FedPot: A Quality-Aware Collaborative and Incentivized Honeypot-Based Detector for Smart Grid Networks

Abdullatif Albaseer,Nima Abdi,Mohamed Abdallah,Marwa Qaraqe,Saif Alkuwari
2024-07-03
Abstract:Honeypot technologies provide an effective defense strategy for the Industrial Internet of Things (IIoT), particularly in enhancing the Advanced Metering Infrastructure's (AMI) security by bolstering the network intrusion detection system. For this security paradigm to be fully realized, it necessitates the active participation of small-scale power suppliers (SPSs) in implementing honeypots and engaging in collaborative data sharing with traditional power retailers (TPRs). To motivate this interaction, TPRs incentivize data sharing with tangible rewards. However, without access to an SPS's confidential data, it is daunting for TPRs to validate shared data, thereby risking SPSs' privacy and increasing sharing costs due to voluminous honeypot logs. These challenges can be resolved by utilizing Federated Learning (FL), a distributed machine learning (ML) technique that allows for model training without data relocation. However, the conventional FL algorithm lacks the requisite functionality for both the security defense model and the rewards system of the AMI network. This work presents two solutions: first, an enhanced and cost-efficient FedAvg algorithm incorporating a novel data quality measure, and second, FedPot, the development of an effective security model with a fair incentives mechanism under an FL architecture. Accordingly, SPSs are limited to sharing the ML model they learn after efficiently measuring their local data quality, whereas TPRs can verify the participants' uploaded models and fairly compensate each participant for their contributions through rewards. Simulation results, drawn from realistic mircorgrid network log datasets, demonstrate that the proposed solutions outperform state-of-the-art techniques by enhancing the security model and guaranteeing fair reward distributions.
Networking and Internet Architecture
What problem does this paper attempt to address?
This paper proposes a new approach to address the security issues in Smart Grid Networks, particularly focusing on the security defenses of Advanced Metering Infrastructure (AMI). The current problem lies in the need for Small-Scale Power Suppliers (SPSs) to collaborate with Traditional Power Retailers (TPRs) by deploying Honeypot technology to enhance the network intrusion detection system. However, the main challenges are data sharing verification, privacy protection, and cost efficiency. To tackle these issues, the paper presents two solutions: firstly, an improvement on the traditional Federated Learning (FL) algorithm by introducing a new data quality measurement standard to reduce costs; secondly, the development of a system named FedPot, which establishes an effective security model under the FL architecture and designs a fair incentive mechanism. In this system, SPSs only share machine learning models that have undergone local data quality assessment, while TPRs validate and distribute rewards fairly based on contributions. To prevent malicious participants from submitting low-quality models, the paper also proposes a two-step verification method. Through simulation results using real microgrid network log dataset, FedPot demonstrates superior performance compared to existing techniques, enhancing the security model and ensuring fair reward allocation. The paper also discusses relevant work, particularly in the areas of network security, Honeypot deployment, incentive mechanisms, and FL, highlighting the advantages of FedPot in handling malicious participants and ensuring data quality. Overall, this paper aims to address how to promote collaborative defense between SPSs and TPRs, improve the security of Smart Grid Networks while protecting user privacy, through enhanced FL technology and incentive strategies.