CYBERATTACK Cybersecurity risk in power inverters
Related Vendors
Introduction of digital systems and AI in power electronics has made the industry vulnerable to cyberattacks. Hackers with an exceptional knowledge of electronics, along with networks and firmware, could carry out cyberattacks on power inverters. An optimal solution is to build a robust cyber defense network infrastructure, such that power electronic systems face no service interruptions. The article explains the relevance of cybersecurity in power inverters.
Every industry faces threats, whether in the form of cyber, physical, or cyber-physical attacks. Cases of cyberattacks in power electronic systems are witnessing a rise. Teams train to combat such attacks, preventing overall system failure. The section lists common security threats, including cyberattacks, in the power electronics industry.
Electricity theft
The most common threat in the power industry has always been electricity theft, which is punishable by law. Some consumers steal electricity from the providers or even from neighbors. On the other hand, some consumers can perform dynamic power abuse with smart meters.
Physical attacks
Legacy power electronic systems, whether in factories or as small devices in our homes, were prone to physical attacks. Thefts, system sabotage, tampering of circuits, and machine damage were things that could compromise the well-being of power electronic devices. For example, damaging a circuit breaker will eliminate the protective actions. However, such attacks are now rare.
Power cyber attacks
Some common cyberattacks in the power electronics industry include firmware attacks, software attacks, communications protocol tampering, sensor spoofing, control logic sabotage, and many more. One of the recent innovations is the integration of cryptocurrency wallets into electric vehicles, which further increases the risk of cyber attacks.
Targeting inverters
Inverters were earlier simple and heavy power devices that would convert DC to AC in our homes. During a power outage, inverters would help in powering home appliances. The rapid growth of renewable technologies has made solar inverters even more common. The grid has skyrocketed its sales.
POWER ELECTRONICS
Inverter vs converter: What's the difference?
Smarter but not safer
Conventional inverters, including solar inverters, have become smarter. Smart inverters manage voltage and various other electrical parameters using digital communication. Smart inverters communicate with the service provider via SCADA systems (Supervisory Control and Data Acquisition). They are IoT-supported to notify customers about their electricity status.
As soon as two-way digital communication modules and app connectivity were available in smart inverters, the nature of attacks faced a 360-degree shift. Now, physical damage risks have suddenly turned “cyber”. Machine learning AI-based control mechanisms in smart inverters further accelerated cyberattacks. Decentralization of the grid is likely to increase such smart inverter attacks with its implementation.
What will hackers gain from smart inverters?
Hackers try to gain access to control systems in smart inverters. They may send false voltage or current-related commands to the network. As a result, false voltage, like overvoltage or undervoltage, could be injected into the smart inverter system.
DoS attack
Another type of attack is a DoS (Denial of Service), in which hackers send a large volume of dummy traffic to the smart inverter server. The processor becomes overloaded and unavailable to the owner. Even though inverters have built-in features to manage voltage changes, these attacks shut them down.
Chain cyberattacks
Smart inverters can sometimes increase the risk of cyberattacks if they are connected to social media or banking accounts of the customer. Such connectivity can initiate a chain of attacks on the personal information of the customer.
Ultimate motive
Most cybersecurity attacks on smart inverters are aimed at causing a power outage. The motive may be data theft, valuable theft, or invasion of privacy of the customer premises or factory. In some cases, hackers try to gain control over the grid of an entire area through smart inverter networks— making service providers (or governments) lose billions of dollars.
Safeguarding inverters
Smart inverters should be configured carefully with the help of a technician, as most people lack cyber awareness or expertise to deal with potential threats. A firewall supported by a strong router safeguards them.
Basic steps
A simple method to protect smart inverters at home is to use WiFi, VPN, or any other private network at home. To gain access to such a network, the attacker must be present in close proximity, which is very unlikely. Using cellular internet, IoT, or eSIM-based smart inverters increases the risk of cyber attacks.
- Using the 2.4 GHz frequency band instead of the new 5 GHz band is better in terms of compatibility with protocols and safety.
- Smart inverters should be regularly updated as per the manufacturer’s guidelines.
- Two-factor authentication and frequent password changing are also some basic cybersecurity solutions.
Cybersecurity defense
Cyber researchers collaborate with power electronic professionals to build robust cyber defense systems. Such cybersecurity algorithms and defense systems are first simulated using hardware-in-the-loop and digital twin models. These technologies provide scenario testing for various cyberattack use cases, ensuring reliability.
Most cyber algorithms are based on AI and ML to detect deviations from the standard range of electric parameters such as input voltage, output voltage, feeder voltage, current, power factor, and others. The greater the deviation, the greater the likelihood of a power cyberattack on the smart inverter. Once the anomaly is detected, smart inverters enter mitigation modes to combat the attack.
References
(ID:50512440)