首页|基于模糊测试技术的电力工控系统漏洞挖掘算法

基于模糊测试技术的电力工控系统漏洞挖掘算法

扫码查看
针对工控系统运行环境封闭带来的传统漏洞检测无法导出系统组件进行分析的问题,根据工控网络协议特征,结合测试用例变异因子,针对Modbus_TCP公开协议提出一种改进的电力工控系统漏洞测试挖掘方法.所提方法利用变异因子与工控协议特征依赖关系,改造协议测试用例.通过将测试用例的特征值和数据域的长度值因子及其数值的选择进行合并,并做归一化处理,进而简化协议测试过程中变异因子的执行次数.针对Modbus_TCP工控协议的模糊测试结果表明,改进后的Fuzzing测试表现出了更高的测试用例接收率和测试效率,测试样例的平均接收率至少提高50%.
Vulnerability mining algorithm based on Fuzzing test technology for power industrial control system
Aiming at the problem that the traditional vulnerability detection cannot export the system components for analysis resulting from the closed operation environment of industrial control system,the characteristics of industrial control network protocol was combined with the variation factor of test case.An improved vulnerability testing and mining method aimed at Modbus_TCP public protocol for power industrial control system was proposed.According to the interdependence between the variation factor and the industrial control protocol characteristics,the protocol test cases were modified.The variation factors of case characteristic value,the data field length value and the choice of their values were combined and normalized.The execution time of variation factor in the process of protocol testing was simplified.The improved Fuzzing test results aimed at Modbus_TCP public protocol show higher test case acceptance rate and test efficiency,and the average acceptance rate of test samples increasses by at least 50%.

electric power industryindustrial control systemvulnerability miningFuzzing testopen sourceanomaly analysis and monitoringdata generationvariation rate

贺晋宏、冯楠、付强、付敏、罗义钊

展开 >

四川大学 电气工程学院,四川 成都 610065

国网山西省电力公司 互联网部,山西太原 030021

国网山西省电力公司沁县供电公司,山西太原 030021

国网长治供电公司 城区供电中心,山西 长治 046011

福建网能科技开发有限责任公司,福建 福州 350003

展开 >

电力行业 工业控制系统 漏洞挖掘 Fuzzing测试 开源 异常分析和监测 数据生成 变异率

山西省自然科学基金项目国网山西电力公司运营数据资产管理项目

201701D1210517105D01900R7

2024

沈阳工业大学学报
沈阳工业大学

沈阳工业大学学报

CSTPCD北大核心
影响因子:0.62
ISSN:1000-1646
年,卷(期):2024.46(1)
  • 12