond the basis of what safety expertise can reliably guarantee, projects take on risk that must be managed. The paper contains key takeaways and actionable recommendations for novel OEMs and regulators touching on topics such as robust monitoring; clear and transparent reporting; incremental approaches to fielding novel systems in hazard-rich, risk-tolerant environments; the cultivation of safety culture and expertise in an organization; and the use of scientific study to reduce epistemic uncertainty in novel operations with new technologies. Since excessive novelty in aviation can undermine the current foundation of safety, humility and incrementalism are necessary to enable emerging aviation markets safely.

safety expertise↗

Safety Expertise and the Perils of Novelty

Emerging aviation markets such as urban air mobility are giving rise to new technologies and means of operation. However, novelty may hide ‘unknown unknowns,’ raising new hazards. This paper examines how expertise and safety techniques enable transformative technologies such as reduced crew operations, hybrid wing-borne and rotor-born flight, federated air traffic services, and urban operations. We explore how analysts use expertise to address common-cause failures, collect and interpret safety data, and perform exacting tradeoffs between dissimilarity, redundancy, independence, and diversity (human, process lifecycle, or otherwise) to ensure safety. When novelty is present, analysts might not possess the expertise needed to fully understand the implications of design decisions and tradeoffs being made, especially in early lifecycle phases, on emergent properties such as safety. Safety expertise must be carefully cultivated. The conflicting views of safety experts must be unpacked to identify the divergence in fundamental assumptions, models, means, and methods that may be causing them. Once systems venture beyond the basis of what safety expertise can reliably guarantee, projects take on risk that must be managed. The paper contains key takeaways and actionable recommendations for novel OEMs and regulators touching on topics such as robust monitoring; clear and transparent reporting; incremental approaches to fielding novel systems in hazard-rich, risk-tolerant environments; the cultivation of safety culture and expertise in an organization; and the use of scientific study to reduce epistemic uncertainty in novel operations with new technologies. Since excessive novelty in aviation can undermine the current foundation of safety, humility and incrementalism are necessary to enable emerging aviation markets safely.

safety expertise↗

Fault Management Techniques in Human Spaceflight Operations

This paper discusses human spaceflight fault management operations. Fault detection and response capabilities available in current US human spaceflight programs Space Shuttle and International Space Station are described while emphasizing system design impacts on operational techniques and constraints. Preflight and inflight processes along with products used to anticipate, mitigate and respond to failures are introduced. Examples of operational products used to support failure responses are presented. Possible improvements in the state of the art, as well as prioritization and success criteria for their implementation are proposed. This paper describes how the architecture of a command and control system impacts operations in areas such as the required fault response times, automated vs. manual fault responses, use of workarounds, etc. The architecture includes the use of redundancy at the system and software function level, software capabilities, use of intelligent or autonomous systems, number and severity of software defects, etc. This in turn drives which Caution and Warning (C&W) events should be annunciated, C&W event classification, operator display designs, crew training, flight control team training, and procedure development. Other factors impacting operations are the complexity of a system, skills needed to understand and operate a system, and the use of commonality vs. optimized solutions for software and responses. Fault detection, annunciation, safing responses, and recovery capabilities are explored using real examples to uncover underlying philosophies and constraints. These factors directly impact operations in that the crew and flight control team need to understand what happened, why it happened, what the system is doing, and what, if any, corrective actions they need to perform. If a fault results in multiple C&W events, or if several faults occur simultaneously, the root cause(s) of the fault(s), as well as their vehicle-wide impacts, must be determined in order to maintain situational awareness. This allows both automated and manual recovery operations to focus on the real cause of the fault(s). An appropriate balance must be struck between correcting the root cause failure and addressing the impacts of that fault on other vehicle components. Lastly, this paper presents a strategy for using lessons learned to improve the software, displays, and procedures in addition to determining what is a candidate for automation. Enabling technologies and techniques are identified to promote system evolution from one that requires manual fault responses to one that uses automation and autonomy where they are most effective. These considerations include the value in correcting software defects in a timely manner, automation of repetitive tasks, making time critical responses autonomous, etc. The paper recommends the appropriate use of intelligent systems to determine the root causes of faults and correctly identify separate unrelated faults.

O'Hagan, Brian↗

Fault Diagnosis of Power Components with Reliability Assessment in Extraterrestrial Microgrids

This research investigates the possible failures caused by aging and other environmental and external factors that could significantly impact the performance of extraterrestrial power systems. Additionally, it presents a reliability assessment model for the space microgrid based on fault tree analysis (FTA). The reliability assessment model developed in this paper represents a tool that can be used by engineers to harden the system design for operational and economic benefits. To improve the reliability of the system, this work provides a broad review of the different fault detection and diagnosis (FDD) algorithms used for power microgrids and space applications. Using data sets from the Habitat Simulator developed through the NASA-funded Resilient Extraterrestrial Habitat Institute, this paper compares the applicability and accuracy of the different FDD methods. The primary FDD approach proposed and assessed in this work is based on the Markov reliability model. It predicts and detects future faults in the space microgrids by using past data samples and categorizing them into different classes. Data-driven-based models such as artificial neural networks are also investigated, tested, and evaluated using simulation data sets. According to the simulation results and the broad FDD algorithm comparison, this study provides the crew or maintenance engineers with a clear methodology to detect and localize power system failures.

Leila Chebbo↗

Major Effects of Nonmetallic Inclusions on the Fatigue Life of Disk Superalloy Demonstrated

The fatigue properties of modern powder metallurgy disk alloys can vary because of the different steps of materials and component processing and machining. Among these variables, the effects of nonmetallic inclusions introduced during the powder atomization and handling processes have been shown to significantly degrade low-cycle fatigue life. The levels of inclusion contamination have, therefore, been reduced to less than 1 part per million in state-of-the-art nickel disk powder-processing facilities. Yet the large quantities of compressor and turbine disks weighing from 100 to over 1000 lb have enough total volume and surface area for these rare inclusions to still be present and limit fatigue life. The objective of this study was to investigate the effects on fatigue life of these inclusions, as part of the Crack Resistant Disk Materials task within the Ultra Safe Propulsion Project. Inclusions were carefully introduced at elevated levels in a nickel-base disk superalloy, U720, produced using powder metallurgy processing. Multiple strain-controlled fatigue tests were then performed on extracted test specimens at 650 C. Analyses were performed to compare the low-cycle fatigue lives and failure initiation sites as functions of inclusion content and fatigue conditions. Powder of the nickel-base superalloy U720 was atomized in argon at Special Metals Corporation, Inc., using production-scale high-cleanliness powder-processing facilities and handling practices. The powder was then passed through a 270-mesh screen. One portion of this powder was set aside for subsequent consolidation without introduced inclusions. Two other portions of this powder were seeded with alumina inclusions. Small, polycrystalline soft (Type 2) inclusions of about 50 mm diameter were carefully prepared and blended into one powder lot, and larger hard (Type 1) inclusions of about 150 mm mean diameter were introduced into the other seeded portion of powder. All three portions of powder were then sealed in separate containers, hot isostatically pressurized, extruded, forged into subscale disks, and heat treated. Low-cycle-fatigue specimens were then extracted, machined, and tested. Fatigue tests were performed at 650 C in closed-loop servohydraulic testing machines using induction heating and axial extensometers. All tests were continued to failure, and fractographic evaluations were performed on all specimens to determine the crack initiation sites. A large majority of the failures in specimens with introduced inclusions occurred at cracks initiating from inclusions at the specimen surface, as shown for each type of inclusion in the following bar chart. The inclusions significantly reduced fatigue life from unseeded material levels, as shown in the bar chart. These effects were found to depend on the strain range, strain ratio, and inclusion size. Tests at lower strain ranges and higher strain ratios resulted in larger effects of inclusions on life. Inclusion effects on life were thereby maximized in tests at the lowest strain range of 0.6 percent and the most positive strain ratio of 0.5. Under these conditions, small Type 2 inclusions reduced life substantially-- about 20 times, whereas large Type 1 inclusions dramatically reduced life 100 times. These results clearly demonstrate that it is essential to include the effects of inclusions for realistic predictions of disk fatigue life. Important issues, including temperature dependence, crack initiation versus propagation, surface treatments, realistic disk features and machining, and realistic disk spin testing will be addressed to accurately model inclusion effects on disk fatigue life. Fatigue life varied from well over 105 cycles for no inclusions to a little over 103 cycles for 100-micrometer inclusions. A single crack initiating at a surface-connected seeded inclusion caused failure in each case.

Gabb, Timothy P.↗

Ability of x‐ray computed tomography to resolve critical flaw size in laser‐based, paste stereolithography ceramic printing of alumina

Abstract Complex alumina parts were printed using vat photopolymerization (VPP), which is a stereolithography‐based additive manufacturing (AM) technique used to shape ceramic preforms, or green parts. The critical flaw size was determined using classical fracture mechanics techniques. The strength and fracture toughness were measured and compared to flaws detected in x‐ray computed tomography (XCT or CT) distributions as well as the fracture surfaces. The strength was lower compared traditionally made alumina, and that is due to layering effects, slurry defects, and printing defects. The critical flaw size from fracture mechanics was 206 µm. XCT has high enough resolution to detect the critical flaw size and much smaller features, where the average flaw size observed in CT scans was around 80–100 µm. The fracture surfaces indicate that flaws causing failure are larger than that of the critical flaw size (∼300 µm), but fracture surfaces do not show definitive features compared to traditionally made ceramics. Since XCT can observe flaws smaller than the critical flaw size, this method can be used as a screening technique.

36 MATERIALS SCIENCE↗

Rational design of semi-interpenetrating network based on hyperbranched polyglycerol grafted MXene/polyurethane–epoxy for compressed hydrogen storage

Here, hydrogen (H 2 ) energy has emerged as a promising alternative in the automotive sector to replace fossil fuel; however, its storage with volumetric efficiency remains a challenge. The latest type IV storage vessel featuring a polymeric liner with composite overwrap incurs hydrogen saturation, which eventually causes failure. To prevent the H 2 dissolution in the liner, we have developed a barrier coating comprised of polyurethane/epoxy semi-interpenetrating network (S-IPN) combined with hyperbranched polyglycerol grafted MXene (h-MXene). The hyperbranched structure facilitated the dispersion of MXene in the coating solution by enhancing the exfoliation and improved the polymer filler interaction by forming covalent and H-bonding through end-terminal hydroxyl groups. Leveraging the dense network of S-IPN combined with the dispersed layer structured h-MXene significantly increased the tortuosity of the spray-coated barrier film applied to the nylon 6 liner. The coating exhibited a 90 % reduction in the H 2 gas permeability at only 2 wt% h-MXene concentration, which further improved to above 98 % at 10 wt% loading. Additionally, the h-MXene considerably improved the adhesion with the liner even in a highly stretched condition, signifying the durability of the coating under cyclic pressurization and depressurization of the storage vessel.

08 HYDROGEN↗

A novel design optimization framework to sustain remanufacturability

The ever-increasing global carbon emissions have urged the need for environmentally conscious/sustainable product design, for which the design for remanufacturing (DfRem) is one potential approach. DfRem targets at designing products that have multiple life cycles, thus significantly reducing raw material usage, energy consumption, and carbon emissions. In this paper, we develop a three-stage framework that consists of (1) systematic design space exploration and a multi-objective optimization formulation to minimize the likelihood of failure causes (such as fatigue and wear) and environmental footprint, (2) topology optimization to further reduce material usage without significantly affecting the load-carrying capability of the product, and (3) post-topology optimization design verification to ensure the proposed design satisfies all design constraints. The environmental impact can be assessed at varying comprehensiveness levels (e.g., design and manufacturing phase, use phase) and in terms of carbon or GHG emission, energy use, and waste generation. Because the novel design framework predominantly adjusted the geometry, we focused on mass-based change and energy savings due to sustained remanufacturability. The multi-objective optimization formulation in the first step results in a Pareto optimal set of possible design solutions that the designer can use for the second step. Finally, we demonstrate the utility of this framework through a case study of an engine cylinder head subjected to thermo-mechanical loads, where we find that about 5% of the product mass can be conserved with only about a 3% increase in surface area that has a fatigue life less than 10,000 cycles.

42 ENGINEERING↗

Electrically Accelerated Mechanochemical Film Formation by a Phosphonium Phosphate Ionic Liquid: An In Situ Chemical Kinetics Investigation

Powertrains in electric vehicles are exposed to stray currents that accelerate wear and cause failure of mechanical components. These durability issues are further aggravated when using low-viscosity lubricants, which are desired for energy efficiency but create harsher contact conditions at sliding interfaces. This study investigates a phosphonium phosphate ionic liquid as a performance-enhancing additive in a low-viscosity base oil for lubricating electrified sliding interfaces. Ionic liquids can adsorb and react on contact interfaces via stress-assisted chemical reactions, generating nanometric tribofilms that provide protection against wear. However, the effect of electric fields on the mechanochemistry of ionic liquids is poorly understood, hindering their adoption in lubricants for electrified powertrains. This article reports an in situ optical interferometry study of ionic liquid derived tribofilm growth kinetics at stressed sliding/rolling interfaces under direct currents. The application of electric currents accelerated tribofilm formation up to a critical current density (∼1.4 A/mm 2 ), beyond which pitting-induced wear dominated. The tribofilms were composed of iron phosphates, iron oxides, and carbon species, with iron oxides becoming predominant under applied currents. These tribofilms prevented the scuffing failure of steel surfaces under electrified conditions. Based on the results, a kinetic model is proposed that integrates electric current effect into the classical stress-assisted thermal activation framework to allow prediction of tribofilm growth at electrified sliding contacts. This framework provides crucial guidance for designing next-generation lubricants for electrified transportation and power generation systems.

additives↗

Uncertainty-Aware and Explainable Human Error Detection in the Operation of Nuclear Power Plants

The timely and accurate identification of incidents, such as human factor error, is important to restore nuclear power plants (NPPs) to a stable state. However, the identification of abnormal operating conditions is difficult because of the existence of multiple scenarios. In addition, to implement mitigation actions rapidly after an incident occurs, operators must accurately identify an incident by monitoring the trends of many variables. The mental burden posed by this can increase human error and cause failure in identifying incidents. Failure to identify incidents directly results in erroneous mitigation measures, which are detrimental to NPPs. In this study, we leverage uncertainty-aware models to identify such errors and thereby increase the chances of mitigating them. We use the data collected from a physical test bed. The goal is to identify both certain and accurate models. For this, the two main aspects of focus in this study are explainable artificial intelligence (XAI) and uncertainty quantification (UQ). While XAI elucidates the decision pathway, UQ evaluates decision reliability. Their integration paints a comprehensive picture, signifying that understanding decisions and their confidence should be interlinked. Thus, in this study we leverage UQ measures (e.g. entropy and mutual information) along with Shapley additive explanations to gain insights into the features contributing to both accuracy and uncertainty in error identification. Furthermore, our results show that uncertainty-aware models combined with XAI tools can explain the artificial intelligence–prescribed decisions, with the potential of better explaining errors for the operators.

21 SPECIFIC NUCLEAR REACTORS AND ASSOCIATED PLANTS↗

Timeouts Best Practices

This study investigates common timeouts encountered in the electric vehicle (EV) charging communications process. Many different timeouts are defined within the EV charging communications protocols. These timeouts can either be a fixed value or a defined range of values. In both cases, the timeout defines the duration of time for which one or both parties in the communications session are expected to wait for some action or process to complete before terminating the charge attempt. These timeout-based terminations are intended to prevent the charging process from becoming stuck indefinitely in any particular step. These terminations also enable a retry of the terminated charging session to begin. However, misaligned timeout values can have a significant negative impact on the user experience. Premature termination of charging sessions due to inappropriate timeout settings can lead to charging failures, causing inconvenience, wasted time, and frustration for users. These disruptions can degrade the overall user experience, making it essential to carefully manage and align timeout values with the relevant actions and processes to ensure reliable and satisfactory EV charging sessions. The core objective of this study is to boost reliability and enhance user experience by conducting a thorough review of timeout-based issues in EV charging and delivering a set of recommendations to modify these existing timeouts. These recommendations are informed by feedback gathered from multiple EV charging partners. This document is intended to inform electric vehicle supply equipment (EVSE) and EV manufacturers, EV charging infrastructure developers, and policymakers responsible for designing and implementing EV charging protocols and systems.

33 ADVANCED PROPULSION SYSTEMS↗

Radiation damage effects in beryllium for next generation neutrino beam targetry (Final Technical Report)

Current and future high-power accelerators put severe requirements on materials used for target and beam windows and target facilities have been recognized as a critical challenge in development of future particle accelerators. In accelerators, window and target materials are exposed to extreme conditions, which include bombardment with very high energy protons (1- 100 GeV) and thermomechanical shock waves. Radiation can cause direct damage in the material, and it leads to production of transmutation products (especially helium), both phenomena having a potential adverse effect on the stability and durability of the target/window material. At high enough temperatures, He can aggregate to form gas bubbles, which in turn cause significant dimensional changes (swelling), enable easy crack propagation, and eventually cause failure by fracture. On the other hand, if the temperature is too low, radiation damage accumulates in the form of internal defects (e.g., dislocations), leading to hardening and a decreased ductility of the material. In this project, we will focus on beryllium since it is considered to be one of the candidate materials for beam windows and targets in the next-generation proton accelerators, e.g., the Long Baseline Neutrino Facility (LBNF). Radiation effects in Be have been studied in the context of nuclear fusion reactor applications. However, key differences exist between reactor and accelerator conditions, including neutron vs. proton irradiation, continuous vs. pulsed beam flux, much higher energies of bombarding particles in accelerators, and higher operating temperatures for typical reactors. For example, the impact of beam pulsing on the radiation damage and the He bubble kinetics is largely unknown. While results obtained on Be from fusion research might not be directly transferrable to understanding target materials, there is an opportunity to bring state-of-the-art tools from materials research in nuclear reactors to aid design of target and beam window materials in high-power accelerators. To this end, the overarching goal of this project are to develop an experimentally-validated computational framework capable of predicting radiation damage evolution in beryllium relevant to beam window and target conditions, focusing on He bubble formation and growth as a function of irradiation temperature. Our model will be based on the cluster dynamics formalism, where size distribution of defects and He bubbles is simulated as a function of time, temperature, and radiation dose. Parameters for the model will be taken from published experiments and from high-fidelity atomistic simulations proposed in this project. In addition, we will carry out a series of targeted ex-situ and in-situ dual-beam experiments using low-energy protons to provide critical data for validation of the model on the effects of radiation on He clustering, He bubble distribution, and dislocation loop density/size in proton irradiated Be.

36 MATERIALS SCIENCE↗

Programmable Digital Devices used in Advanced Reactors

This paper introduces the concepts of common cause failure, diversity, and defense-in-depth used by the nuclear industry to analyze resilience in reactors. A survey of publicly traded and private companies building advanced reactors and their licensing status is presented. Safety and non-safety systems found in the NuScale Power design are summarized and the likely hardware and software categories used by those systems are enumerated. The importance of industry partners is highlighted. This paper also identifies an alternate path forward without industry partners to advance the knowledge needed to use artificial intelligence to analyze HBOMs and SBOMs to better understand reactor resiliency.

cybersecurity↗

Evaluation of Hardware and Software Bill of Materials (HBOMs/SBOMs) Extraction Methods

Hardware and software bills of materials (HBOMs and SBOMs) provide important visibility into the components, dependencies, and supply chain relationships within programmable digital devices. This visibility is critical for advanced nuclear reactor applications, where use of common or shared hardware components, software libraries, suppliers, or manufacturing processes may create common cause failure (CCF) vulnerabilities despite apparent diversity. This paper evaluates current approaches for obtaining and analyzing HBOMs and SBOMs in support of CCF, diversity and defense-in-depth (D3) assessments, and begins to explore potential methods for artificial intelligence/machine learning-based analysis. The availability of BOM information from advanced reactor manufacturers and vendors, representative hardware and software categories found in advanced reactor systems continues to limit research [13]. This paper compares commonly used BOM formats, including CycloneDX, SPDX, and SWID. It also surveys publicly available tools for generating BOMs from source code, compiled binaries, and hardware-related information, noting limitations in language coverage, system age, and format interoperability. Finally, this paper evaluates methods for correlating BOM data with vulnerability and exploitability information, including VEX, CVE, and CWE resources. The findings indicate that publicly available nuclear-vendor BOMs are limited, making third-party extraction and research into novel analysis techniques necessary.

Cybersecurity↗