Detecting false authentication attacks in smart grid EV charging systems

dc.contributor.advisorHakak, Saqib
dc.contributor.advisorGhorbani, Ali Akbar
dc.contributor.authorKim, Yoonjib
dc.date.accessioned2026-01-23T18:40:25Z
dc.date.available2026-01-23T18:40:25Z
dc.date.issued2025-12
dc.description.abstractAs the adoption of Electric Vehicles (EVs) increases, the risk of cyber threats to their charging infrastructure also increases. We introduce a machine-learning framework to detect false authentication behavior that induces denial-of-service-like load patterns at Charging Stations and Grid Servers. Using system-level features from Charging Station and Grid Server traffic, our baseline model achieves a weighted average F1 score of 0.88 (88%) across sixteen attack scenarios. However, this baseline relied on simplified hash-and-XOR authentication rather than ISO 15118 and provided only binary labels, limiting the realism of the simulated authentication workflow and preventing fine-grained attack identification. To establish a more realistic baseline, we first released the CICEV2023 dataset, a binary-labeled dataset generated by this hash-and-XOR simulator. CICEV2023, however, still lacks standards-based ISO 15118 and Open Charge Point Protocol (OCPP) communication and remains restricted to a single binary label. To address these specific constraints, this dissertation presents the CICEV2025 dataset, which reproduces Electric Vehicle-to-Charging Station-to-Grid-Server communication under normal conditions and eight malicious variants, while collecting low-overhead hardware traces using perf. The dataset enhances widely used benchmarks such as KDD99 and UNSW NB15 by adding CPU-level metrics and timing anomalies that better reflect real-world conditions. We adopt a two-phase detection pipeline. Phase one performs a memory-aware multi-GPU grid search for deep learning hyperparameters. Phase two applies a skip-factor sampling scheme that compactifies the training set while capping validation degradation at the elbow point. This scheme reduces the hyperparameter training data by up to 99.5% on UNSW NB15 and by 49.9% on KDD99, while matching the full-data model at the elbow. In CICEV2025, most binary settings also exhibit an approximately 99% reduction, with a small loss. Final scores are KDD99 multiclass F1 of 0.99 (99%), UNSW NB15 multiclass F1 of 0.85 (85%), and CICEV2025 binary F1 of 0.99 (99%). This work integrates simulation data reduction and GPU-accelerated learning to provide a practical foundation for securing future charging infrastructure.
dc.description.copyright© Yoonjib Kim, 2025
dc.format.extentxiii, 194
dc.format.mediumelectronic
dc.identifier.oclc(OCoLC)1610831346en
dc.identifier.otherThesis 11800en
dc.identifier.urihttps://unbscholar.lib.unb.ca/handle/1882/38549
dc.language.isoen
dc.publisherUniversity of New Brunswick
dc.rightshttp://purl.org/coar/access_right/c_abf2
dc.subject.disciplineComputer Science
dc.subject.lcshBattery charging stations (Electric vehicles)en
dc.subject.lcshCyberterrorism.en
dc.subject.lcshMachine learning.en
dc.titleDetecting false authentication attacks in smart grid EV charging systems
dc.typedoctoral thesis
oaire.license.conditionother
thesis.degree.disciplineComputer Science
thesis.degree.grantorUniversity of New Brunswick
thesis.degree.leveldoctorate
thesis.degree.namePh.D.

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Yoonjib Kim - Dissertation Revised.pdf
Size:
6.26 MB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.13 KB
Format:
Item-specific license agreed upon to submission
Description: