Enhancing Data Privacy in Substations: An Analysis of Data Sharing Anonymization for the Iec61850 Protocols, with a Special Focus on Goose

44 Pages Posted: 3 Apr 2024

See all articles by Soheil Shirvani

Soheil Shirvani

affiliation not provided to SSRN

Emmanuel D. Buedi

affiliation not provided to SSRN

Kwasi Boakye-Boateng

affiliation not provided to SSRN

Yoonjib Kim

affiliation not provided to SSRN

Rongxing Lu

affiliation not provided to SSRN

Ali Ghorbani

University of New Brunswick - Fredericton

Abstract

IEC61850-adopted substation datasets contain data about power flows, equipment statuses, and network configurations. This sensitive data can reveal vulnerabilities and operational patterns for knowledge-based attacks. However, it is also vital for cybersecurity researchers to develop robust security solutions. While encryption standards like IEC 62351 improve security, they often hinder the utility of data for research. To bridge the gap between security and utility, we introduce an anonymization technique for IEC61850 standard, demonstrated on GOOSE protocol. Our technique comprises two methods namely, the anonymization of sensitive and quasi-identifying fields within packets, maintaining data utility while protecting privacy; and the injection of dummy packets using one of our two proposed algorithms to obscure network topology effectively. Using method 1, we publish an anonymized sample dataset comprising typical substation communications captured from our testbed to facilitate ongoing research. We evaluated our framework’s effectiveness through a comprehensive communication pattern analysis, encompassing time, flow, statistical, and entropy analyses, and field anonymization testing, offering both adversary and research use cases for comparative analysis. Our study highlights the critical need for maintaining privacy in substation data sharing and paves the way for future research to extend our framework’s applicability across multiple substation protocols.

Keywords: Substation, Anonymization, Privacy, Testbed, IEC61850, GOOSE, DNP3

Suggested Citation

Shirvani, Soheil and Buedi, Emmanuel D. and Boakye-Boateng, Kwasi and Kim, Yoonjib and Lu, Rongxing and Ghorbani, Ali, Enhancing Data Privacy in Substations: An Analysis of Data Sharing Anonymization for the Iec61850 Protocols, with a Special Focus on Goose. Available at SSRN: https://ssrn.com/abstract=4783417 or http://dx.doi.org/10.2139/ssrn.4783417

Soheil Shirvani

affiliation not provided to SSRN ( email )

Emmanuel D. Buedi

affiliation not provided to SSRN ( email )

Kwasi Boakye-Boateng (Contact Author)

affiliation not provided to SSRN ( email )

Yoonjib Kim

affiliation not provided to SSRN ( email )

Rongxing Lu

affiliation not provided to SSRN ( email )

Ali Ghorbani

University of New Brunswick - Fredericton ( email )

Bailey Drive
P.O. Box 4400
Fredericton NB E3B 5A3, New Brunswick E3B 5A3
Canada

Do you have a job opening that you would like to promote on SSRN?

Paper statistics

Downloads
34
Abstract Views
152
PlumX Metrics