Close Menu
Invest Insider News
    Facebook X (Twitter) Instagram
    Tuesday, December 16
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Invest Insider News
    • Home
    • Bitcoin
    • Commodities
    • Finance
    • Investing
    • Property
    • Stock Market
    • Utilities
    Invest Insider News
    Home»Utilities»NREL tool lets utilities quantify potential monetary losses from cyberattacks
    Utilities

    NREL tool lets utilities quantify potential monetary losses from cyberattacks

    July 29, 20244 Mins Read


    This audio is auto-generated. Please let us know if you have feedback.

    Dive Brief:

    • The National Renewable Energy Laboratory last week published two reports highlighting cybersecurity tools that aim to improve utility asset management, risk quantification and visibility into the industrial control systems, or ICS, that are increasingly attached to the U.S. electric grid.
    • Utilities can request to pilot NREL’s Cyber100 Compass application, which models cyber risk associated with energy system upgrades, the national lab said Thursday. And a Wednesday report on the runZero cyber asset attack surface management, or CAASM, system that aims to reveal potentially “hidden” risks in a utility system concluded its scanning methods “can improve visibility without affecting the performance of ICS assets.”
    • The power grid is increasingly distributed and renewable but “right now, there’s a lot of uncertainty about how risky the transition is,” Maurice Martin, senior cybersecurity researcher at NREL, said in a statement. “It’s hard for utilities to know what kind of risk level they’re exposing themselves to, and that uncertainty can have a cooling effect.”

    Dive Insight:

    NREL’s Cyber100 Compass takes a new approach to managing cyber risk for utilities, combining data from subject matter experts with user-inputted information to perform a probabilistic risk assessment and produce a monetary estimate of potential losses due to a cyber attack, including one resulting in power outages.

    The application asks utilities to provide information about their current energy system and plans for new resources, and then provides an assessment of how certain upgrades could change cybersecurity posture and risk.

    “While the Cyber100 Compass application is still a proof of concept and not yet ready for industry use, it is an important first step toward developing guidance for system planners about potential cybersecurity risks as they integrate more renewable energy into their generation mix,” NREL said.

    The lab has created a form for utilities to to request access to the application in exchange for providing feedback on its interface, usability and results. Utilities will need to input data on their risk tolerance and the value they place on avoiding certain types of cyber attack-induced physical events, including loss of power and harm to equipment attacks.

    “The whole concept behind Cyber100 Compass is about mining the knowledge of these subject matter experts and capturing it in a form that is reusable across many different utilities of various sizes, loads, and generation mixes,” Martin said. “Cyber100 Compass provides a monetary expression of risk to help utility decision makers feel confident in their planned upgrades.”

    Separately, NREL’s Clean Energy Cybersecurity Accelerator, or CECA, published a report assessing the efficacy of runZero’s CAASM  system. The report concluded runZero’s platform identified all internet-protocol-addressable assets in the test environment and collected detailed information about each device and all open ports.

    “Evaluations also showed no adverse effects on deployed ICS assets or ongoing supervisory control and data acquisition communications and processes,” NREL said. “Evaluations show that runZero’s active scanning methods can improve visibility without affecting the performance of ICS assets.”

    While passive scanning only looks at network traffic, active scanning involves sending data to assets and analyzing the response. 

    “Running active scanning solutions built for IT environments can be unsafe and inappropriate in an [operational technology] environment due to bespoke assets, legacy firmware, or proprietary protocols,” NREL noted in its report. But runZero’s platform did not cause any problems.

    “We are seeing more sophisticated attacks against critical infrastructure, particularly energy infrastructure,” Rob King, runZero’s director of security research, said in a statement. “Working with CECA allowed us to prove that active scanning of OT/ICS infrastructure can be done safely and effectively and is important to securing these vital systems.”

    “It was interesting to see active scanning used safely,” said CECA technical team lead Nick Blair. “Active identification methods have been taboo in OT systems — for good reason — for a long time. While we can’t claim our findings apply universally, hopefully they can break the ice and allow these methods to be considered as an option.”



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleBig Tech Fails to Boost US Stocks Before Earnings: Markets Wrap
    Next Article Money blog: Martin Lewis slams winter fuel announcement – and says one group will be hit hardest | UK News

    Related Posts

    Utilities

    Utilities Down, but not by Much on Defensive Bias – Utilities Roundup

    December 12, 2025
    Utilities

    AI Is Great for Utilities. It’s Also a Political Headache

    December 12, 2025
    Utilities

    Clitheroe: Huge United Utilities planned car park approved

    December 9, 2025
    Leave A Reply Cancel Reply

    Top Posts

    How is the UK Commercial Property Market Performing?

    December 31, 2000

    How much are they in different states across the US?

    December 31, 2000

    A Guide To Becoming A Property Developer

    December 31, 2000
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    Bitcoin

    SpaceX to launch bitcoin entrepreneur and three crewmates on flight around Earth’s poles

    August 12, 2024
    Utilities

    Hickory Intersection of Eighth Avenue Drive NW and Ninth Avenue NW to close for public utilities work

    August 5, 2024
    Bitcoin

    $2 Billion of Bitcoin in Seven Days: Here’s What’s Going On

    October 20, 2024
    What's Hot

    Asian Stocks Fall as US Rally Takes a Breather: Markets Wrap

    August 21, 2024

    Europe’s Quantum Pathway to 2030: Closing the Private Investment Gap

    August 19, 2025

    China’s property bender has led to long, tough hangover: economist Mao Zhenhua

    August 4, 2024
    Most Popular

    Méprisée par Donald Trump, contestée par l’Europe… La finance verte n’a plus le vent en poupe

    February 16, 2025

    US property developer claims Iraqi president ordered her kidnap, 43-day torture with beatings and electric cords: lawsuit

    May 14, 2025

    BTC Price Compression May End With White House Crypto Report

    July 29, 2025
    Editor's Picks

    United States Property Coin Has Acquired a $10 Million Luxury Property in Venice Beach as Its First Seed Asset

    October 27, 2022

    Les principales cryptomonnaies s’envolent : le Bitcoin franchit la barre des 109 000 $

    July 2, 2025

    Agricultural Commodities Tank on Chinese Demand Fears

    July 26, 2024
    Facebook X (Twitter) Instagram Pinterest Vimeo
    • Get In Touch
    • Privacy Policy
    • Terms and Conditions
    © 2025 Invest Insider News

    Type above and press Enter to search. Press Esc to cancel.