Grid confronts a threat from Mother Nature

By New York Times


High Voltage Maintenance Training Online

Our customized live online or in‑person group training can be delivered to your staff at your location.

  • Live Online
  • 12 hours Instructor-led
  • Group Training Available
Regular Price:
$599
Coupon Price:
$499
Reserve Your Seat Today
A report just issued by the Energy Department and the North American Electric Reliability Corporation, known as NERC, an industry group that polices the power grid, lists three categories of threats to the grid: coordinated cyber- and physical attacks, pandemic disease and electromagnetic damage.

Grid experts have long worried that the high-altitude detonation of a nuclear weapon would send a damaging pulse of energy to earth. And changes in solar activity have occasionally distorted the earthÂ’s magnetic field and generated currents in the rock that have caused blackouts.

What the threats have in common, said Jerry Cauley, the president and chief executive of NERC, is the “potential to simultaneously impact many assets at once.’’ The grid comprises 200,000 miles of transmission lines and millions of digital controls, he pointed out. The study is an attempt to map out preparations for events that are rare or have so far never happened, what the Energy Department calls “high-impact, low-frequency events.”

The utility industry did begin to prepare for the H1N1 outbreak – that is, the possibility that widespread illness result in a shortage of workers to maintain power lines and the grid – but that did not turn out to be a problem. The electric system in Quebec was shut down by a geomagnetic storm in 1989 Mr. Cauley said that while utility systems at northern latitudes were thought to be most vulnerable, recent work has established that Mother Nature could reach further south than previously thought.

The geomagnetic problem is that the sun is constantly sending out streams of charged particles that hit the earthÂ’s magnetic field. If the strength of the stream changes, the field will move. And if the magnetic field moves through rock that is an electric conductor, it will induce currents in the earth. These currents can overload transformers and other components of the power system.

The study recommends a variety of steps, including preparing a better inventory of spare parts and better contingency plans for starting up the grid in circumstances where there is no electric power – a trick akin to starting a fire without a match. And, in the tradition of government/industry studies, it recommends more studies.

Related News

Wind and Solar Double Global Share of Electricity in Five Years

Wind And Solar Energy Growth is reshaping the global power mix, accelerating grid decarbonization as coal declines; boosted by pandemic demand drops, renewables now supply near 10% of electricity, advancing climate targets toward net-zero trajectories.

 

Key Points

It is the rise in wind and solar's share of electricity, driving decarbonization and displacing coal globally.

✅ Share doubled in five years across 83% of global electricity

✅ Coal's share fell; renewables neared 10% in H1 2020

✅ Growth still insufficient for 1.5 C; needs ~13% coal cuts yearly

 

Wind and solar energy doubled its share of the global power mix over the last five years, with renewable power records underscoring the trend, moving the world closer to a path that would limit the worst effects of global warming.

The sources of renewable energy made up nearly 10% of power in most parts of the world in the first half of this year, according to analysis from U.K. environmental group Ember, while globally over 30% of electricity is renewable in broader assessments.

That decarbonization of the power grid was boosted this year as shutdowns to contain the coronavirus reduced demand overall, leaving renewables to pick up the slack.

Ember analyzed generation in 48 countries that represent 83% of global electricity. The data showed wind and solar power increased 14% in the first half of 2020 compared with the same period last year while global demand fell 3% because of the impact of the coronavirus.

At the same time that wind turbines and solar panels have proliferated, coal’s share of the mix has fallen around the world. In some, mainly western European countries, where renewables surpassed fossil fuels, coal has been all but eliminated from electricity generation.


China relied on the dirtiest fossil fuel for 68% of its power five years ago, and solar PV growth in China has accelerated since then. That share dipped to 62% this year and renewables made up 10% of all electricity generated.

Still, the growth of renewables may not be going fast enough for the world to hit its climate goals, even as the U.S. is projected to have one-fourth of electricity from renewables soon, and coal is still being burnt for power in many parts of the world.

Coal use needs to fall by about 79% by 2030 from last year’s levels - a fall of 13% every year throughout the decade to come, and in the U.S. renewable electricity surpassed coal in 2022, Ember said.

New installations of wind farms are set to hold more or less steady in the next five years, according to data from BloombergNEF on deployment trends. That will make it difficult to realize a sustained pace of doubling renewable power every five years.

“If your expectations are that we need to be on target for 1.5 degrees, clearly we’re not going fast enough,” said Dave Jones, an analyst at Ember. “We’re not on a trajectory where we’re reducing coal emissions fast enough.”

 

Related News

View more

3 ways 2021 changed electricity - What's Next

U.S. Power Sector Outlook 2022 previews clean energy targets, grid reliability and resilience upgrades, transmission expansion, renewable integration, EV charging networks, and decarbonization policies shaping utilities, markets, and climate strategies amid extreme weather risks.

 

Key Points

An outlook on clean energy goals, grid resilience, transmission, and EV infrastructure shaping U.S. decarbonization.

✅ States set 100% clean power targets; equity plans deepen.

✅ Grid reforms, transmission builds, and RTO debates intensify.

✅ EV plants, batteries, and charging corridors accelerate.

 

As sweeping climate legislation stalled in Congress this year, states and utilities were busy aiming to reshape the future of electricity.

States expanded clean energy goals and developed blueprints on how to reach them. Electric vehicles got a boost from new battery charging and factory plans.

The U.S. power sector also is sorting through billions of dollars of damage that will be paid for by customers over time. States coped with everything from blackouts during a winter storm to heat waves, hurricanes, wildfires and tornadoes. The barrage has added urgency to a push for increased grid reliability and resilience, especially as the power generation mix evolves, EV grid challenges grow as electricity is used to power cars and the climate changes.

“The magnitude of our inability to serve with these sort of discontinuous jumps in heat or cold or threats like wildfires and flooding has made it really clear that we can’t take the grid for granted anymore — and that we need to do something,” said Alison Silverstein, a Texas-based energy consultant.

Many of the announcements in 2021 could see further developments next year as legislatures, utilities and regulators flesh out details on everything from renewable projects to ways to make the grid more resilient.

On the policy front, the patchwork of state renewable energy and carbon reduction goals stands out considering Congress’ failure so far to advance a key piece of President Biden’s agenda — the "Build Back Better Act," which proposed about $550 billion for climate action. Criticism from fellow Democrats has rained on Sen. Joe Manchin (D-W.Va.) since he announced his opposition this month to that legislation (E&E Daily, Dec. 21).

The Biden administration has taken some steps to advance its priorities as it looks to decarbonize the U.S. power sector by 2035. That includes promoting electric vehicles, which are part of a goal to make the United States have net-zero emissions economywide no later than 2050. The administration has called for a national network of 500,000 EV charging stations as the American EV boom raises power-supply questions, and mandated the government begin buying only EVs by 2035.

Still, the fate of federal legislation and spending is uncertain. States and utility plans are considered a critical factor in whether Biden’s targets come to fruition. Silverstein also stressed the importance of regional cooperation as policymakers examine the grid and challenges ahead.

“Our comfort as individuals and as households and as an economy depends on the grid staying up,” Silverstein said, “and that’s no longer a given.”

Here are three areas of the electricity sector that saw changes in 2021, and could see significant developments next year:

 

1. Clean energy
The list of states with new or revamped clean energy goals expanded again in 2021, with Oregon and Illinois joining the ranks requiring 100 percent zero-carbon electricity in 2040 and 2050, respectively.

Washington state passed a cap-and-trade bill. Massachusetts and Rhode Island adopted 2050 net-zero goals.

North Carolina adopted a law requiring a 70 percent cut in carbon emissions by 2030 from 2005 levels and establishing a midcentury net-zero goal.

Nebraska didn’t adopt a statewide policy, but its three public power districts voted separately to approve clean energy goals, actions that will collectively have the same effect. Even the governor of fossil-fuel-heavy North Dakota, during an oil conference speech, declared a goal of making the state carbon-neutral by the end of the decade.

These and other states join hundreds of local governments, big energy users and utilities, which were also busy establishing and reworking renewable energy and climate goals this year in response to public and investor pressure.

However, many of the details on how states will reach those targets are still to be determined, including factors such as how much natural gas will remain online and how many renewable projects will connect to the grid.

Decisions on clean energy that could be made in 2022 include a key one in Arizona, which has seen support rise and fall over the years for a proposal to lead to 100 percent clean power for regulated electric utilities. The Arizona Corporation Commission could discuss the matter in January, though final approval of the plan is not a sure thing. Eyes also are on California, where a much bigger grid for EVs will be needed, as it ponders a recent proposal on rooftop solar that has supporters of renewables worried about added costs that could hamper the industry.

In the wake of the major energy bill North Carolina passed in 2021, observers are waiting for Duke Energy Corp.’s filing of its carbon-reduction plan with state utility regulators. That plan will help determine the future electricity mix in the state.

Warren Leon, executive director of the Clean Energy States Alliance (CESA), said that without federal action, state goals are “going to be more difficult to achieve.”

State and federal policies are complementary, not substitutes, he said. And Washington can provide a tailwind and help states achieve their goals more quickly and easily.

“Progress is going to be most rapid if both the states and the federal government are moving in the same direction, but either of them operating independently of the others can still make a difference,” he said.

While emissions reductions and renewable energy goals were centerpieces of the state energy and climate policies adopted this year, there were some other common threads that could continue in 2022.

One that’s gone largely unnoticed is that an increasing number of states went beyond just setting targets for clean energy and have developed plans, or road maps, for how to meet their goals, Leon said.

Like the New Year resolutions that millions of Americans are planning — pledges to eat healthier or exercise more — it’s far easier to set ambitious goals than to achieve them.

According to CESA, California, Colorado, Nevada, Maine, Rhode Island, Massachusetts and Washington state all established plans for how to achieve their clean energy goals. Prior to late 2020, only two states — New York and New Jersey — had done so.

Another trend in state energy and climate policies: Equity and energy justice provisions factored heavily in new laws in places such as Maine, Illinois and Oregon.

Equity isn’t a new concern for states, Leon said. But state plans have become more detailed in terms of their response to ways the energy transition may affect vulnerable populations.

“They’re putting much more concrete actions in place,” he said. “And they are really figuring out how they go about electricity system planning to make sure there are new voices at the table, that the processes are different, and there are things that are going to be measured to determine whether they’re actually making progress toward equity.”

 

2. Grid
Climate change and natural disasters have been a growing worry for grid planners, and 2021 was a year the issue affected many Americans directly.

Texas’ main power grid suffered massive outages during a deadly February winter storm, and it wasn’t far from an uncontrolled blackout that could have required weeks or months of recovery.

Consumers elsewhere in the country watched as millions of Texans lost grid power and heat amid a bitter cold snap. Other parts of the central United States saw more limited power outages in February.

“I think people care about the grid a lot more this year than they did last year,” Silverstein said, adding, “All of a sudden people are realizing that electricity’s not as easy as they’ve assumed it was and … that we need to invest more.”

Many of the challenges are not specific to one state, she added.

“It seems to me that the state regulators need to put a lot — and utilities need to put a lot — more commitment into working together to solve broad regional problems in cooperative regional ways,” Silverstein said.

In 2022, multiple decisions could affect the grid, including state oversight of spending on upgrades and market proposals that could sway the amount of clean energy brought online.

A focal point will be Texas, where state regulators are examining further changes to the Electric Reliability Council of Texas’ market design. That could have major implications for how renewables develop in the state. Leaders in other parts of the country will likely keep tabs on adjustments in Texas as they ponder their own changes.

Texas has already embarked on reforms to help improve the power sector and its coordination with the natural gas system, which is critical to keeping plants running. But its primary power grid, operated by ERCOT, remains largely isolated and hasn’t been able to rule out power shortages this winter if there are extreme conditions (Energywire, Nov. 22).

Transmission also remains a key issue outside of the Lone Star State, both for resilience and to connect new wind and solar farms. In many areas of the country, the job of planning these new regional lines and figuring out how to allocate billions of dollars in costs falls to regional grid operators (Energywire, Dec. 13).

In the central U.S., the issue led to tension between states in the Midwest and the Gulf South (Energywire, Oct. 15).

In the Northeast, a Maine environmental commissioner last month suspended a permit for a major transmission project that could send hydropower to the region from Canada (Greenwire, Nov. 24). The project’s developers are now battling the state in court to force construction of the line — a process that could be resolved in 2022 — after Mainers signaled opposition in a November vote.

Advocates of a regional transmission organization for Western states, meanwhile, hope to keep building momentum even as critics question the cost savings promoted by supporters of organized markets. Among those in existing markets, states such as Louisiana are expected to monitor the costs and benefits of being associated with the Midcontinent Independent System Operator.

In other states, more details are expected to emerge in 2022 about plans announced this year.

In California, where policymakers are also exploring EVs for grid stability alongside wildfire prevention, Pacific Gas & Electric Co. announced a plan over the summer to spend billions of dollars to underground some 10,000 miles of power lines to help prevent wildfires, for example (Greenwire, July 22).

Several Southeastern utilities, including Dominion Energy Inc., Duke Energy, Southern Co. and the Tennessee Valley Authority, won FERC approval to create a new grid plan — the Southeast Energy Exchange Market, or SEEM — that they say will boost renewable energy.

SEEM is an electricity trading platform that will facilitate trading close to the times when the power is used. The new market is slated to include two time zones, which would allow excess renewables such as solar and wind to be funneled to other parts of the country to be used during peak demand times.

SEEM is significant because the Southeast does not have an organized market structure like other parts of the country, although some utilities such as Dominion and Duke do have some operations in the region managed by PJM Interconnection LLC, the largest U.S. regional grid operator.

SEEM is not a regional transmission organization (RTO) or energy imbalance market. Critics argue that because it doesn’t include a traditional independent monitor, SEEM lacks safeguards against actions that could manipulate energy prices.

Others have said the electric companies that formed SEEM did so to stave off pressure to develop an RTO. Some of the regulated electric companies involved in the new market have denied that claim.

 

3. Electric vehicles
With electric vehicles, the Midwest and Southeast gained momentum in 2021 as hubs for electrifying the transportation sector, as EVs hit an inflection point in mainstream adoption, and the Biden administration simultaneously worked to boost infrastructure to help get more EVs on the road.

From battery makers to EV startups to major auto manufacturers, companies along the entire EV supply chain spectrum moved to or expanded in those two regions, solidifying their footprint in the fast-growing sector.

A wave of industry announcements capped off in December with California-based Rivian Automotive Inc. declaring it would build a $5 billion electric truck, SUV and van factory in Georgia. Toyota Motor Corp. picked North Carolina for its first U.S.-based battery plant. General Motors Co. and a partner plan to build a $2.5 billion battery plant in GM’s home state of Michigan. And Proterra Inc. has unveiled plans to build a new battery factory in South Carolina.

Advocates hope the EV shift by automakers in the Midwest and Southeast will widen the options for customers. Automakers and startups also have been targeting states with zero-emission vehicle targets to launch new and more models because there’s an inherent demand for them.

“The states that have adopted those standards are getting more vehicles,” said Anne Blair, senior EV policy manager for the Electrification Coalition.

EV advocates say they hope those policies could help bring products like Ford’s electrified signature truck line on the road and into rural areas. Ford also is partnering with Korean partner SK Innovation Co. Ltd. to build two massive battery plants in Kentucky.

Regardless of the fanfare about new vehicles, more jobs and must-needed economic growth, barriers to EV adoption remain. Many states have tacked on annual fees, which some elected officials argue are needed to replace revenues secured from a gasoline tax.

Other states do not allow automakers to sell directly to consumers, preventing companies like Lordstown Motors Corp. and Rivian to effectively do business there.

“It’s about consumer choice and consumers having the capacity to buy the vehicles that they want and that are coming out, in new and innovative ways,” Blair told E&E News. Blair said direct sales also will help boost EV sales at traditional dealerships.

In 2022, advocates will be closely watching progress with the National Electric Highway Coalition, amid tensions over charging control among utilities and networks, which was formed by more than 50 U.S. power companies to build a coast-to-coast fast-charging network for EVs along major U.S. travel corridors by the end of 2023 (Energywire, Dec. 7).

A number of states also will be holding legislative sessions, and they could include new efforts to promote EVs — or change benefits that currently go to owners of alternative vehicles.

EV advocates will be pushing for lawmakers to remove barriers that they argue are preventing customers from buying alternative vehicles.

Conversations already have begun in Georgia to let startup EV makers sell their cars and trucks directly to consumers. In Florida, lawmakers will try again to start a framework that will create a network of charging stations as charging networks jostle for position under federal electrification efforts, as well as add annual fees to alternative vehicles to ease concerns over lost gasoline tax revenue.

 

Related News

View more

Extensive Disaster Planning at Electric & Gas Utilities Means Lights Will Stay On

Utility Pandemic Preparedness strengthens grid resilience through continuity planning, critical infrastructure protection, DOE-DHS coordination, onsite sequestration, skeleton crews, and deferred maintenance to ensure reliable electric and gas service for commercial and industrial customers.

 

Key Points

Plans that sustain grid operations during outbreaks using staffing limits, access controls, and deferred maintenance.

✅ Deferred maintenance and restricted site access

✅ Onsite sequestering and skeleton crew operations

✅ DOE-DHS coordination and control center staffing

 

Commercial and industrial businesses can rest assured that the current pandemic poses no real threat to our utilities, with the U.S. grid remaining reliable for now, as disaster planning has been key to electric and gas utilities in recent years, writes Forbes. Beginning a decade ago, the utility and energy industries evolved detailed pandemic plans, outlining what to know about the U.S. grid during outbreaks, which include putting off maintenance and routine activities until the worst of the pandemic has passed, restricting site access to essential personnel, and being able to run on a skeleton crew as more and more people become ill, a capability underscored by FPL's massive Irma response when crews faced prolonged outages.

One possible outcome of the current situation is that the US electric industry may require essential staff to live onsite at power plants and control centers, similar to Ontario work-site lockdown plans under consideration, if the outbreak worsens; bedding, food and other supplies are being stockpiled, reflecting local response preparations many utilities practice, Reuters reported. The Great River Energy cooperative, for example, has had a plan to sequester essential staff in place since the H1N1 bird flu crisis in 2009. The cooperative, which runs 10 power plants in Minnesota, says its disaster planning ensured it has enough cots, blankets and other necessities on site to keep staff healthy.

Electricity providers are now taking part in twice-weekly phone calls with officials at the DOE, the Department of Homeland Security, and other agencies, as Ontario demand shifts are monitored, according to the Los Angeles Times. By planning for a variety of worst case scenarios, including weeks-long restorations after major storms, “I have confidence that the sector will be prepared to respond no matter how this evolves,” says Scott Aaronson, VP of security and preparedness for the Edison Electric Institute.

 

Related News

View more

Iran supplying 40% of Iraq’s need for electricity

Iran Electricity Exports to Iraq address power shortages and blackouts, supplying 1,200-1,500 MW and gas for 2,500 MW, amid sanctions, aging grid losses, rising peak demand, and TAVANIR plans to expand cross-border energy capacity.

 

Key Points

Energy flows from Iran supply Iraq with 1,200-1,500 MW plus gas yielding 2,500 MW, easing shortages and blackouts.

✅ 1,200-1,500 MW direct power; gas adds 2,500 MW generation

✅ Iraq exempt on Iranian gas, but faces US pressure

✅ Aging grid loses 25%; $30B upgrades needed

 

“Iran exports 1,200 megawatts to 1,500 megawatts of electricity to Iraq per day, reflecting broader regional power trade dynamics, as Iraq is dealing with severe power shortages and frequent blackouts,” Hamid Hosseini said.

As he added, Iran also exports 37 million to 38 million cubic meters of gas to the country, much of it used in combined-cycle power plants to save energy and boost generation.

On September 11, Iraq’s electricity minister, Luay al Khateeb, said the country needs Iranian gas to generate electricity for the next three or four years, as energy cooperation discussions continue between Baghdad and Tehran.

Iraq was exempted from sanctions concerning Iranian gas imports; however, the U.S. has been pressing all countries to stop trading with Tehran.

Iraq's population has been protesting to authorities over power cuts. Iran exports 1,200 megawatts of direct power supplies and its gas is converted into 2,500 MW of electricity. According to al Khateeb, the current capacity is 18,000 MW, with peak demand of 25,000 MW possible during the hot summer months when consumption surges, a figure that rises every year.

Any upgrades would need investment of at least $30 billion, with grid rehabilitation efforts underway to modernize infrastructure, as the grid is 50 years old and loses 25 percent of its capacity due to Isis attacks.

In late July, Managing Director of Gharb (West) Regional Electricity Company Ali Asadi said Iran has high capacity and potential to export electricity up to twofold of the current capacity to neighboring Iraq, as it eyes transmitting electricity to Europe to serve as a regional hub as well.

He pointed to the new strategy of Iran Power Generation, Transmission & Distribution Management Company (TAVANIR) for increasing electricity export to neighboring Iraq and reiterated, “the country enjoys high potential to export 1,200 megawatts electricity to neighboring Iraq,” while Iraq is also exploring nuclear power plants to tackle electricity shortages.

 

Related News

View more

Nissan accepting electricity from EVs as payment for parking

Nissan V2G Parking lets EV drivers pay with electricity via bidirectional charging at the Yokohama Nissan Pavilion, showcasing vehicle-to-grid, smart energy trading, and integrated mobility experiences like Ariya rides and Formula E simulators.

 

Key Points

A program where EV owners use V2G to pay for parking by discharging power at Nissan's Yokohama Pavilion.

✅ Pay for parking with EV energy via V2G

✅ Powered by Nissan LEAFs and solar at the Pavilion

✅ Showcases Ariya, Formula E, ProPILOT, and I2V tech

 

Nissan is letting customers pay for parking with electricity by discharging power from their electric car’s battery pack, a concept similar to how EV owners sell electricity back to the grid in other programs. In what the company claims to be a global first, owner of electric cars can trade energy for a parking space at Nissan Pavilion exhibition space in Yokohama, Japan, echoing how parked EVs earn from Europe's grids in comparable schemes.

The venue that showcases Nissan's future technologies, opened its doors to public on August 1 and will remain so through October 23, underscoring how stored EV energy can power buildings in broader applications. “(It) is a place where customers can see, feel, and be inspired by (the company's) near-future vision for society and mobility," says CEO Makoto Uchida. “As the world shifts to electric mobility, EVs will be integrated into society in ways that go beyond just transportation."

Apart from the innovate parking experience, people visiting the pavilion can also virtually experience the thrill of Formula E electric street racing or go for a ride in the all-new Ariya electric crossover, similar to demos at the Everything Electric show in Vancouver. Other experiences include ProPILOT advanced driver assistance system as well as Nissan’s Invisible-to-Visible (I2V) technology, which combines information from the real and virtual worlds to assist drivers, themes also explored at an EV education centre in Toronto for public outreach.

A mobility hub in front of the Pavilion offers a variety of services including EV car-sharing. The Pavilion also operates a cafe operated on power supplied by Nissan LEAF electric cars and solar energy, showcasing vehicle-to-building charging benefits on site.

As part of its Nissan NEXT transformation plan, the company plans to expand its global lineup of EVs and aims to sell more than 1 million electrified vehicles a year by the end of fiscal 2023, aligning with the American EV boom and the challenge of scaling charging infrastructure.

 

Related News

View more

Purdue: As Ransomware Attacks Increase, New Algorithm May Help Prevent Power Blackouts

Infrastructure Security Algorithm prioritizes cyber defense for power grids and critical infrastructure, mitigating ransomware, blackout risks, and cascading failures by guiding utilities, regulators, and cyber insurers on optimal security investment allocation.

 

Key Points

An algorithm that optimizes security spending to cut ransomware and blackout risks across critical infrastructure.

✅ Guides utilities on optimal security allocation

✅ Uses incentives to correct human risk biases

✅ Prioritizes assets to prevent cascading outages

 

Millions of people could suddenly lose electricity if a ransomware attack just slightly tweaked energy flow onto the U.S. power grid, as past US utility intrusions have shown.

No single power utility company has enough resources to protect the entire grid, but maybe all 3,000 of the grid's utilities could fill in the most crucial security gaps if there were a map showing where to prioritize their security investments.

Purdue University researchers have developed an algorithm to create that map. Using this tool, regulatory authorities or cyber insurance companies could establish a framework for protecting the U.S. power grid that guides the security investments of power utility companies to parts of the grid at greatest risk of causing a blackout if hacked.

Power grids are a type of critical infrastructure, which is any network - whether physical like water systems or virtual like health care record keeping - considered essential to a country's function and safety. The biggest ransomware attacks in history have happened in the past year, affecting most sectors of critical infrastructure in the U.S. such as grain distribution systems in the food and agriculture sector and the Colonial Pipeline, which carries fuel throughout the East Coast, prompting increased military preparation for grid hacks in the U.S.

With this trend in mind, Purdue researchers evaluated the algorithm in the context of various types of critical infrastructure in addition to the power sector, including electricity-sector IoT devices that interface with grid operations. The goal is that the algorithm would help secure any large and complex infrastructure system against cyberattacks.

"Multiple companies own different parts of infrastructure. When ransomware hits, it affects lots of different pieces of technology owned by different providers, so that's what makes ransomware a problem at the state, national and even global level," said Saurabh Bagchi, a professor in the Elmore Family School of Electrical and Computer Engineering and Center for Education and Research in Information Assurance and Security at Purdue. "When you are investing security money on large-scale infrastructures, bad investment decisions can mean your power grid goes out, or your telecommunications network goes out for a few days."

Protecting infrastructure from hacks by improving security investment decisions

The researchers tested the algorithm in simulations of previously reported hacks to four infrastructure systems: a smart grid, industrial control system, e-commerce platform and web-based telecommunications network. They found that use of this algorithm results in the most optimal allocation of security investments for reducing the impact of a cyberattack.

The team's findings appear in a paper presented at this year's IEEE Symposium on Security and Privacy, the premier conference in the area of computer security. The team comprises Purdue professors Shreyas Sundaram and Timothy Cason and former PhD students Mustafa Abdallah and Daniel Woods.

"No one has an infinite security budget. You must decide how much to invest in each of your assets so that you gain a bump in the security of the overall system," Bagchi said.

The power grid, for example, is so interconnected that the security decisions of one power utility company can greatly impact the operations of other electrical plants. If the computers controlling one area's generators don't have adequate security protection, as seen when Russian hackers accessed control rooms at U.S. utilities, then a hack to those computers would disrupt energy flow to another area's generators, forcing them to shut down.

Since not all of the grid's utilities have the same security budget, it can be hard to ensure that critical points of entry to the grid's controls get the most investment in security protection.

The algorithm that Purdue researchers developed would incentivize each security decision maker to allocate security investments in a way that limits the cumulative damage a ransomware attack could cause. An attack on a single generator, for instance, would have less impact than an attack on the controls for a network of generators, which sophisticated grid-disruption malware can target at scale, rather than for the protection of a single generator.

Building an algorithm that considers the effects of human behavior

Bagchi's research shows how to increase cybersecurity in ways that address the interconnected nature of critical infrastructure but don't require an overhaul of the entire infrastructure system to be implemented.

As director of Purdue's Center for Resilient Infrastructures, Systems, and Processes, Bagchi has worked with the U.S. Department of Defense, Northrop Grumman Corp., Intel Corp., Adobe Inc., Google LLC and IBM Corp. on adopting solutions from his research. Bagchi's work has revealed the advantages of establishing an automatic response to attacks, and analyses like Symantec's Dragonfly report highlight energy-sector risks, leading to key innovations against ransomware threats, such as more effective ways to make decisions about backing up data.

There's a compelling reason why incentivizing good security decisions would work, Bagchi said. He and his team designed the algorithm based on findings from the field of behavioral economics, which studies how people make decisions with money.

"Before our work, not much computer security research had been done on how behaviors and biases affect the best defense mechanisms in a system. That's partly because humans are terrible at evaluating risk and an algorithm doesn't have any human biases," Bagchi said. "But for any system of reasonable complexity, decisions about security investments are almost always made with humans in the loop. For our algorithm, we explicitly consider the fact that different participants in an infrastructure system have different biases."

To develop the algorithm, Bagchi's team started by playing a game. They ran a series of experiments analyzing how groups of students chose to protect fake assets with fake investments. As in past studies in behavioral economics, they found that most study participants guessed poorly which assets were the most valuable and should be protected from security attacks. Most study participants also tended to spread out their investments instead of allocating them to one asset even when they were told which asset is the most vulnerable to an attack.

Using these findings, the researchers designed an algorithm that could work two ways: Either security decision makers pay a tax or fine when they make decisions that are less than optimal for the overall security of the system, or security decision makers receive a payment for investing in the most optimal manner.

"Right now, fines are levied as a reactive measure if there is a security incident. Fines or taxes don't have any relationship to the security investments or data of the different operators in critical infrastructure," Bagchi said.

In the researchers' simulations of real-world infrastructure systems, the algorithm successfully minimized the likelihood of losing assets to an attack that would decrease the overall security of the infrastructure system.

Bagchi's research group is working to make the algorithm more scalable and able to adapt to an attacker who may make multiple attempts to hack into a system. The researchers' work on the algorithm is funded by the National Science Foundation, the Wabash Heartland Innovation Network and the Army Research Lab.

Cybersecurity is an area of focus through Purdue's Next Moves, a set of initiatives that works to address some of the greatest technology challenges facing the U.S. Purdue's cybersecurity experts offer insights and assistance to improve the protection of power plants, electrical grids and other critical infrastructure.

 

Related News

View more

Sign Up for Electricity Forum’s Newsletter

Stay informed with our FREE Newsletter — get the latest news, breakthrough technologies, and expert insights, delivered straight to your inbox.

Electricity Today T&D Magazine Subscribe for FREE

Stay informed with the latest T&D policies and technologies.
  • Timely insights from industry experts
  • Practical solutions T&D engineers
  • Free access to every issue

Live Online & In-person Group Training

Advantages To Instructor-Led Training – Instructor-Led Course, Customized Training, Multiple Locations, Economical, CEU Credits, Course Discounts.

Request For Quotation

Whether you would prefer Live Online or In-Person instruction, our electrical training courses can be tailored to meet your company's specific requirements and delivered to your employees in one location or at various locations.