Application Layer Vulnerability Study of Industrial Control Network Based on CPN Model
The security problem of industrial control network is more and more serious,making it urgent on the mechanism of the vulnerability study of industrial control network security.Addressed on the cyber security problem of the application layer of industrial control network,which is based on the encrypted seurity communication mechanism,the theory of colored Petri net (CPN) is introduced into the vulnerability analysis for the application layer of industrial control network.The standard states and unsafe states based on the process of encrypted communication mechanism are modeling,and the problem of vulnerability analysis is transformed into the problem of solving the linear equation,by introducing the state equation of the model.A case with a man-in-the-middle attack is introduced to verify the accessibility of unsafe states,and a transition execution (attack) sequence of CPN model is obtained.An experiment validation is conducted through a man-in-the-middle attack case.The result of the experiment shows that under the communication mechanism of the industrial control network,and the industrial control protocol specification are mastered,the attack effect can be achieved by attackers on the industrial control network based on the encrypted communication mechanism.It means that there are exploitable vulnerabilities in the corresponding industrial control network.
Industrial control networkVulnerability analysisColored Petri net(CPN)Network securityDiffie-Hellman(DH) algorithmEncrypted communicationsSecurity vulnerabilities