Toggle Main Menu Toggle Search

Open Access padlockePrints

Cyber defense in OCPP for EV charging security risks

Lookup NU author(s): Dr Dev JhaORCiD

Downloads


Licence

This work is licensed under a Creative Commons Attribution 4.0 International License (CC BY 4.0).


Abstract

© The Author(s) 2025.The Open Charge Point Protocol (OCPP) is a widely adopted communication standard that enables vendor-independent communication between charging points and Electric Vehicle (EV) charging station management systems. OCPP has significant cyber risks in terms of weak authentication mechanisms and improper session handling, exposing it to potential EV charging-related security threats. The backward incompatibility of the recent version of OCPP also poses challenges in the seamless adoption of the protocol. This paper introduces a comprehensive cyber defense framework to mitigate the security risks associated with OCPP. Through a detailed analysis of its vulnerabilities, the framework proposes targeted enhancements and mitigation strategies to further strengthen its security. The results demonstrate that the proposed OCPP significantly enhances both security and performance, surpassing its predecessor and current state-of-the-art security solutions for EV charging.


Publication metadata

Author(s): Hamdare S, Brown DJ, Jha DN, Aljaidi M, Cao Y, Kumar S, Kharel R, Jugran M, Kaiwartya O

Publication type: Article

Publication status: Published

Journal: International Journal of Information Security

Year: 2025

Volume: 24

Issue: 3

Online publication date: 21/05/2025

Acceptance date: 02/04/2018

Date deposited: 02/06/2025

ISSN (print): 1615-5262

ISSN (electronic): 1615-5270

Publisher: Springer Science and Business Media Deutschland GmbH

URL: https://doi.org/10.1007/s10207-025-01055-7

DOI: 10.1007/s10207-025-01055-7


Altmetrics

Altmetrics provided by Altmetric


Funding

Funder referenceFunder name
Industry (JMVL Ltd) and Nottingham Trent University, UK

Share