Search NASASearch

SEARCH · Search NASA

Results for “Security”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 109 records · Page 6

Securing the Modern Grid: Federal Investments, Digitization, and Supply Chain Strategy

Across the United States (U.S.) grid expansion and modernization is underway, paving the way for accelerated load growth and intelligent resource management. Digitization of the grid is supported by several state and federal programs, providing support for utilities installing advanced metering infrastructure (AMI), AI-powered analytics systems, battery energy storage systems (BESS), and distributed energy resource management systems (DERMS) to transform the grid from a one-way power delivery system into an intelligent, responsive network that will enable faster load growth and power expansion of data centers for advanced artificial intelligence (AI) applications. The digital transformation of America's grid presents opportunity for increased efficiency and resiliency but also introduces new digital risks that require careful management. Digital equipment often contains several vulnerabilities such as unencrypted communication protocols, and persistent remote access capabilities that could be exploited to manipulate device settings, coordinate service disruptions, or inject false data into grid operations. These digital risks become particularly important as the grid must rapidly scale to support AI-driven data centers, which the administration has identified as essential for maintaining U.S. technological leadership and economic competitiveness. These vulnerabilities are compounded by supply chain realities: Chinese manufacturers currently produce 70-90% of essential grid components including inverters, batteries, and control systems, with the U.S. lacking domestic manufacturing capacity for critical assets like extra-high voltage transformers. Recent federal legislation has established Foreign Entity of Concern (FEOC) restrictions to address these risks, requiring projects to achieve escalating thresholds of non-FEOC content to receive tax credits while utilities work to expand sourcing channels for their supply chains and strengthen security measures. These restrictions arrive precisely when utilities face unprecedented electricity demand growth driven by the rapid growth in data centers, creating a considerable challenge: rapidly expanding infrastructure while navigating complex compliance requirements while lacking viable alternatives for many critical components. Idaho National Laboratory (INL) and its partners have developed practical approaches to help utilities navigate these intersecting challenges as they leverage federal investment to strengthen and grow the grid. These solutions include Cyber-Informed Engineering (CIE) principles that build resilience directly into systems, the Cirrus tool for secure cloud migration, and enhanced procurement guidance that embeds security requirements throughout equipment lifecycles. Federal initiatives, such as the Technical Assistance for Digital Assurance (TADA) project, provide direct support to utilities implementing these approaches while facilitating knowledge sharing across the industry. While these tools and frameworks cannot eliminate all risks inherent in foreign supply chain dependencies, they offer pragmatic pathways for strengthening security posture without sacrificing the deployment momentum essential to meeting surging electricity demand. Ultimately, securing America's digital energy infrastructure demands dedicated coordination across multiple fronts: building domestic supply chains, implementing robust digital assurance practices, and maintaining the aggressive modernization timeline necessary for reliability, resilience, and energy independence.

24 POWER TRANSMISSION AND DISTRIBUTION

Entropy of the Quantum–Classical Interface: A Potential Metric for Security

Hybrid quantum–classical systems are emerging as key platforms in quantum computing, sensing, and communication technologies, but the quantum–classical interface (QCI)—the boundary enabling these systems—introduces unique and largely unexplored security vulnerabilities. This position paper proposes using entropy-based metrics to monitor and enhance security, specifically at the QCI. We present a theoretical security outline that leverages well-established information-theoretic entropy measures, such as Shannon entropy, von Neumann entropy, and quantum relative entropy, to detect anomalous behaviors and potential breaches at the QCI. By linking entropy fluctuations to scenarios of practical relevance—including quantum key distribution, quantum sensing, and hybrid control systems—we promote the potential value and applicability of entropy-based security monitoring. While explicitly acknowledging practical limitations and theoretical assumptions, we argue that entropy-based metrics provide a complementary approach to existing security methods, inviting further empirical studies and theoretical refinements that can strengthen future quantum technologies.

97 MATHEMATICS AND COMPUTING

Security Verification Techniques Applied to PatchLink COTS Software

Verification of the security of software artifacts is a challenging task. An integrated approach that combines verification techniques can increase the confidence in the security of software artifacts. Such an approach has been developed by the Jet Propulsion Laboratory (JPL) and the University of California at Davis (UC Davis). Two security verification instruments were developed and then piloted on PatchLink's UNIX Agent, a Commercial-Off-The-Shelf (COTS) software product, to assess the value of the instruments and the approach. The two instruments are the Flexible Modeling Framework (FMF) -- a model-based verification instrument (JPL), and a Property-Based Tester (UC Davis). Security properties were formally specified for the COTS artifact and then verified using these instruments. The results were then reviewed to determine the effectiveness of the approach and the security of the COTS product.

patch

R2U2: Monitoring and Diagnosis of Security Threats for Unmanned Aerial Systems

We present R2U2, a novel framework for runtime monitoring of security properties and diagnosing of security threats on-board Unmanned Aerial Systems (UAS). R2U2, implemented in FPGA hardware, is a real-time, REALIZABLE, RESPONSIVE, UNOBTRUSIVE Unit for security threat detection. R2U2 is designed to continuously monitor inputs from the GPS and the ground control station, sensor readings, actuator outputs, and flight software status. By simultaneously monitoring and performing statistical reasoning, attack patterns and post-attack discrepancies in the UAS behavior can be detected. R2U2 uses runtime observer pairs for linear and metric temporal logics for property monitoring and Bayesian networks for diagnosis of security threats. We discuss the design and implementation that now enables R2U2 to handle security threats and present simulation results of several attack scenarios on the NASA DragonEye UAS.

Formal Methods

Systematic Review on Effects of Bioenergy From Edible Versus Inedible Feedstocks on Food Security

Achieving food security is a critical challenge of the Anthropocene that may conflict with environmental and societal goals such as increased energy access. The“fuel versus food”debate coupled with climate mitigation efforts has given rise to next-generation biofuels. Findings of this systematic review indicate just over half of the studies (56% of 224 publications) reported a negative impact of bioenergy production on food security. However, no relationship was found between bioenergy feedstocks that are edible versus inedible and food security (Pvalue=0.15). A strong relationship was found between bioenergy and type of food security parameter (Pvalue < 0.001), sociodemographic index of study location (Pvalue=0.001),spatial scale (Pvalue < 0.001), and temporal scale (Pvalue=0.017). Programs and policies focused on bioenergy and climat emitigation should monitor multiple food security parameters at various scales over the long term toward achieving diverse sustainability goals.

food security

ARC-100 Reactor Security-by-Design Summary

This report applies the security-by-design methodology developed in a previous National Nuclear Security Administration–sponsored work to the Advanced Reactor Concepts 100 (ARC-100) sodium-cooled fast reactor (SFR) design. The report contains no proprietary information specific to the ARC 100 reactor. The insights developed in this report are high-level, and generally applicable to other sodium fast reactor designs. The information presented here is the result of a qualitative safety-based analysis and would not inform any potential adversary beyond what would be found in a docketed safety analysis report. The scope of this present report covers ARC-100’s reactor core, used fuel storage, and used fuel assembly wash station. These systems are also compared to a generic SFR design assumed in the previous study. The security assessment results show changes in structures, systems, and components (SSCs) safety importance relative to the generic SFR SSCs. However, the consequence assessment results are the similar to a previously assessed generic SFR. Several SSCs have higher importance rankings than others, and it is recommended that protection efforts are prioritized for these SSCs. This work will continue in the Fiscal Year 2025 for the remaining ARC-100 systems, including cesium trap, sodium cold trap, noble gas decay tanks (dewar bottles), and used fuel dry storage facility, to provide safety-and-security-by-design insights and recommendations on non-core systems. Results from this work will furnish a technical justification for the feasibility of these solutions for the ARC reactor's design and, where applicable, identify any regulatory benefits conferred by the proactive design aspect within a risk management framework. This initiative will contribute to a more secure design of the ARC reactor and support its licensing process.

21 SPECIFIC NUCLEAR REACTORS AND ASSOCIATED PLANTS

Governance and Resilience: A Holistic Approach to Systems Security in Complex and Chaotic Environments

Here, a systems governance approach emphasizes a holistic perspective that identifies and navigates the interdependencies and conflicts between security and operational needs. Governance is defined as a collection of metasystems that provide the necessary constraints and processes to support, steer, adapt, transform, and sustain a system (Keating et al. 2022). Utilizing the Cynefin framework, which distinguishes between simple, complicated, complex, and chaotic environments (Snowden and Boone 2007), the article highlights the challenges faced by nuclear power plants in predatory contexts and the importance of integrating security objectives into governance frameworks. By incorporating security as a fundamental aspect of governance, the article underscores its significance for persistence, adaptation, and transformation in the face of uncertainty. Additionally, it introduces key heuristics of systems security, such as the importance of context, knowledge‐based decision‐making, and organization‐specific sociological factors (Williams and Caskey 2024). Ultimately, this work provides valuable insights into enhancing resilient operations in complex environments by reinforcing the connection between effective governance and security in systems engineering.

Caskey, Susan A. [Sandia National Laboratories (SN

Securing Small Modular Reactors in Urban Environments

Current small modular reactor (SMR) deployment use cases consider both rural and urban deployments, depending on the operational in-country needs for clean and reliable sources of energy. Many studies have been conducted analyzing security in rural and remote deployment locations, but this study looks at the physical security implications of an SMR placed in an urban environment and its uses for electricity production, district heating, and process heating. SMRs used for electricity production, district heating, and process heating may be key sources of both energy infrastructure and commercial infrastructure within a city and a State. As a result, long-term shutdowns could have a serious impact on a State’s overall energy or commercial production. Therefore, operators may consider further security applications to protect an SMR plant from physical attacks against both radiological sabotage and sabotage acts that could result in the SMR facility being offline for a significant amount of time. In this study, the team designed and analyzed a physical protection system (PPS) for securing an urban SMR facility against acts of radiological sabotage and sabotage acts that could disrupt the facility’s long-term operation. Additionally, this work analyzed the nuanced security issues related to siting an SMR near an urban environment (versus in a rural environment). The result of these analyses includes recommendations for PPSs for urban SMR facilities used for energy production, district heating, and process heating.

22 GENERAL STUDIES OF NUCLEAR REACTORS

An Architectural Survey of the U12G Tunnel Historic District, Nevada National Security Site, Nye County, Nevada

The U.S. Department of Energy (DOE), in conjunction with the National Nuclear Security Administration Nevada Field Office (NNSA/NFO), proposes to demolish six buildings and three storage areas located at the U12g Tunnel portal area in Area 12 of the Nevada National Security Site (NNSS). The buildings are 12-358 (Signal Vault); 12-201800 (Storage Quonset Hut); 12-202555 (Walker Shack); 12-868 (Pipe Assembly); 12-B100933 (Electrical Shop); 12-B100944 (Conference Room); and Storage Area 1; Storage Area 2; and Storage Area 3. The buildings and storage areas were selected for demolition as part of the DOE’s Real Property Efficiency Plan to reduce the footprint of unused and non-operational facilities on the NNSS. They are all vacant and have no proposed uses for current or upcoming NNSS missions. Demolition activities constitute an undertaking subject to review under Section 106 of the National Historic Preservation Act (NHPA) (54 United States Code [USC] § 306101) and its implementing regulations, 36 Code of Federal Regulations (CFR) Part 800. Identification efforts began with resources proposed for demolition in federal Fiscal Year (FY) 23. Four buildings were proposed to be demolished in FY23 (12-358, 12-868, 12-201800, and 12-202555). These buildings and the U12g Tunnel Historic District (SHPO No. D444) were recorded in Identification, Evaluation, and Finding of Adverse Effect for the Proposed Demolition of Five Buildings in Area 12, Nevada National Security Site, Nye County, Nevada (Menocal et al. 2023). Identification efforts indicated three buildings (12-358, 12-201800, and 12-868) supported nuclear testing in the U12g Tunnel. The fourth building post-dated the use of U12g Tunnel for nuclear testing activities. The report recommended that three of the four buildings (12-358, 12-201800, 12-868) and the U12g Tunnel Historic District may be eligible for the National Register of Historic Places (NRHP). The report also found that the undertaking would have an adverse effect on the three buildings and on the historic district. The Nevada State Historic Preservation Office (SHPO) concurred with the report’s findings (Reed 2023). The U12g Tunnel was determined eligible as a historic district under the Secretary of the Interior’s (SOI) Significance Criterion A, at the local level, in the context of the Cold War as an underground testing environment for the development of nuclear weapons and to assess the effects of a nuclear explosion on materials and equipment with a period of significance from 1959 to 1971. It was also determined eligible under Significance Criterion C for embodying the distinctive characters of a horizontal tunnel complex used for nuclear testing and as a significant and distinguishable entity. The three buildings were determined to be contributing elements of the district. The undertaking was expanded with the addition of two buildings and three storage areas proposed to be demolished and located within U12g Tunnel Historic District in FY24. These five resources (12-B100933, 12-B100944, and Storage Areas 1, 2, and 3) were recorded in Supplemental Identification, Evaluation, and Finding of Effect for Additional Proposed Demolition at U12g Tunnel, Area 12, Nevada national Security Site, Nye County, Nevada (Brannan et al. 2024). Identification efforts indicated that the two buildings and Storage Area 1 supported nuclear testing in the U12g Tunnel. Storage Area 1 and Storage Area 2 post-dated the nuclear testing activities at U12g Tunnel and were not recommended as contributing elements to the district. The report also found that the undertaking would have an adverse effect on the newly identified buildings and one storage area and on the historic district. The SHPO concurred that the expanded undertaking would result in adverse effects to historic properties (Reed 2025). To resolve these adverse effects, NNSA/NFO, in consultation with the SHPO, is following standard mitigation as stipulated in the 2024 Programmatic Agreement DE-GM58-22NA25554 Among the U.S. Department of Energy and the Nevada State Historic Preservation Officer and the Advisory Council on Historic Preservation Concerning the Protection of Historic Properties on the Nevada National Security Site, Nye County, Nevada (hereafter referred to as the NNSS PA). The standard mitigation measures are outlined in Appendix D of the NNSS PA. As such, this architectural survey has been prepared in accordance with Appendix D of the NNSS PA and follows the report format outlined in Appendix F. It includes a historic context that describes the district’s origin, history, and support functions, its significance in the context of nuclear testing on the NNSS, and identifies contributing and non-contributing elements within the district. The report is accompanied by Architectural Resource Assessment (ARA) forms for individual resources and a Historic District Resource Assessment (HDRA) for the U12g Tunnel Historic District. In total, this architectural report identified 32 primary resources within the district boundary. Six of the primary resources were previously identified as contributing elements. An additional 17 resources are recommended as contributing elements to the district for a total of 23 contributing elements. The other nine resources identified are recommended as non-contributing elements to the district.

12-201800

Enabling Secure and Resilient XFC: A Software/Hardware-Security Co-Design Approach

Extremely fast charging (XFC) has the potential to reduce the charging time of battery electric vehicles (BEV) to be equivalent to the filling time of internal combustion engine vehicles (ICEV), thus eliminating one of the few advantages ICEV still poses for light- and heavy-duty vehicles. Enabling XFC will, however, require coordination and cooperation between the grid, charging stations, and the vehicles themselves, which leads to an inevitable increase in the attack surface for all systems combined. In securing the overall system, we must not only embrace traditional cybersecurity, which is chiefly concerned with communications and the operation of digital systems, but also cyber-physical systems security as the proper operation of XFC is critically dependent on systems’ abilities to know about (sense) and interact with (actuate) the physical world. The project team consists of academic and industry researchers with backgrounds in cybersecurity, cyber-physical systems security, learning in adversarial environments, transportation security, grid security and resilience, wireless power transfer, converter design, and battery management systems.

33 ADVANCED PROPULSION SYSTEMS

Driving Economics and Reducing Risks: The Business Case for Security-by-Design in Nuclear Power

This report provides an analysis of the financial, operational, and strategic advantages of incorporating Security-by-Design (SeBD) early in the lifecycle of nuclear power plant projects. By framing security as a foundational design element rather than a late-stage add-on, owners, vendors, and operators can reduce budget overruns, strengthen regulatory compliance, and increase revenue opportunities. The report details key lifecycle phases, highlighting the strategic imperative for organizations (including project developers, investors, vendors, and regulators) to adopt SeBD. Drawing on industry estimates, real-world case studies, and comparative cost analyses, the findings underscore that even a modest upfront investment in SeBD can yield substantial long-term returns by preventing costly retrofit activities, minimizing regulatory delays, and positioning nuclear vendors for the ability to adapt in the evolving security market. By avoiding excessive retrofit expenses and positioning security as a built-in feature rather than an afterthought, nuclear projects can protect their financial performance, enhance public trust, and secure a competitive edge in an increasingly complex global energy market. The authors advocate for SeBD’s strategic implementation, supported by established quality management methodologies, thereby promoting continuous improvement and defect avoidance. Ultimately, early SeBD integration represents a strategic investment, yielding significant returns by preventing costly retrofits and positioning nuclear projects for enhanced competitiveness and public trust.

22 GENERAL STUDIES OF NUCLEAR REACTORS

SPAN security policies and guidelines

A guide is provided to system security with emphasis on requirements and guidelines that are necessary to maintain an acceptable level of security on the network. To have security for the network, each node on the network must be secure. Therefore, each system manager, must strictly adhere to the requirements and must consider implementing the guidelines discussed. There are areas of vulnerability within the operating system that may not be addressed. However, when a requirement or guideline is discussed, implementation techniques are included. Information related to computer and data security is discussed to provide information on implementation options. The information is presented as it relates to a VAX computer environment.

Sisson, Patricia L.

The UNO Aviation Monograph Series: Aviation Security: An Annotated Bibliography of Responses to the Gore Commission

This monograph is a companion to UNOAI Monograph 96-2, "The Image of Airport Security: An Annotated Bibliography," compiled in June 1996. The White House Commission on Aviation Safety and Security, headed by Vice President Al Gore, was formed as a result of the TWA Flight 800 crash in August 1996. The Commission's final report included 31 recommendations addressed toward aviation security. The recommendations were cause for security issues to be revisited in the media and by the aviation industry. These developments necessitated the need for an updated bibliography to review the resulting literature. Many of the articles were written in response to the recommendations made by the Gore Commission. "Aviation Security: An Annotated Bibliography of Responses to the Gore Commission" is the result of this need.

Carrico, John S.

Aerospace Communications Security Technologies Demonstrated

In light of the events of September 11, 2001, NASA senior management requested an investigation of technologies and concepts to enhance aviation security. The investigation was to focus on near-term technologies that could be demonstrated within 90 days and implemented in less than 2 years. In response to this request, an internal NASA Glenn Research Center Communications, Navigation, and Surveillance Aviation Security Tiger Team was assembled. The 2-year plan developed by the team included an investigation of multiple aviation security concepts, multiple aircraft platforms, and extensively leveraged datalink communications technologies. It incorporated industry partners from NASA's Graphical Weather-in-the-Cockpit research, which is within NASA's Aviation Safety Program. Two concepts from the plan were selected for demonstration: remote "black box," and cockpit/cabin surveillance. The remote "black box" concept involves real-time downlinking of aircraft parameters for remote monitoring and archiving of aircraft data, which would assure access to the data following the loss or inaccessibility of an aircraft. The cockpit/cabin surveillance concept involves remote audio and/or visual surveillance of cockpit and cabin activity, which would allow immediate response to any security breach and would serve as a possible deterrent to such breaches. The datalink selected for the demonstrations was VDL Mode 2 (VHF digital link), the first digital datalink for air-ground communications designed for aircraft use. VDL Mode 2 is beginning to be implemented through the deployment of ground stations and aircraft avionics installations, with the goal of being operational in 2 years. The first demonstration was performed December 3, 2001, onboard the LearJet 25 at Glenn. NASA worked with Honeywell, Inc., for the broadcast VDL Mode 2 datalink capability and with actual Boeing 757 aircraft data. This demonstration used a cockpitmounted camera for video surveillance and a coupling to the intercom system for audio surveillance. Audio, video, and "black box" data were simultaneously streamed to the ground, where they were displayed to a Glenn audience of senior management and aviation security team members.

Griner, James H.

Climate Change, Nutrition and Food Security in Sub-Saharan Africa

Food security and nutrition in sub-Saharan Africa have long been affected by variations in the weather. Vulnerability to these hazards, along with economic shocks and an adverse political environment, is often uneven in a community. Some individuals and households are more susceptible to emergencies or crises than others, and thus determining who is most vulnerable are and how they are responding to a shock or crises is essential to understand the impact on food security. Daily, quantitative and global observations derived from satellite remote sensing instruments can contribute to understanding how food production has declined due to drought, flood or other weather-related hazard, but it can say nothing about the likelihood that the people living in that area are suffering food insecurity as a result. As Amartya Sen argued, a famine can occur even when there is an absolute surplus of food in a region. Thus organizations like the US Agency for International Development's Famine Early Warning Systems Network (FEWS NET) work to integrate biophysical and socio-economic indicators together with on-the ground assessments to estimate the food security consequences of a variety of events. Climate change is likely to restructure local, regional and global agricultural systems and commodity markets. Although remote sensing information has been used to identify seasonal production declines for the past two decades, new ways of using the data will need to be developed in order to understand, document and respond to the impact of climate change on food security as it is manifested in shorter term shocks. In this article, the contribution of remote sensing is explained, along with the other factors that affect food security

Brown, Molly E.

Security Analysis of DTN Architecture and Bundle Protocol Specification for Space-Based Networks

A Delay-Tolerant Network (DTN) Architecture (Request for Comment, RFC-4838) and Bundle Protocol Specification, RFC-5050, have been proposed for space and terrestrial networks. Additional security specifications have been provided via the Bundle Security Specification (currently a work in progress as an Internet Research Task Force internet-draft) and, for link-layer protocols applicable to Space networks, the Licklider Transport Protocol Security Extensions. This document provides a security analysis of the current DTN RFCs and proposed security related internet drafts with a focus on space-based communication networks, which is a rather restricted subset of DTN networks. Note, the original focus and motivation of DTN work was for the Interplanetary Internet . This document does not address general store-and-forward network overlays, just the current work being done by the Internet Research Task Force (IRTF) and the Consultative Committee for Space Data Systems (CCSDS) Space Internetworking Services Area (SIS) - DTN working group under the DTN and Bundle umbrellas. However, much of the analysis is relevant to general store-and-forward overlays.

Ivancic, William D.

Genomics-Based Security Protocols: From Plaintext to Cipherprotein

The evolving nature of the internet will require continual advances in authentication and confidentiality protocols. Nature provides some clues as to how this can be accomplished in a distributed manner through molecular biology. Cryptography and molecular biology share certain aspects and operations that allow for a set of unified principles to be applied to problems in either venue. A concept for developing security protocols that can be instantiated at the genomics level is presented. A DNA (Deoxyribonucleic acid) inspired hash code system is presented that utilizes concepts from molecular biology. It is a keyed-Hash Message Authentication Code (HMAC) capable of being used in secure mobile Ad hoc networks. It is targeted for applications without an available public key infrastructure. Mechanics of creating the HMAC are presented as well as a prototype HMAC protocol architecture. Security concepts related to the implementation differences between electronic domain security and genomics domain security are discussed.

Shaw, Harry

Sustaining Nuclear Security Education Through INSEN

The International Nuclear Security Education Network (INSEN) was established in 2010 with a mission to enhance global nuclear security through nuclear security-focused educational initiatives. INSEN is a partnership through which the International Atomic Energy Agency (IAEA), academic and research institutions, and other stakeholders cooperate to promote effective and sustainable nuclear security education. INSEN currently comprises 206 members (institutions) from 72 member states and 14 observers. This paper provides an overview of its role in developing and promoting nuclear security education

Metwally, Walid