Search NASA⌕ Search

SEARCH · Search NASA

Results for “risk analysis”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 91 records · Page 5

PSA 2025 DPRA for Cyber Optimization

Cyberattacks can have many different attack paths, durations, and goals. There are also many different mitigation options involving hardware, software, and/or humans. Evaluating defense options should include quantitative evaluation of overall effectiveness to make cost and risk-informed decisions. Typical cyberattack modeling methods only provide a qualitative evaluation and have difficulty with time dependent scenarios. The main areas of cybersecurity are confidentiality, integrity, and availability. For companies with cyber-physical systems such as advanced nuclear reactors, cyber-related integrity is a requirement set by the U.S. Nuclear Regulatory Commission. But companies are also concerned about availability or reliability as a business case. As cyber threats are evolving to a business-for-hire structure, more attacks focus on disrupting business success and reliability, causing financial and economic stability risk. Companies want reliability analysis while optimizing cost, which requires more than safety modeling methods. Dynamic-state-based and Markov-based modeling provides a method for better cyber scenario modeling with timing and conditional features not found in other numerical evaluation methods. EMRALD (Event Modeling Risk Assessment using Lined Diagrams) is a dynamic risk analysis modeling and simulation tool and has features that reduce modeling issues such as state-base explosion found in Markov-based tools. It has been used to model different time-dependent events including plant behavior and operator procedures. As a general modeling tool, EMRALD can also be used to model cyberattack scenarios with varying mitigation options and quantify effectiveness, producing numerical data for risk-informed decisions. This paper uses EMRALD to demonstrate that dynamic risk analysis can be used for cyber threat modeling to provide insights for design decision-making and optimize defense strategies.

97 - MATHEMATICS AND COMPUTING↗

New Mobility Technology Assessment - Benefits, Risks, and Safety

The age of vehicle automation is upon us. The fundamental perception and control technology is maturing as we speak (and write) with robo-taxis proliferating in select US cities. The news cycle is no longer filled with technological skepticism, but rather societal commentary on our collective response and use of the technology. This maturing of the technology is also accompanied by a renaissance in new types of urban movement technology to more effectively link people with goods, services, and employment, particularly in dense development areas where vehicle congestion (even automated vehicles) prevents high quality mobility. The National Renewable Energy Laboratory, through the DOE Clean Energy to Communities (C2C) program has worked with two jurisdictions to assess the benefits, risks, and safety concerns for a new product offering based on suspended cable technology which is fully automated and proposes an aerial network of self-propelled gondolas. The recognized need, independent of the technology, is to fairly assess the benefits of the proposed transportation system, assess its technical maturity, as well as risks and safety concerns. Using this new technology as an example, a technology represented by Swyft Cities, NREL developed a succession of mini-studies that characterized the technical maturity level, assessed the proposed benefits for Greenville, SC, examined the risks involved in moving forward with an emerging mobility technology, and determined the governing safety protocols and standards that are applicable to the space. These mini-case studies, though centered on Swyft Cities aerial automated gondola technology, are highly transferable to any type of new mobility technology and lays out a repeatable process for assessing new technology within an city or community context.

33 ADVANCED PROPULSION SYSTEMS↗

Gains in operational flexibility, safety margins, and cost efficiencies via integrated Plant Reload Optimization platform

The U.S. Department of Energy Light Water Reactor Sustainability Program Risk-Informed Systems Analysis Pathway Plant Reload Optimization Project aims to develop an integrated, comprehensive framework offering an all-in-one solution for reload evaluations with a special focus on optimizing core design. Optimizing the fuel loading pattern is one of the most important considerations in reducing the amount of new fuel used in the core. Due to thousands of possible core configuration options, finding optimal solutions is an unachievable task for a human. The Plant ReLoad Optimization platform, which supports artificial-intelligence-based reactor core designing, is now fully capable of handling realistic problems. The Plant ReLoad Optimization platform development project aims to build a reactor core design tool that includes reactor safety and fuel performance analyses and uses artificial intelligence to support the optimization of core design solutions. The NSGA-II (Non-dominated Sorting Genetic Algorithm II) optimizer was developed and tested within RAVEN (Risk Analysis and Virtual ENvironment) to handle many constraints by using an augmented objectives methodology. The demonstration was performed with constrained multiobjective optimization of a 17 × 17 pressurized-water reactor core loading patterns to minimize fuel cost and maximize fuel cycle length.

11 NUCLEAR FUEL CYCLE AND FUEL MATERIALS↗

De-risking fault leakage risk and containment integrity for subsurface storage applications

The subsurface is pivotal in the energy transition, for the sequestration of CO 2 and energy storage. It is crucial to understand to what extent geological faults may form leakage pathways that threaten the containment integrity of these projects. Fault flow behavior has been studied in the context of hydrocarbon development, supported by observations from wells drilled through faults, but such observations are rare in geoenergy projects. Focusing on mechanical behavior as early indicator of potential leakage risks, a probabilistic Coulomb Failure Stress workflow is developed and demonstrated using data from the Decatur CO 2 sequestration project to rank faults based on their containment risk. The analysis emphasizes the importance of fault throw relative to reservoir thickness and pore pressure change in assessing reactivation risks. Integrating this mechanical assessment with geological and dynamic fault analyses contributes to derisking fault containment for geoenergy applications, providing valuable insights for the successful development of subsurface storage projects.

58 GEOSCIENCES↗

DiffESM: Conditional Emulation of Temperature and Precipitation in Earth System Models With 3D Diffusion Models

Earth system models (ESMs) are essential for understanding the interaction between human activities and the Earth's climate. However, the computational demands of ESMs often limit the number of simulations that can be run, hindering the robust analysis of risks associated with extreme weather events. While low-cost climate emulators have emerged as an alternative to emulate ESMs and enable rapid analysis of future climate, many of these emulators only provide output on at most a monthly frequency. This temporal resolution is insufficient for analyzing events that require daily characterization, such as heat waves or heavy precipitation. We propose using diffusion models, a class of generative deep learning models, to effectively downscale ESM output from a monthly to a daily frequency. Trained on a handful of ESM realizations, reflecting a wide range of radiative forcings, our DiffESM model takes monthly mean precipitation or temperature as input, and is capable of producing daily values with statistical characteristics close to ESM output. Combined with a low-cost emulator providing monthly means, this approach requires only a small fraction of the computational resources needed to run a large ensemble. We evaluate model behavior using a number of extreme metrics, showing that DiffESM closely matches the spatio-temporal behavior of the ESM output it emulates in terms of the frequency and spatial characteristics of phenomena such as heat waves, dry spells, or rainfall intensity.

54 ENVIRONMENTAL SCIENCES↗

Firmware Tampering Detection in Heavy-Duty Vehicles through J1939 CAN Analysis

Modern heavy-duty vehicles rely on complex networks of Electronic Control Units (ECUs) that communicate using the J1939 protocol. While this system makes it easier to update and configure vehicle components, it also opens the door to serious cybersecurity risks if not properly secured. This work investigates the potential for firmware tampering through the J1939 communication protocol, which enables ECU configuration and reprogramming over the Controller Area Network (CAN) bus. By monitoring CAN traffic during legitimate maintenance operations and reverse-engineering OEM diagnostic software, we identified common and proprietary J1939 message identifiers, authentication patterns, and vulnerabilities within Unified Diagnostic Services (UDS). These findings demonstrate that inadequate authentication mechanisms can allow malicious actors to alter ECU firmware or disable safety functions, posing severe operational and safety risks. Our analysis contributes to the development of vehicle intrusion detection systems capable of recognizing abnormal reprogramming activity and future firmware fingerprinting methods to verify software integrity across ECUs. This work highlights the importance of standardizing secure firmware authentication across manufacturers to strengthen cyber resilience in heavy-duty vehicle systems.

33 ADVANCED PROPULSION SYSTEMS↗

A Kinetic Model-Driven Techno-Economic Analysis of Plastic Pyrolysis: Linking Process Dynamics to Economic Viability

This study employs a kinetic model integrated into Aspen Plus to predict pyrolysis product distribution under various conditions. A techno-economic assessment calculated the minimum selling price (MSP) of pyrolysis oil under different operating conditions for the baseline capacity of 100 kta, and across eight processing capacities ranging from 30 to 150 kta. The lowest MSP under the baseline capacity is estimated at $\$$420/ton, which is 33% lower than the 2023 average US crude oil price ($\$$74.6/bbl, equivalent to $\$$634/ton based on the density of pyrolysis oil). Under Monte Carlo simulation, accounting for variability in key economic and technical parameters, the mean MSP is estimated at $\$$1137/ton. The economic viability depends on feedstock price remaining below $\$$320/ton, defining the break-even feedstock price threshold. Sensitivity analysis further identifies capital investment and transportation cost as key economic drivers. Capacities beyond 90 kta show limited economies of scale benefits. Reducing product storage time cuts capital costs by 7% but raises operational risk. Uncertainty analysis suggests the economic feasibility of pyrolysis oil is unlikely to compete with crude oil without policy incentives.

petrochemicals↗

An Integrated Framework for Risk Assessment of Safety-related Digital Instrumentation and Control Systems in Nuclear Power Plants: Methodology Advancement and Application

This report documents activities performed by Idaho National Laboratory (INL) during fiscal year (FY) 2024 for the U.S. Department of Energy (DOE) Light Water Reactor Sustainability (LWRS) Program, Risk Informed Systems Analysis (RISA) Pathway, Digital Instrumentation and Control (DI&C) Risk Assessment project. The goal of the RISA Pathway is to optimize safety margins and minimize uncertainties to achieve economic efficiencies while maintaining high levels of safety. This is accomplished by providing scientific basis to better represent safety margins and factors that contribute to cost and safety, and by developing new technologies that reduce operating costs. The research efforts for FY 2024 encompass methodology refinement and exploration. The efforts include: (1) The implementation of a natural language processing tool to expedite key aspects of the reliability analysis methods developed by INL; (2) advances to support intersystem CCF analysis by providing guidance for and identification of coupling mechanisms that may contribute to CCF; (3) the investigation of how generative artificial intelligence tools can aid in hazard analysis and diversity and defense in depth (i.e., D3) assessments; (4) Industry collaboration, allowing the demonstration of and INL's risk assessment tools to support risk assessment of DI&C systems at early and late stages of development; (4) a roadmap for the development of a software for each of INL's risk assessment tools; (5) The development of a theory and methodology manual for a risk quantification methodology; (6) the development of a reliability analysis for machine learning (ML)-integrated control systems.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Root Cause Correlation Analysis of Software Failures via Orthogonal Defect Classification and Natural Language Processing

Systems theoretic process analysis (STPA) is becoming an increasingly popular technique to assess how complex digital software systems can fail. Rather than defining failures by their observable failure events, which may be sparse especially for safety rated nuclear digital instrumentation and control systems (DI&C), failures are defined as postulated unsafe actions under specific contextual conditions. This permits a top-down analysis of system hazards and identifies whether imposed constraints and requirements can sufficiently address undesirable hazards. However, STPA is a qualitative approach at identifying inadequacies in the development process and cannot currently be used to quantify unsafe action likelihoods for probabilistic risk assessment. Therefore, in this work, we examine the root causes of software failure and explore whether a consistent correlation can be linked to specific unsafe action classes. We implement Lbl2Vec, an unsupervised document classification and retrieval algorithm, on a database of 4,096 software defect reports acquired from various open-source software systems. By analyzing sentence structure, embedded labels, and word vectors, we show that certain defect types positively correlate to specific unsafe action classes over others. The correlations developed can be used to estimate the failure probability of safety intended DI&C systems which provides a licensing basis for nuclear plant modernization efforts.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Root Cause Correlation Analysis of Software Failures via Orthogonal Defect Classification and Natural Language Processing

Systems theoretic process analysis (STPA) is becoming an increasingly popular technique to assess how complex digital software systems can fail. Rather than defining failures by their observable failure events, which may be sparse especially for safety rated nuclear digital instrumentation and control systems (DI&C), failures are defined as postulated unsafe actions under specific contextual conditions. This permits a top-down analysis of system hazards and identifies whether imposed constraints and requirements can sufficiently address undesirable hazards. However, STPA is a qualitative approach at identifying inadequacies in the development process and cannot currently be used to quantify unsafe action likelihoods for probabilistic risk assessment. Therefore, in this work, we examine the root causes of software failure and explore whether a consistent correlation can be linked to specific unsafe action classes. We implement Lbl2Vec, an unsupervised document classification and retrieval algorithm, on a database of 4,096 software defect reports acquired from various open-source software systems. By analyzing sentence structure, embedded labels, and word vectors, we show that certain defect types positively correlate to specific unsafe action classes over others. The correlations developed can be used to estimate the failure probability of safety intended DI&C systems which provides a licensing basis for nuclear plant modernization efforts.

22 - GENERAL STUDIES OF NUCLEAR REACTORS↗

Building a predictive model for polycyclic aromatic hydrocarbon dosimetry in organotypically cultured human bronchial epithelial cells using benzo[ a ]pyrene

The airway epithelium is a primary route of exposure for inhaled toxicants, and organotypic culture models represent an important advancement for toxicity testing compared to simple in vitro models that may lack metabolic capability and multicellular structure/communication associated with the bronchial epithelium in vivo. A quantitative understanding of chemical dosimetry is key for interpreting and extrapolating study results; however, dosimetry is understudied in organotypic models limiting ability to predict toxicity. We developed a dosimetry model for primary human bronchial epithelial cells (HBECs) cultured at the air-liquid interface (ALI) using benzo[a]pyrene (BAP), a representative polycyclic aromatic hydrocarbon. Dose and time course evaluation of metabolite formation and enzyme activity and expression were utilized to parameterize a cellular dosimetry model to improve the utility of ALI-HBECs for assessing chemical risk. Dosimetry analysis demonstrated absorption of BAP into cells and an increase in Phase 1 and 2 metabolites over time that correlated with regulation of metabolizing enzymes. BAP was cleared from cells by 48 h after exposure, and the primary metabolites generated in ALI-HBECs were BAP-3-phenol, BAP-4,5-dihydrodiol, BAP-7,8-dihydrodiol, BAP-9,10-dihydrodiol, BAP-7,8,9,10-tetrol, BAP-3-phenol-glucuronide, BAP-4,5-dihydrodiol-glucuronide, and BAP-9,10-dihydrodiol-glucuronide. The resulting dosimetry model described BAP and 7,8-dihydrodiol toxicokinetics in ALI-HBECs and suggested active excretion of 7,8-dihydrodiol. Overall, this study demonstrates metabolic competency of ALI-HBECs for BAP metabolism, demonstrates the usefulness of complex in vitro systems for human-relevant toxicity data, and exhibits how in silico models can be utilized for understanding the dosimetry of test compounds to aid in in vitro to human extrapolation of toxicity data for risk assessments.

Benzo[a]pyrene↗

Engineering in Cyber Resilience with Cyber-Informed Engineering

Engineers have super powers to provide cybersecurity resilience with deterministic engineering solutions and to protect systems from the most catastrophic consequences that a cyber saboteur could cause. Come to this session to learn how to use engineering risk management skills to harden your engineered systems from cyberattacks. Objective 1 Identify what system functions could be digitally induced to cause undesired high-impact consequences. Objective 2 Analyze how loss or instability of digital controls in a subsystem could lead to high-impact consequences. Objective 3 Analyze how loss or instability in the digital connectivity between systems could lead to high-impact consequences. Objective 4 Identify engineering controls which could build resilience by eliminating digital loss or instability pathways or reduce the impact of digital loss or instability. This presentation will introduce Cyber-Informed Engineering, described below, and walk participants through specific engineering use cases to show how engineers can consider the potential for cyber sabotage in their existing system designs and enact deterministic engineering-based controls which eliminate pathways for attack or mitigate specific consequences. A wide variety of application use cases will be considered so that audience members can align the material with familiar engineering applications. CIE is an engineering approach that integrates cyber resilience into the conception, design, build, and operation of any physical system that has digital connectivity, sensors, monitoring, or control. CIE offers the opportunity to use engineering to eliminate or mitigate avenues for cyber attack—starting from the earliest stage of design and continuing throughout the system’s lifecycle. Today, engineers and industrial control system (ICS) technicians build engineered systems with specific goals for safety, reliability, and functionality. While systems engineering includes considerable safety and failure mode analysis, cybersecurity risks are often not specifically addressed—particularly the risks of intentional cyber compromise, exploitation, and misuse. Cyber-Informed Engineering pairs well with traditional cyber defenses and offers an extra designed-in protection to eliminate the most catastrophic consequences which can be realized by an adversary should traditional cyber defenses fail.

42 ENGINEERING↗

Assessing Seismic Risk for CO2 Geologic Storage: Comparative Analysis of the Delaware Basin and Basin and Range Province Projects

ABSTRACT: Effective management of induced seismicity is critical for safe and sustainable CO2 storage. This study evaluates fault slippage risks in the Delaware Basin (Texas) and Basin and Range Province (Utah), integrating geological, operational, and geomechanical parameters to assess fault stability and seismic hazard mitigation. In the Delaware Basin, two sites were analyzed under an injection rate of 20,000 bbl/day over 25 years. One site showed low fault slip risk, while the other exhibited higher reactivation potential due to proximity to critically stressed faults. Sensitivity analysis revealed that increased pore pressure significantly heightened slip potential, highlighting the necessity of precise pressure control and real-time monitoring. In the Basin and Range Province, fault stability was evaluated at Neck of the Desert, Escalante Desert, Parowan, and Beaver sites under injection rates of 8,750 bbl/day per site over 30 years. Minimal fault slip risk was observed at Neck of the Desert and Escalante Desert sites, whereas Parowan and Beaver sites exhibited elevated slip potential due to semi-critically stressed faults sensitive to modest pore pressure increases. The findings demonstrate that fault slippage analysis, combined with sensitivity analysis of pore pressure and friction coefficients, is essential for understanding seismic risks. Continuous monitoring, adaptive injection management, and rigorous geomechanical analysis are key strategies for minimizing induced seismicity in CO2 sequestration projects.

58 GEOSCIENCES↗

Wear of Wave Energy Converters Mooring Lines Belts

Using a belt as a replacement for a rope on a rotary power take-offs (PTOs) system has become more common for wave energy converters, improving cyclic bend over sheave performance with a smaller bending thickness for belts. However, the service life predictions of PTOs are a major concern in design, because belt performance under harsh underwater environments is largely less studied. Here, in this work, the effect of fleet and twist angles on wear life is being investigated both experimentally and numerically. Two three-dimensional equivalent static finite element models are constructed to evaluate the complex stress state of polyurethane-steel belts around steel drums. The first is to capture the response of the experimental investigation performed on the wear life, and the second to predict the wear life of an existing functional PTO. The results show a significant effect for fleet and twist angles on stress concentrations and estimated service life.

16 TIDAL AND WAVE POWER↗

Virtual Power Plant Architecture and Resilient Design

Virtual Power Plants (VPPs) represent a fundamental shift in electric grid operations, aggregating distributed energy resources (DERs) such as solar panels and battery storage to deliver utility-scale grid services traditionally provided by centralized power plants. This report examines the unique architectural, operational, and digital assurance considerations that distinguish VPPs from conventional utility infrastructure as they scale from pilot projects to mainstream deployment across the United States. While VPPs offer significant opportunities for grid modernization and enhanced flexibility, their distributed, multi-stakeholder architecture introduces distinct security challenges that differ fundamentally from traditional generation facilities. The analysis identifies risks in VPP operations, including device-level security gaps, platform vulnerabilities, and communication protocol weaknesses that create expanded attack surfaces compared to centralized power plants. Through examination of real-world incidents and emerging threat patterns, the report demonstrates how some VPPs' reliance on consumer-owned devices, public internet infrastructure, and complex vendor ecosystems require new approaches to digital assurance and operational security. The findings provide practical guidance for utilities, regulators, and aggregators to implement robust security frameworks and operational best practices essential for maintaining grid reliability as VPP deployment accelerates under the Federal Energy Regulatory Commission (FERC) Order 2222 and related regulatory initiatives.

24 - POWER TRANSMISSION AND DISTRIBUTION↗