GTA sitting on `gold mine'

By Toronto Star


Electrical Testing & Commissioning of Power Systems

Our customized live online or in‑person group training can be delivered to your staff at your location.

  • Live Online
  • 12 hours Instructor-led
  • Group Training Available
Regular Price:
$599
Coupon Price:
$499
Reserve Your Seat Today
The GTA is one of the world's biggest "gold mines" in potential energy efficiency savings, says environmental guru Amory Lovins.

It could start taking advantage of this lucrative resource without waiting for support or action from the federal government, Lovins said yesterday before a presentation to the Toronto City Summit Alliance.

The city and surrounding 905 regions use electricity and other energy very inefficiently, and are too cautious about making improvements, he said. Progress on efficiency actually slipped during the 1990s and is only now showing signs of a comeback.

Improvement is essential to try to reduce climate change and to cut air pollution that creates smog, said Lovins, who has been developing and promoting energy efficiency for 30 years.

His super-insulated 3,700-square-foot home, built in 1983 on a mountainside near Denver, doesn't have a furnace, but it's warm enough to grow bananas. Its construction cost $1,100 (US) more than a conventional house, but his monthly electricity bill is about $7.

"Toronto is catching up," he said. "It's very encouraging to see the revival in efficiency efforts that largely collapsed in the '90s. There's strong leadership emerging."

Mayor David Miller's pledge to make Toronto the greenest city in North America is a promising and worthy ambition, and "there's plenty of talent here to do it."

"I would hope that with the kind of leadership that the mayor is showing we could see some much more ambitious efforts. All the ingredients are there, and I don't really care whether Ottawa plays or not. The real action is at the provincial and municipal level."

Higher energy prices aren't essential for change to occur, said Lovins.

Among the major steps he recommends:

Get rid of electric water heaters and home heating, "which are both grossly uneconomic," he said. "One of the most lucrative things would be bounty hunting" for these energy wasters, as well as electric stoves and clothes dryers. Electricity and natural gas distributors team up to replace those uses with gas or, in the case of water heating, gas and solar.

Developers who apply to build "green" projects should be moved to the head of the line for approvals. "That doesn't cost the government anything. Time is money to the developer, though. It's a good incentive," Lovins said.

Offer cash rewards to developers whose projects are very efficient. Instead of paying permit fees, they would get a rebate. Those with wasteful buildings would pay higher fees.

Reward home or building owners whose energy consumption is less than a pre-set, stringent standard. They would get the same payment for the energy they save as those who actually generate power. The system is used in New England, Lovins said. "You can sell the megawatts" that you save.

A typical Ontario office building uses 27 watts of electricity per square metre of floor space for lighting, he noted. That could be cut to less than three watts and produce a better, brighter working environment.

Let businesses claim investments in energy efficiency as an operating expense when they file their provincial corporate taxes. At present, they must treat them as capital costs that must be written off over several years. "If I run a business and pay for energy, I expense it," Lovins said. "Why shouldn't I expense the efficiency investment so it's a level playing field."

Boost taxes or fees on gas-guzzling vehicles and use the money to reward drivers who buy efficient models.

Interest in climate change and other environment issues is wide and deep, said Lovins, who helps companies become more efficient and uses some of the proceeds from those contracts to support the research and lobbying work of his Rocky Mountain Institute.

In the United States, the private sector and the public are leading the way and governments are only gradually catching up, he said.

"Politicians commonly suppose that climate protection is costly and they argue about who makes the sacrifices and bears the burdens. Actually, climate protection is profitable, so those who understand that race for the profits, jobs and competitive advantage before their competitors get there."

Related News

Carbon capture: How can we remove CO2 from the atmosphere?

CO2 Removal Technologies address climate change via negative emissions, including carbon capture, reforestation, soil carbon, biochar, BECCS, DAC, and mineralization, helping meet Paris Agreement targets while managing costs, land use, and infrastructure demands.

 

Key Points

Methods to extract or sequester atmospheric CO2, combining natural and engineered approaches to limit warming.

✅ Includes reforestation, soil carbon, biochar, BECCS, DAC, mineralization

✅ Balances climate goals with costs, land, energy, and infrastructure

✅ Key to Paris Agreement targets under 1.5-2.0 °C warming

 

The world is, on average, 1.1 degrees Celsius warmer today than it was in 1850. If this trend continues, our planet will be 2 – 3 degrees hotter by the end of this century, according to the Intergovernmental Panel on Climate Change (IPCC).

The main reason for this temperature rise is higher levels of atmospheric carbon dioxide, which cause the atmosphere to trap heat radiating from the Earth into space. Since 1850, the proportion of CO2 in the air has increased, with record greenhouse gas concentrations documented, from 0.029% to 0.041% (288 ppm to 414 ppm).

This is directly related to the burning of coal, oil and gas, which were created from forests, plankton and plants over millions of years. Back then, they stored CO2 and kept it out of the atmosphere, but as fossil fuels are burned, that CO2 is released. Other contributing factors include industrialized agriculture and slash-and-burn land clearing techniques, and emissions from SF6 in electrical equipment are also concerning today.

Over the past 50 years, more than 1200 billion tons of CO2 have been emitted into the planet's atmosphere — 36.6 billion tons in 2018 alone, though global emissions flatlined in 2019 before rising again. As a result, the global average temperature has risen by 0.8 degrees in just half a century.


Atmospheric CO2 should remain at a minimum
In 2015, the world came together to sign the Paris Climate Agreement which set the goal of limiting global temperature rise to well below 2 degrees — 1.5 degrees, if possible.

The agreement limits the amount of CO2 that can be released into the atmosphere, providing a benchmark for the global energy transition now underway. According to the IPCC, if a maximum of around 300 billion tons were emitted, there would be a 50% chance of limiting global temperature rise to 1.5 degrees. If CO2 emissions remain the same, however, the CO2 'budget' would be used up in just seven years.

According to the IPCC's report on the 1.5 degree target, negative emissions are also necessary to achieve the climate targets.


Using reforestation to remove CO2
One planned measure to stop too much CO2 from being released into the atmosphere is reforestation. According to studies, 3.6 billion tons of CO2 — around 10% of current CO2 emissions — could be saved every year during the growth phase. However, a study by researchers at the Swiss Federal Institute of Technology, ETH Zurich, stresses that achieving this would require the use of land areas equivalent in size to the entire US.

Young trees at a reforestation project in Africa (picture-alliance/OKAPIA KG, Germany)
Reforestation has potential to tackle the climate crisis by capturing CO2. But it would require a large amount of space


More humus in the soil
Humus in the soil stores a lot of carbon. But this is being released through the industrialization of agriculture. The amount of humus in the soil can be increased by using catch crops and plants with deep roots as well as by working harvest remnants back into the ground and avoiding deep plowing. According to a study by the German Institute for International and Security Affairs (SWP) on using targeted CO2 extraction as a part of EU climate policy, between two and five billion tons of CO2 could be saved with a global build-up of humus reserves.


Biochar shows promise
Some scientists see biochar as a promising technology for keeping CO2 out of the atmosphere. Biochar is created when organic material is heated and pressurized in a zero or very low-oxygen environment. In powdered form, the biochar is then spread on arable land where it acts as a fertilizer. This also increases the amount of carbon content in the soil. According to the same study from the SWP, global application of this technology could save between 0.5 and two billion tons of CO2 every year.


Storing CO2 in the ground
Storing CO2 deep in the Earth is already well-known and practiced on Norway's oil fields, for example. However, the process is still controversial, as storing CO2 underground can lead to earthquakes and leakage in the long-term. A different method is currently being practiced in Iceland, in which CO2 is sequestered into porous basalt rock to be mineralized into stone. Both methods still require more research, however, with new DOE funding supporting carbon capture, utilization, and storage.

Capturing CO2 to be held underground is done by using chemical processes which effectively extract the gas from the ambient air, and some researchers are exploring CO2-to-electricity concepts for utilization. This method is known as direct air capture (DAC) and is already practiced in other parts of Europe.  As there is no limit to the amount of CO2 that can be captured, it is considered to have great potential. However, the main disadvantage is the cost — currently around €550 ($650) per ton. Some scientists believe that mass production of DAC systems could bring prices down to €50 per ton by 2050. It is already considered a key technology for future climate protection.

The inside of a carbon capture facility in the Netherlands (RWE AG)
Carbon capture facilities are still very expensive and take up a huge amount of space

Another way of extracting CO2 from the air is via biomass. Plants grow and are burned in a power plant to produce electricity. CO2 is then extracted from the exhaust gas of the power plant and stored deep in the Earth, with new U.S. power plant rules poised to test such carbon capture approaches.

The big problem with this technology, known as bio-energy carbon capture and storage (BECCS) is the huge amount of space required. According to Felix Creutzig from the Mercator Institute on Global Commons and Climate Change (MCC) in Berlin, it will therefore only play "a minor role" in CO2 removal technologies.


CO2 bound by rock minerals
In this process, carbonate and silicate rocks are mined, ground and scattered on agricultural land or on the surface water of the ocean, where they collect CO2 over a period of years. According to researchers, by the middle of this century it would be possible to capture two to four billion tons of CO2 every year using this technique. The main challenges are primarily the quantities of stone required, and building the necessary infrastructure. Concrete plans have not yet been researched.


Not an option: Fertilizing the sea with iron
The idea is use iron to fertilize the ocean, thereby increasing its nuturient content, which would allow plankton to grow stronger and capture more CO2. However, both the process and possible side effects are very controversial. "This is rarely treated as a serious option in research," concludes SWP study authors Oliver Geden and Felix Schenuit.

 

Related News

View more

Trump's Order Boosts U.S. Uranium and Nuclear Energy

Uranium Critical Mineral Reclassification signals a US executive order directing USGS to restore critical status, boosting nuclear energy, domestic uranium mining, streamlined permitting, federal support, and energy security amid import reliance and supply chain risks.

 

Key Points

A policy relisting uranium as a critical mineral to unlock funding, speed permits, and strengthen U.S. nuclear security.

✅ Directs Interior to have USGS reconsider uranium classification

✅ Speeds permits for domestic uranium mining projects

✅ Targets import dependence and strengthens energy security

 

In a strategic move to bolster the United States' nuclear energy sector, former President Donald Trump issued an executive order on January 20, 2025, directing the Secretary of the Interior to instruct the U.S. Geological Survey (USGS) to reconsider classifying uranium as a critical mineral. This directive aims to enhance federal support and streamline permitting processes for domestic uranium projects, thereby strengthening U.S. energy security objectives.

Reclassification of Uranium as a Critical Mineral

The USGS had previously removed uranium from its critical minerals list in 2022, categorizing it as a "fuel mineral" that did not qualify for such designation. The recent executive order seeks to reverse this decision, recognizing uranium's strategic importance in the context of the nation's energy infrastructure and geopolitical considerations.

Implications for Domestic Uranium Production

Reclassifying uranium as a critical mineral is expected to unlock federal funding and expedite the permitting process for uranium mining projects within the United States. This initiative is particularly pertinent given the significant decline in domestic uranium production over the past two decades. According to the U.S. Energy Information Administration, domestic production has decreased by 96%, from 4.8 million pounds in 2014 to approximately 121,296 pounds in the third quarter of 2024.

Current Uranium Supply Dynamics

Despite the push for increased domestic production, the U.S. remains heavily reliant on uranium imports. In 2022, 27% of U.S. uranium purchases were sourced from Canada, with an additional 57% imported from countries including Kazakhstan, Uzbekistan, Australia, and Russia; a recent ban on Russian uranium could further disrupt these supply patterns and heighten risks. This reliance on foreign sources has raised concerns about energy security, especially in light of recent geopolitical tensions.

Challenges and Considerations

While the executive order represents a significant step toward revitalizing the U.S. nuclear energy sector, several challenges persist, and energy dominance faces constraints that will shape implementation:

  • Regulatory Hurdles: Accelerating the permitting process for uranium mining projects involves navigating complex environmental and regulatory frameworks, though recent permitting reforms for geothermal hint at potential pathways, which can be time-consuming and contentious.

  • Market Dynamics: The uranium market is subject to global supply and demand fluctuations, and domestic producers may face competition from established international suppliers.

  • Infrastructure Development: Expanding domestic uranium production necessitates substantial investment in mining infrastructure and workforce development, areas that have been underfunded in recent years.

Broader Implications for Nuclear Energy Policy

The executive order aligns with a broader strategy to revitalize the U.S. nuclear energy industry, where ongoing nuclear innovation is critical to delivering stable, low-emission power. The increasing demand for nuclear energy is driven by the global push for zero-emissions energy sources and the need to support power-intensive technologies, such as artificial intelligence servers.

Former President Trump's executive order to reclassify uranium as a critical mineral, aligning with his broader energy agenda and a prior pledge to end the 'war on coal', signifies a pivotal moment for the U.S. nuclear energy sector. By potentially unlocking federal support, including programs advanced by the Nuclear Innovation Act, and streamlining permitting processes, this initiative aims to reduce dependence on foreign uranium sources and enhance national energy security. However, realizing these objectives will require addressing regulatory challenges, market dynamics, and infrastructure needs to ensure the successful revitalization of the domestic uranium industry.

 

Related News

View more

BC Hydro to begin reporting COVID-19 updates at Site C

BC Hydro COVID-19 Site C updates detail monitoring, self-isolation at the work camp, Northern Health coordination, social distancing, reduced staffing, progress on diversion tunnels, Highway 29 realignment, and public reports to Peace River Regional District.

 

Key Points

Regular reports on COVID-19 monitoring, isolation protocols, staffing, and Site C work with Northern Health.

✅ Daily updates to Peace River Regional District

✅ Isolation rooms reserved in camp dorms

✅ Construction continues with social distancing

 

BC Hydro says it will begin giving regular updates to the public and the Peace River Regional District about its monitoring of the coronavirus COVID-19 at Site C, reflecting broader industry alerts such as a U.S. grid warning on pandemic risks.

BC Hydro met with the Peace River Regional District Sunday via phone call to discuss the forthcoming measures.

"We did a make a commitment to provide regular updates to Peace River Regional District member communities on an ongoing basis," said spokesman Dave Conway.

"(It's) certainly one of the things that we heard that they want and we heard that strongly and repeatedly."

Conway said updates could be posted as early as Monday on BC Hydro's website for the project.

As of March 23, there were sixteen people in self-isolation at the work camp just outside Fort St. John. Conway did not know how many of the workers have been tested for the virus, but said there are no confirmed cases on site. Provincial guidelines are being followed, he said.

"If they show any of the following symptoms, so sneezing, sore throat, muscle aches, headaches, coughs, or difficulty breathing, they're isolated for 14 days," Conway said.

"We're being very cautious of our application of the guidelines. We're asking anybody to self isolate if they have any slight symptoms."

BC Hydro has set aside one 30-room dorm at the camp for workers who need to isolate themselves, similar to measures in other jurisdictions where the power industry may house staff on-site to maintain operations, and has another four dorms with another 120 rooms that can be used as necessary. Conway could not immediately say whether additional rooms at hotels or at its apartment block have also been reserved.

There have been  700 workers home since a scale-back in construction was announced on March 18, and more workers are expected to be sent home this week. There were 940 people in camp on March 23, Conway said.

"To put that into perspective, the number of people staying in camp at this time of year, based on previous years, usually averages around 1,700," Conway said.

Brad Sperling, board chair for the Peace River Regional District, said BC Hydro has committed to formulating a strategy over the next few days to keep local government and public informed.

Electoral director Karen Goodings said she was pleased by that, and that it's important to everyone that BC Hydro works with Northern Health and adheres to provincial guidelines.

"The senior governments are critical to what measures will be undertaken not only on the project, including the camp, but also on the rules around transportation of workers and on addressing workplace conduct investigations at other utilities," Goodings wrote in an email.

On Sunday, the Site C leisure bus was seen at Totem Mall with two passengers on board.

Conway said the ongoing use of the shuttle is being monitored and evaluated, and is operating under social distancing and extra cleaning guidelines aligned with public transportation changes that have come under BC Transit.

The bus makes 10 trips per day from the camp, with an average of two passengers per trip, Conway said.

"We still have, of course, people in camp, and it's an opportunity for guests to get out and go for a walk and re-provision themselves for essentials for personal needs," Conway said.

Construction of the river diversion tunnels continues to meet a fall deadline, while work also carries on to realign Highway 29, build the transmission line, and clear the valley and future reservoir. Other site security and environmental monitoring work also continues, as utilities confront a dangerous dam-climbing trend driven by social media.

BC Hydro has said measures have been put into place, amid concerns similar to those voiced by nuclear plant workers about precautions at industrial sites, to minimize the potential spread of the COVID-19 on site, such as closing the camp gym and theatre, eliminating self serve dining stations, as well as non-essential travel, tours, and meetings.

Some workers, however, have raised worries about the tight working conditions on site, noting field safety incidents that highlight risks in the sector.

The province announced Monday 48 new cases in B.C., including one more in the Northern Health region, bringing the region's total to five, while Saskatchewan's numbers show how the crisis has reshaped that province. Their precise whereabouts are not being reported by B.C. public health officials.

 

Related News

View more

Maritime Electric team works on cleanup in Turks and Caicos

Maritime Electric Hurricane Irma Response details utility crews aiding Turks and Caicos with power restoration, storm recovery, debris removal, and essential services, coordinated with Fortis Inc., despite limited equipment, heat, and over 1,000 downed poles.

 

Key Points

A utility mission restoring power and essential services in Turks and Caicos after Irma, led by Maritime Electric.

✅ Over 1,000 poles down; crews climbing without bucket trucks

✅ Restoring hospitals, water, and communications first

✅ Fortis Inc. coordination; 2-3 week deployment with follow-on crews

 

Maritime Electric has sent a crew to help in the clean up and power restoration of Turks and Caicos after the Caribbean island was hit by Hurricane Irma, a storm that also saw FPL's massive response across Florida.

They arrived earlier this week and are working on removing debris and equipment so when supplies arrive, power can be brought back online, and similar mutual aid deployments, including Canadian crews to Florida, have been underway as well.

Fortis Inc., the parent company for Maritime Electric operates a utility in Turks and Caicos.

Kim Griffin, spokesperson for Maritime Electric, said there are over 1000 poles that were brought down by the storm, mirroring Florida restoration timelines reported elsewhere.

"It's really an intense storm recovery," she said. 'Good spirits'

The crew is working with less heavy equipment than they are used to, climbing poles instead of using bucket trucks, in hot and humid weather.

Griffin said their focus is getting essential services restored as quckly as possible, similar to progress in Puerto Rico's restoration efforts following recent hurricanes.

The crew will be there for two or three weeks and Griffin said Maritime Electric may send another group, as seen with Ontario's deployment to Florida, to continue the job.

She said the team has been well received and is in "good spirits."

"The people around them have been very positive that they're there," she said.

"They've said it's just been overwhelming how kind and generous the people have been to them."

 

Related News

View more

From smart meters to big batteries, co-ops emerge as clean grid laboratories

Minnesota Electric Cooperatives are driving grid innovation with smart meters, time-of-use pricing, demand response, and energy storage, including iron-air batteries, to manage peak loads, integrate wind and solar, and cut costs for rural members.

 

Key Points

Member-owned utilities piloting load management, meters, and storage to integrate wind and solar, cutting peak demand.

✅ Time-of-use pricing pilots lower bills and shift peak load.

✅ Iron-air battery tests add multi-day, low-cost energy storage.

✅ Smart meters enable demand response across rural co-ops.

 

Minnesota electric cooperatives have quietly emerged as laboratories for clean grid innovation, outpacing investor-owned utilities on smart meter installations, time-based pricing pilots, and experimental battery storage solutions.

“Co-ops have innovation in their DNA,” said David Ranallo, a spokesperson for Great River Energy, a generation and distribution cooperative that supplies power to 28 member utilities — making it one of the state’s largest co-op players.

Minnesota farmers helped pioneer the electric co-op model more than a century ago, similar to modern community-generated green electricity initiatives, pooling resources to build power lines, transformers and other equipment to deliver power to rural parts of the state. Today, 44 member-owned electric co-ops serve about 1.7 million rural and suburban customers and supply almost a quarter of the state’s electricity.

Co-op utilities have by many measures lagged on clean energy. Many still rely on electricity from coal-fired power plants. They’ve used political clout with rural lawmakers to oppose new pollution regulations and climate legislation, and some have tried to levy steep fees on customers who install solar panels.

Where they are emerging as innovators is with new models and technology for managing electric grid loads — from load-shifting water heaters to a giant experimental battery made of iron. The programs are saving customers money by delaying the need for expensive new infrastructure, and also showing ways to unlock more value from cheap but variable wind and solar power.

Unlike investor-owned utilities, “we have no incentive to invest in new generation,” said Darrick Moe, executive director of the Minnesota Rural Electric Association. Curbing peak energy demand has a direct financial benefit for members.

Minnesota electric cooperatives have launched dozens of programs, such as the South Metro solar project, in recent years aimed at reducing energy use and peak loads, in particular. They include:

Cost calculations are the primary driver for electric cooperatives’ recent experimentation, and a lighter regulatory structure and evolving electricity market reforms have allowed them to act more quickly than for-profit utilities.

“Co-ops and [municipal utilities] can act a lot more nimbly compared to investor-owned utilities … which have to go through years of proceedings and discussions about cost-recovery,” said Gabe Chan, a University of Minnesota associate professor who has researched electric co-ops extensively. Often, approval from a local board is all that’s required to launch a venture.

Great River Energy’s programs, which are rebranded and sold through member co-ops, yielded more than 101 million kilowatt-hours of savings last year — enough to power 9,500 homes for a year.

Beyond lowering costs for participants and customers at large, the energy-saving and behavior-changing programs sometimes end up being cited as case studies by larger utilities considering similar offerings. Advocates supporting a proposal by the city of Minneapolis and CenterPoint Energy to allow residents to pay for energy efficiency improvements on their utility bills through distributed energy rebates used several examples from cooperatives.

Despite the pace of innovation on load management, electric cooperatives have been relatively slow to transition from coal-fired power. More than half of Great River Energy’s electricity came from coal last year, and Dairyland Power, another major power wholesaler for Minnesota co-ops, generated 70% of its energy from coal. Meanwhile, Xcel Energy, the state’s largest investor-owned utility, has already reduced coal to about 20% of its energy mix.

The transition to cleaner power for some co-ops has been slowed by long-term contracts with power suppliers that have locked them into dirty power. Others have also been stalled by management or boards that have been resistant to change. John Farrell, director of the Institute for Local Self-Reliance’s Energy Democracy program, said generalizing co-ops is difficult. 

“We’ve seen some co-ops that have got 75-year contracts for coal, that are invested in coal mines and using their newsletter to deny climate change,” he said. “Then you see a lot of them doing really amazing things like creating energy storage systems … and load balancing [programs], because they are unique and locally managed and can have that freedom to experiment without having to go through a regulatory process.”

Great River Energy, for its part, says it intends to reach 54% renewable generation by 2025, while some communities, like Frisco, Colorado, are targeting 100% clean electricity by specific dates. Its members recently voted to sell North Dakota’s largest coal plant, but the arrangement involves members continuing to buy power from the new owners for another decade.

The cooperative’s path to clean power could become clearer if its experimental iron-air battery project is successful. The project, the first of its kind in the country, is expected to be completed by 2023.

 

Related News

View more

Purdue: As Ransomware Attacks Increase, New Algorithm May Help Prevent Power Blackouts

Infrastructure Security Algorithm prioritizes cyber defense for power grids and critical infrastructure, mitigating ransomware, blackout risks, and cascading failures by guiding utilities, regulators, and cyber insurers on optimal security investment allocation.

 

Key Points

An algorithm that optimizes security spending to cut ransomware and blackout risks across critical infrastructure.

✅ Guides utilities on optimal security allocation

✅ Uses incentives to correct human risk biases

✅ Prioritizes assets to prevent cascading outages

 

Millions of people could suddenly lose electricity if a ransomware attack just slightly tweaked energy flow onto the U.S. power grid, as past US utility intrusions have shown.

No single power utility company has enough resources to protect the entire grid, but maybe all 3,000 of the grid's utilities could fill in the most crucial security gaps if there were a map showing where to prioritize their security investments.

Purdue University researchers have developed an algorithm to create that map. Using this tool, regulatory authorities or cyber insurance companies could establish a framework for protecting the U.S. power grid that guides the security investments of power utility companies to parts of the grid at greatest risk of causing a blackout if hacked.

Power grids are a type of critical infrastructure, which is any network - whether physical like water systems or virtual like health care record keeping - considered essential to a country's function and safety. The biggest ransomware attacks in history have happened in the past year, affecting most sectors of critical infrastructure in the U.S. such as grain distribution systems in the food and agriculture sector and the Colonial Pipeline, which carries fuel throughout the East Coast, prompting increased military preparation for grid hacks in the U.S.

With this trend in mind, Purdue researchers evaluated the algorithm in the context of various types of critical infrastructure in addition to the power sector, including electricity-sector IoT devices that interface with grid operations. The goal is that the algorithm would help secure any large and complex infrastructure system against cyberattacks.

"Multiple companies own different parts of infrastructure. When ransomware hits, it affects lots of different pieces of technology owned by different providers, so that's what makes ransomware a problem at the state, national and even global level," said Saurabh Bagchi, a professor in the Elmore Family School of Electrical and Computer Engineering and Center for Education and Research in Information Assurance and Security at Purdue. "When you are investing security money on large-scale infrastructures, bad investment decisions can mean your power grid goes out, or your telecommunications network goes out for a few days."

Protecting infrastructure from hacks by improving security investment decisions

The researchers tested the algorithm in simulations of previously reported hacks to four infrastructure systems: a smart grid, industrial control system, e-commerce platform and web-based telecommunications network. They found that use of this algorithm results in the most optimal allocation of security investments for reducing the impact of a cyberattack.

The team's findings appear in a paper presented at this year's IEEE Symposium on Security and Privacy, the premier conference in the area of computer security. The team comprises Purdue professors Shreyas Sundaram and Timothy Cason and former PhD students Mustafa Abdallah and Daniel Woods.

"No one has an infinite security budget. You must decide how much to invest in each of your assets so that you gain a bump in the security of the overall system," Bagchi said.

The power grid, for example, is so interconnected that the security decisions of one power utility company can greatly impact the operations of other electrical plants. If the computers controlling one area's generators don't have adequate security protection, as seen when Russian hackers accessed control rooms at U.S. utilities, then a hack to those computers would disrupt energy flow to another area's generators, forcing them to shut down.

Since not all of the grid's utilities have the same security budget, it can be hard to ensure that critical points of entry to the grid's controls get the most investment in security protection.

The algorithm that Purdue researchers developed would incentivize each security decision maker to allocate security investments in a way that limits the cumulative damage a ransomware attack could cause. An attack on a single generator, for instance, would have less impact than an attack on the controls for a network of generators, which sophisticated grid-disruption malware can target at scale, rather than for the protection of a single generator.

Building an algorithm that considers the effects of human behavior

Bagchi's research shows how to increase cybersecurity in ways that address the interconnected nature of critical infrastructure but don't require an overhaul of the entire infrastructure system to be implemented.

As director of Purdue's Center for Resilient Infrastructures, Systems, and Processes, Bagchi has worked with the U.S. Department of Defense, Northrop Grumman Corp., Intel Corp., Adobe Inc., Google LLC and IBM Corp. on adopting solutions from his research. Bagchi's work has revealed the advantages of establishing an automatic response to attacks, and analyses like Symantec's Dragonfly report highlight energy-sector risks, leading to key innovations against ransomware threats, such as more effective ways to make decisions about backing up data.

There's a compelling reason why incentivizing good security decisions would work, Bagchi said. He and his team designed the algorithm based on findings from the field of behavioral economics, which studies how people make decisions with money.

"Before our work, not much computer security research had been done on how behaviors and biases affect the best defense mechanisms in a system. That's partly because humans are terrible at evaluating risk and an algorithm doesn't have any human biases," Bagchi said. "But for any system of reasonable complexity, decisions about security investments are almost always made with humans in the loop. For our algorithm, we explicitly consider the fact that different participants in an infrastructure system have different biases."

To develop the algorithm, Bagchi's team started by playing a game. They ran a series of experiments analyzing how groups of students chose to protect fake assets with fake investments. As in past studies in behavioral economics, they found that most study participants guessed poorly which assets were the most valuable and should be protected from security attacks. Most study participants also tended to spread out their investments instead of allocating them to one asset even when they were told which asset is the most vulnerable to an attack.

Using these findings, the researchers designed an algorithm that could work two ways: Either security decision makers pay a tax or fine when they make decisions that are less than optimal for the overall security of the system, or security decision makers receive a payment for investing in the most optimal manner.

"Right now, fines are levied as a reactive measure if there is a security incident. Fines or taxes don't have any relationship to the security investments or data of the different operators in critical infrastructure," Bagchi said.

In the researchers' simulations of real-world infrastructure systems, the algorithm successfully minimized the likelihood of losing assets to an attack that would decrease the overall security of the infrastructure system.

Bagchi's research group is working to make the algorithm more scalable and able to adapt to an attacker who may make multiple attempts to hack into a system. The researchers' work on the algorithm is funded by the National Science Foundation, the Wabash Heartland Innovation Network and the Army Research Lab.

Cybersecurity is an area of focus through Purdue's Next Moves, a set of initiatives that works to address some of the greatest technology challenges facing the U.S. Purdue's cybersecurity experts offer insights and assistance to improve the protection of power plants, electrical grids and other critical infrastructure.

 

Related News

View more

Sign Up for Electricity Forum’s Newsletter

Stay informed with our FREE Newsletter — get the latest news, breakthrough technologies, and expert insights, delivered straight to your inbox.

Electricity Today T&D Magazine Subscribe for FREE

Stay informed with the latest T&D policies and technologies.
  • Timely insights from industry experts
  • Practical solutions T&D engineers
  • Free access to every issue

Live Online & In-person Group Training

Advantages To Instructor-Led Training – Instructor-Led Course, Customized Training, Multiple Locations, Economical, CEU Credits, Course Discounts.

Request For Quotation

Whether you would prefer Live Online or In-Person instruction, our electrical training courses can be tailored to meet your company's specific requirements and delivered to your employees in one location or at various locations.