Abstract: The present disclosure relates to securing digital substation. A switching node is configured to connect a decoy network and a substation communication network. Further, a plurality of bogus medium access control (MAC) IDs are created that resembles similar to a plurality of critical media access control (MAC) IDs exchanged between a plurality of intelligent electronic devices (IEDs) present in the substation communication network. Furthermore, the plurality of bogus MAC IDs are provided to the decoy network for communicating with the alien device. In this way, one or more malicious attack requests received from the alien device are detected. Further, the switching node may switch the substation network to the decoy network for displaying a set of bogus MAC IDs to the alien device depending on type of the one or more malicious attack requests.