首页|工业网络的高级可持续性威胁监测、溯源技术

工业网络的高级可持续性威胁监测、溯源技术

扫码查看
工业自动化控制系统多使用专用通信协议,应用场景与生产工艺流程紧密联系.目前所普遍采用的工控威胁监测技术是基于被动防御理念,无法有效识别以工业基础设施为目标,且技术复杂、手段隐蔽的入侵威胁.以工业网络中传输的工业相关文件还原为数据基础,提出基于soft-PLC仿真平台应用级的监测分析以及关键安全特征追溯方案,不但可以更加全面覆盖工业网络威胁模型的多个阶段,还可以更加充分地应对工业生产场景入侵、干扰行为的技术特点,成为工业网络高级可持续性威胁监测、溯源的有效途径之一.
Advanced persistent threat monitoring and traceability technology for industrial networks
Industrial automation control systems often use dedicated communication protocols,and their application scenarios are closely related to production processes.The currently widely used industrial control threat monitoring technology is based on pas-sive defense concepts,which cannot effectively identify intrusion threats targeting industrial infrastructure with complex technology and covert means.Based on the restoration of industrial related files transmitted in industrial networks,a soft PLC simulation plat-form application level monitoring and analysis,as well as key security feature tracing scheme,is proposed.This scheme can not only comprehensively cover multiple stages of industrial network threat models,but also more fully respond to the technical charac-teristics of industrial production scene intrusion and interference.It has become one of the effective ways to monitor and trace ad-vanced sustainability threats in industrial networks.

industrial control systemadvanced persistent threatsoft-PLCtraceability

赵云龙、霍朝宾、于运涛、王绍杰、鲁华伟

展开 >

中国电子信息产业集团有限公司第六研究所,北京 100083

联通数字科技有限公司,北京 100031

工业控制系统 高级可持续性威胁 soft-PLC 溯源

2024

网络安全与数据治理
华北计算机系统工程研究所(中国电子信息产业集团有限公司第六研究所)

网络安全与数据治理

影响因子:0.348
ISSN:2097-1788
年,卷(期):2024.43(9)
  • 7