{"id":192343,"date":"2024-08-27T15:36:39","date_gmt":"2024-08-27T13:36:39","guid":{"rendered":"https:\/\/www.rse-web.it\/rapporti\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/"},"modified":"2024-09-19T16:00:03","modified_gmt":"2024-09-19T14:00:03","slug":"cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks","status":"publish","type":"rapporti","link":"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/","title":{"rendered":"Cyber-power system resilience: attack scenarios, evidence collection, and cyber analysis during attacks"},"content":{"rendered":"<p class=\"last-updated-date\">Recently updated on September 19th, 2024 at 04:00 pm<\/p>","protected":false},"excerpt":{"rendered":"<p>The described activity addresses research topics related to cybersecurity requirement compliance checks and the development of tools for generating compromise indicators. To achieve these goals, a methodology was established for deriving test plans from compliance analysis with standard cybersecurity requirements, as well as a process for developing tools to calculate compromise indicators based on advanced probabilistic models and emerging technologies as international standards. <\/p>\n","protected":false},"author":93,"featured_media":0,"comment_status":"open","ping_status":"closed","template":"","meta":{"_acf_changed":false,"footnotes":""},"tags":[1344,1346,1398,1340,1315],"targets":[1317],"rapporti_tipologie":[762],"class_list":["post-192343","rapporti","type-rapporti","status-publish","hentry","tag-cybersecurity-en","tag-cybersecurity-assessment-en","tag-energy-sector","tag-resilience","tag-smart-grids-en","targets-research","rapporti_tipologie-report-en"],"acf":{"projects":{"ID":191051,"post_author":"464","post_date":"2024-07-10 16:51:29","post_date_gmt":"2024-07-10 14:51:29","post_content":"","post_title":"Application of Information Technology, Internet of Things, Peer-to-peer, to the electrical system in order to improve security and resilience","post_excerpt":"The project develops methods, tools, demonstrators and experiments to evaluate the application potential of the latest information and communication technologies for the benefit of the electro-energy system.","post_status":"publish","comment_status":"open","ping_status":"closed","post_password":"","post_name":"application-of-information-technology-internet-of-things-peer-to-peer-to-the-electrical-system-in-order-to-improve-security-and-resilience","to_ping":"","pinged":"","post_modified":"2024-08-09 15:59:29","post_modified_gmt":"2024-08-09 13:59:29","post_content_filtered":"","post_parent":0,"guid":"https:\/\/www.rse-web.it\/progetti\/application-of-information-technology-internet-of-things-peer-to-peer-to-the-electrical-system-in-order-to-improve-security-and-resilience\/","menu_order":0,"post_type":"progetti","post_mime_type":"","comment_count":"0","filter":"raw"},"order_posts":"","dont_show_search":false,"related_posts":false,"dont_show_hompage":false,"show_on_slider":false,"single_post_data":{"titolo_spot":"","post_content":"<p>The regulation of cybersecurity in the energy sector, currently under development at both the European level as a network code and the Italian level as legislation for the national security perimeter, recognizes that addressing the evolving threats to cybersecurity requires investment in research activities related to compliance verification and the development of tools for calculating compromise indicators.<\/p>\n<p>The activities described address both needs by establishing, in the first case, a methodology for deriving test plans from cybersecurity compliance analysis to standard requirements, and in the second case, a process for developing tools to calculate compromise indicators based on advanced probabilistic models and technologies being developed as international standards.<\/p>\n<p>The specification and analysis methodology for cybersecurity requirements was applied to the analysis of an architecture for congestion management in the national transmission network. The results of the analyses were used to structure a cybersecurity test plan for the infrastructure, which was validated by cybersecurity experts from the network operator with positive outcomes.<\/p>\n<p>A simulation tool for attack processes based on Bayesian networks was applied to the remote control of energy resources. The simulation results demonstrated that the model, which captures dependencies between attack steps and uses the detection of security-relevant events, has significant potential for predicting illicit behavior. In this context, such predictive capability helps identify data and events that can guide the development of an experimental anomaly detection platform based on the most probable attacks. When integrated into the experimental platform, the analysis tool becomes functional for the detection and prediction of attackers&#8217; next moves. This feature makes it particularly suitable for developing strategies that, by leveraging predictive capabilities, ensure the cyber resilience of the remote control system by preventing attackers from successfully completing their attack processes. In terms of resilience, this activity also contributed to calculating the electrical impact by using a probabilistic model to determine the likelihood of attacks on the architecture of the automatic load shedding system in emergency conditions on the national transmission network.<\/p>\n<p>The experimental platform has been extended to include functions for monitoring remote control communications, modules for collecting security-relevant events based on standard reference technologies, the emulation of a complex attack process on remote control communications, and an anomaly detection platform.<\/p>\n<p>The activity will continue with the validation of the compliance analysis methodology and the tools for processing compromise indicators guided by graphical-probabilistic analysis and reference standards.\u00a0 \u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 <strong>\u00a0<\/strong><\/p>\n","link_estreno":false,"scarica_file":[{"download_option":"download","file_name":"Download Report","download":{"ID":166630,"id":166630,"title":"20010476","filename":"20010476.pdf","filesize":4032901,"url":"https:\/\/www.rse-web.it\/wp-content\/uploads\/2022\/05\/20010476.pdf","link":"https:\/\/www.rse-web.it\/en\/rapporti\/resilienza-di-sistemi-cyber-power-scenari-di-attacco-collezione-e-analisi-di-evidenze-cyber-in-condizioni-di-attacco\/attachment\/20010476\/","alt":"","author":"93","description":"","caption":"","name":"20010476","status":"inherit","uploaded_to":166629,"date":"2022-05-12 16:21:34","modified":"2022-05-12 16:21:34","menu_order":0,"mime_type":"application\/pdf","type":"application","subtype":"pdf","icon":"https:\/\/www.rse-web.it\/wp-includes\/images\/media\/document.png"}}],"button":{"text":"","link":""},"referente_group":false,"data_emissione":"2020-12-30","autori":"G. Dondossola, R. Terruggia (RSE S.P.A.)","rapporto":"","rif_rse":"20010476"},"satellite_post_url":""},"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.2 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Cyber-power system resilience: attack scenarios, evidence collection, and cyber analysis during attacks - RSE<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Cyber-power system resilience: attack scenarios, evidence collection, and cyber analysis during attacks - RSE\" \/>\n<meta property=\"og:description\" content=\"The described activity addresses research topics related to cybersecurity requirement compliance checks and the development of tools for generating compromise indicators. To achieve these goals, a methodology was established for deriving test plans from compliance analysis with standard cybersecurity requirements, as well as a process for developing tools to calculate compromise indicators based on advanced probabilistic models and emerging technologies as international standards.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/\" \/>\n<meta property=\"og:site_name\" content=\"RSE\" \/>\n<meta property=\"article:modified_time\" content=\"2024-09-19T14:00:03+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/\",\"url\":\"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/\",\"name\":\"Cyber-power system resilience: attack scenarios, evidence collection, and cyber analysis during attacks - RSE\",\"isPartOf\":{\"@id\":\"https:\/\/www.rse-web.it\/#website\"},\"datePublished\":\"2024-08-27T13:36:39+00:00\",\"dateModified\":\"2024-09-19T14:00:03+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.rse-web.it\/en\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Cyber-power system resilience: attack scenarios, evidence collection, and cyber analysis during attacks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.rse-web.it\/#website\",\"url\":\"https:\/\/www.rse-web.it\/\",\"name\":\"RSE\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/www.rse-web.it\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.rse-web.it\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.rse-web.it\/#organization\",\"name\":\"RSE\",\"url\":\"https:\/\/www.rse-web.it\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.rse-web.it\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.rse-web.it\/wp-content\/uploads\/2024\/01\/cropped-logo_rse_2022.png\",\"contentUrl\":\"https:\/\/www.rse-web.it\/wp-content\/uploads\/2024\/01\/cropped-logo_rse_2022.png\",\"width\":734,\"height\":164,\"caption\":\"RSE\"},\"image\":{\"@id\":\"https:\/\/www.rse-web.it\/#\/schema\/logo\/image\/\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Cyber-power system resilience: attack scenarios, evidence collection, and cyber analysis during attacks - RSE","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/","og_locale":"en_US","og_type":"article","og_title":"Cyber-power system resilience: attack scenarios, evidence collection, and cyber analysis during attacks - RSE","og_description":"The described activity addresses research topics related to cybersecurity requirement compliance checks and the development of tools for generating compromise indicators. To achieve these goals, a methodology was established for deriving test plans from compliance analysis with standard cybersecurity requirements, as well as a process for developing tools to calculate compromise indicators based on advanced probabilistic models and emerging technologies as international standards.","og_url":"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/","og_site_name":"RSE","article_modified_time":"2024-09-19T14:00:03+00:00","twitter_card":"summary_large_image","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/","url":"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/","name":"Cyber-power system resilience: attack scenarios, evidence collection, and cyber analysis during attacks - RSE","isPartOf":{"@id":"https:\/\/www.rse-web.it\/#website"},"datePublished":"2024-08-27T13:36:39+00:00","dateModified":"2024-09-19T14:00:03+00:00","breadcrumb":{"@id":"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.rse-web.it\/en\/reports\/cyber-power-system-resilience-attack-scenarios-evidence-collection-and-cyber-analysis-during-attacks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.rse-web.it\/en\/"},{"@type":"ListItem","position":2,"name":"Cyber-power system resilience: attack scenarios, evidence collection, and cyber analysis during attacks"}]},{"@type":"WebSite","@id":"https:\/\/www.rse-web.it\/#website","url":"https:\/\/www.rse-web.it\/","name":"RSE","description":"","publisher":{"@id":"https:\/\/www.rse-web.it\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.rse-web.it\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.rse-web.it\/#organization","name":"RSE","url":"https:\/\/www.rse-web.it\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.rse-web.it\/#\/schema\/logo\/image\/","url":"https:\/\/www.rse-web.it\/wp-content\/uploads\/2024\/01\/cropped-logo_rse_2022.png","contentUrl":"https:\/\/www.rse-web.it\/wp-content\/uploads\/2024\/01\/cropped-logo_rse_2022.png","width":734,"height":164,"caption":"RSE"},"image":{"@id":"https:\/\/www.rse-web.it\/#\/schema\/logo\/image\/"}}]}},"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/rapporti\/192343","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/rapporti"}],"about":[{"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/types\/rapporti"}],"author":[{"embeddable":true,"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/users\/93"}],"replies":[{"embeddable":true,"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/comments?post=192343"}],"version-history":[{"count":2,"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/rapporti\/192343\/revisions"}],"predecessor-version":[{"id":196964,"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/rapporti\/192343\/revisions\/196964"}],"wp:attachment":[{"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/media?parent=192343"}],"wp:term":[{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/tags?post=192343"},{"taxonomy":"targets","embeddable":true,"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/targets?post=192343"},{"taxonomy":"rapporti_tipologie","embeddable":true,"href":"https:\/\/www.rse-web.it\/en\/wp-json\/wp\/v2\/rapporti_tipologie?post=192343"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}