{"id":"https://openalex.org/W4411232185","doi":"https://doi.org/10.1109/tii.2025.3574376","title":"Measuring the Security Posture of IEC 61850 Smart Grid Substations Against Supply Chain Attacks","display_name":"Measuring the Security Posture of IEC 61850 Smart Grid Substations Against Supply Chain Attacks","publication_year":2025,"publication_date":"2025-06-12","ids":{"openalex":"https://openalex.org/W4411232185","doi":"https://doi.org/10.1109/tii.2025.3574376"},"language":"en","primary_location":{"id":"doi:10.1109/tii.2025.3574376","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tii.2025.3574376","pdf_url":null,"source":{"id":"https://openalex.org/S184777250","display_name":"IEEE Transactions on Industrial Informatics","issn_l":"1551-3203","issn":["1551-3203","1941-0050"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Industrial Informatics","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://researchonline.gcu.ac.uk/ws/files/103515327/103408700.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5061912757","display_name":"Onur Duman","orcid":"https://orcid.org/0000-0002-2489-8981"},"institutions":[{"id":"https://openalex.org/I60158472","display_name":"Concordia University","ror":"https://ror.org/0420zvk78","country_code":"CA","type":"education","lineage":["https://openalex.org/I60158472"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Onur Duman","raw_affiliation_strings":["Security Research Centre, Gina Cody School of Engineering and Computer Science, Concordia University, Montreal, QC, Canada"],"raw_orcid":"https://orcid.org/0000-0002-2489-8981","affiliations":[{"raw_affiliation_string":"Security Research Centre, Gina Cody School of Engineering and Computer Science, Concordia University, Montreal, QC, Canada","institution_ids":["https://openalex.org/I60158472"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5052464384","display_name":"Mohsen Ghafouri","orcid":"https://orcid.org/0000-0003-2184-5734"},"institutions":[{"id":"https://openalex.org/I60158472","display_name":"Concordia University","ror":"https://ror.org/0420zvk78","country_code":"CA","type":"education","lineage":["https://openalex.org/I60158472"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Mohsen Ghafouri","raw_affiliation_strings":["Security Research Centre, Gina Cody School of Engineering and Computer Science, Concordia University, Montreal, QC, Canada"],"raw_orcid":"https://orcid.org/0000-0003-2184-5734","affiliations":[{"raw_affiliation_string":"Security Research Centre, Gina Cody School of Engineering and Computer Science, Concordia University, Montreal, QC, Canada","institution_ids":["https://openalex.org/I60158472"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100730397","display_name":"Lingyu Wang","orcid":"https://orcid.org/0000-0002-7441-7541"},"institutions":[{"id":"https://openalex.org/I60158472","display_name":"Concordia University","ror":"https://ror.org/0420zvk78","country_code":"CA","type":"education","lineage":["https://openalex.org/I60158472"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Lingyu Wang","raw_affiliation_strings":["Security Research Centre, Gina Cody School of Engineering and Computer Science, Concordia University, Montreal, QC, Canada"],"raw_orcid":"https://orcid.org/0000-0002-7441-7541","affiliations":[{"raw_affiliation_string":"Security Research Centre, Gina Cody School of Engineering and Computer Science, Concordia University, Montreal, QC, Canada","institution_ids":["https://openalex.org/I60158472"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5075761726","display_name":"Marthe Kassouf","orcid":"https://orcid.org/0000-0002-3007-2350"},"institutions":[{"id":"https://openalex.org/I47099075","display_name":"Hydro-Qu\u00e9bec","ror":"https://ror.org/01nhzsw25","country_code":"CA","type":"government","lineage":["https://openalex.org/I47099075"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Marthe Kassouf","raw_affiliation_strings":["Hydro-Quebec Research Institute (IREQ), Varennes, QC, Canada"],"raw_orcid":"https://orcid.org/0000-0002-3007-2350","affiliations":[{"raw_affiliation_string":"Hydro-Quebec Research Institute (IREQ), Varennes, QC, Canada","institution_ids":["https://openalex.org/I47099075"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5057593270","display_name":"Ribal Atallah","orcid":"https://orcid.org/0000-0001-9582-6478"},"institutions":[{"id":"https://openalex.org/I47099075","display_name":"Hydro-Qu\u00e9bec","ror":"https://ror.org/01nhzsw25","country_code":"CA","type":"government","lineage":["https://openalex.org/I47099075"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Ribal Atallah","raw_affiliation_strings":["Hydro-Quebec Research Institute (IREQ), Varennes, QC, Canada"],"raw_orcid":"https://orcid.org/0000-0001-9582-6478","affiliations":[{"raw_affiliation_string":"Hydro-Quebec Research Institute (IREQ), Varennes, QC, Canada","institution_ids":["https://openalex.org/I47099075"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5028605138","display_name":"Mourad Debbabi","orcid":"https://orcid.org/0000-0003-3015-3043"},"institutions":[{"id":"https://openalex.org/I60158472","display_name":"Concordia University","ror":"https://ror.org/0420zvk78","country_code":"CA","type":"education","lineage":["https://openalex.org/I60158472"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Mourad Debbabi","raw_affiliation_strings":["Security Research Centre, Gina Cody School of Engineering and Computer Science, Concordia University, Montreal, QC, Canada"],"raw_orcid":"https://orcid.org/0000-0003-3015-3043","affiliations":[{"raw_affiliation_string":"Security Research Centre, Gina Cody School of Engineering and Computer Science, Concordia University, Montreal, QC, Canada","institution_ids":["https://openalex.org/I60158472"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.8084,"has_fulltext":true,"cited_by_count":2,"citation_normalized_percentile":{"value":0.85218581,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":98},"biblio":{"volume":"21","issue":"9","first_page":"6946","last_page":"6957"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10917","display_name":"Smart Grid Security and Resilience","score":0.9983999729156494,"subfield":{"id":"https://openalex.org/subfields/2207","display_name":"Control and Systems Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10917","display_name":"Smart Grid Security and Resilience","score":0.9983999729156494,"subfield":{"id":"https://openalex.org/subfields/2207","display_name":"Control and Systems Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9872999787330627,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12451","display_name":"Smart Grid and Power Systems","score":0.9646000266075134,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/iec-61850","display_name":"IEC 61850","score":0.942124605178833},{"id":"https://openalex.org/keywords/smart-grid","display_name":"Smart grid","score":0.6714522838592529},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5211884379386902},{"id":"https://openalex.org/keywords/supply-chain","display_name":"Supply chain","score":0.5134637951850891},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.46013373136520386},{"id":"https://openalex.org/keywords/grid","display_name":"Grid","score":0.45994019508361816},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3651407063007355},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.3044000267982483},{"id":"https://openalex.org/keywords/electrical-engineering","display_name":"Electrical engineering","score":0.21663203835487366},{"id":"https://openalex.org/keywords/automation","display_name":"Automation","score":0.1663675308227539},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.164043128490448}],"concepts":[{"id":"https://openalex.org/C2778907243","wikidata":"https://www.wikidata.org/wiki/Q168160","display_name":"IEC 61850","level":3,"score":0.942124605178833},{"id":"https://openalex.org/C10558101","wikidata":"https://www.wikidata.org/wiki/Q689855","display_name":"Smart grid","level":2,"score":0.6714522838592529},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5211884379386902},{"id":"https://openalex.org/C108713360","wikidata":"https://www.wikidata.org/wiki/Q1824206","display_name":"Supply chain","level":2,"score":0.5134637951850891},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.46013373136520386},{"id":"https://openalex.org/C187691185","wikidata":"https://www.wikidata.org/wiki/Q2020720","display_name":"Grid","level":2,"score":0.45994019508361816},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3651407063007355},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.3044000267982483},{"id":"https://openalex.org/C119599485","wikidata":"https://www.wikidata.org/wiki/Q43035","display_name":"Electrical engineering","level":1,"score":0.21663203835487366},{"id":"https://openalex.org/C115901376","wikidata":"https://www.wikidata.org/wiki/Q184199","display_name":"Automation","level":2,"score":0.1663675308227539},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.164043128490448},{"id":"https://openalex.org/C162853370","wikidata":"https://www.wikidata.org/wiki/Q39809","display_name":"Marketing","level":1,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C78519656","wikidata":"https://www.wikidata.org/wiki/Q101333","display_name":"Mechanical engineering","level":1,"score":0.0},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tii.2025.3574376","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tii.2025.3574376","pdf_url":null,"source":{"id":"https://openalex.org/S184777250","display_name":"IEEE Transactions on Industrial Informatics","issn_l":"1551-3203","issn":["1551-3203","1941-0050"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Industrial Informatics","raw_type":"journal-article"},{"id":"pmh:oai:researchonline.gcu.ac.uk:openaire/8ab5de4b-1ae3-454b-8639-576bc5e8cfa9","is_oa":true,"landing_page_url":"https://researchonline.gcu.ac.uk/en/publications/8ab5de4b-1ae3-454b-8639-576bc5e8cfa9","pdf_url":"https://researchonline.gcu.ac.uk/ws/files/103515327/103408700.pdf","source":{"id":"https://openalex.org/S4306402566","display_name":"ResearchOnline (Glasgow Caledonian University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I195939026","host_organization_name":"Glasgow Caledonian University","host_organization_lineage":["https://openalex.org/I195939026"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Duman, O, Ghafouri, M, Wang, L, Kassouf, M, Atallah, R & Debbabi, M 2025, 'Measuring the security posture of IEC 61850 smart grid substations against supply chain attacks', IEEE Transactions on Industrial Informatics, vol. 21, no. 9, pp. 6946-6957. https://doi.org/10.1109/TII.2025.3574376","raw_type":"info:eu-repo/semantics/publishedVersion"}],"best_oa_location":{"id":"pmh:oai:researchonline.gcu.ac.uk:openaire/8ab5de4b-1ae3-454b-8639-576bc5e8cfa9","is_oa":true,"landing_page_url":"https://researchonline.gcu.ac.uk/en/publications/8ab5de4b-1ae3-454b-8639-576bc5e8cfa9","pdf_url":"https://researchonline.gcu.ac.uk/ws/files/103515327/103408700.pdf","source":{"id":"https://openalex.org/S4306402566","display_name":"ResearchOnline (Glasgow Caledonian University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I195939026","host_organization_name":"Glasgow Caledonian University","host_organization_lineage":["https://openalex.org/I195939026"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Duman, O, Ghafouri, M, Wang, L, Kassouf, M, Atallah, R & Debbabi, M 2025, 'Measuring the security posture of IEC 61850 smart grid substations against supply chain attacks', IEEE Transactions on Industrial Informatics, vol. 21, no. 9, pp. 6946-6957. https://doi.org/10.1109/TII.2025.3574376","raw_type":"info:eu-repo/semantics/publishedVersion"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G4826460352","display_name":null,"funder_award_id":"N01035","funder_id":"https://openalex.org/F4320334593","funder_display_name":"Natural Sciences and Engineering Research Council of Canada"}],"funders":[{"id":"https://openalex.org/F4320334593","display_name":"Natural Sciences and Engineering Research Council of Canada","ror":"https://ror.org/01h531d29"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4411232185.pdf","grobid_xml":"https://content.openalex.org/works/W4411232185.grobid-xml"},"referenced_works_count":27,"referenced_works":["https://openalex.org/W1526538707","https://openalex.org/W1971070850","https://openalex.org/W1973308398","https://openalex.org/W2002619227","https://openalex.org/W2009498872","https://openalex.org/W2012246208","https://openalex.org/W2022578767","https://openalex.org/W2054127354","https://openalex.org/W2121805588","https://openalex.org/W2157554212","https://openalex.org/W2290944024","https://openalex.org/W2530289920","https://openalex.org/W2757615817","https://openalex.org/W2892346891","https://openalex.org/W2990842415","https://openalex.org/W2991517675","https://openalex.org/W2995606680","https://openalex.org/W3015447433","https://openalex.org/W3016154938","https://openalex.org/W3043157652","https://openalex.org/W3101361680","https://openalex.org/W3115340278","https://openalex.org/W3133895076","https://openalex.org/W4285103546","https://openalex.org/W4285213258","https://openalex.org/W4285265528","https://openalex.org/W4389879917"],"related_works":["https://openalex.org/W2899084033","https://openalex.org/W2367739416","https://openalex.org/W1984507003","https://openalex.org/W2352028207","https://openalex.org/W1847012216","https://openalex.org/W2383397189","https://openalex.org/W2364323245","https://openalex.org/W2378142920","https://openalex.org/W2351977728","https://openalex.org/W2553754225"],"abstract_inverted_index":{"Recently,":[0],"there":[1],"has":[2],"been":[3],"a":[4,32,44,87,120],"surge":[5],"of":[6,61,71,77,96],"interest":[7],"in":[8,19,74,131],"analyzing":[9],"and":[10,118,141,149],"modeling":[11],"emerging":[12],"cyberattacks":[13],"resulting":[14],"from":[15],"supply":[16,40,88],"chain":[17,41,89],"vulnerabilities":[18,23,47,101],"smart":[20,72],"grids.":[21],"These":[22],"are":[24],"deliberately":[25],"injected":[26],"into":[27],"devices":[28,98],"before":[29],"shipment":[30],"by":[31],"malicious":[33],"or":[34],"trustworthy":[35],"but":[36],"compromised":[37],"vendor":[38],"during":[39],"attacks.":[42],"As":[43],"result,":[45],"those":[46,78,100],"possess":[48],"unique":[49],"characteristics,":[50,55],"such":[51],"as":[52],"stealthiness.":[53],"Such":[54],"together":[56],"with":[57],"the":[58,68,75,94,110,132,138],"limited":[59],"number":[60],"vendors,":[62],"demand":[63],"new":[64,121],"techniques":[65],"for":[66],"measuring":[67],"security":[69],"posture":[70],"grids":[73],"presence":[76],"vulnerabilities.":[79],"On":[80],"this":[81,83],"basis,":[82],"article":[84],"first":[85],"defines":[86],"risk":[90,105,133],"metric":[91,117],"to":[92,128],"measure":[93],"risks":[95],"different":[97],"containing":[99],"based":[102],"on":[103,146],"several":[104],"factors.":[106],"Afterward,":[107],"we":[108,136],"enhance":[109],"previously":[111],"defined":[112],"<inline-formula":[113,124],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[114,125],"xmlns:xlink=\"http://www.w3.org/1999/xlink\"><tex-math":[115,126],"notation=\"LaTeX\">$kSupply$</tex-math></inline-formula>":[116],"propose":[119],"metric,":[122],"namely":[123],"notation=\"LaTeX\">$kSupplier$</tex-math></inline-formula>":[127],"include":[129],"vendors":[130],"assessment.":[134],"Finally,":[135],"evaluate":[137],"proposed":[139],"metrics":[140],"models":[142],"through":[143],"simulations":[144],"conducted":[145],"IEEE":[147],"14":[148],"39-bus":[150],"systems.":[151]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
