摘要
为应对控制系统与互联网技术深度融合引发的安全新挑战,抵御震网病毒、火焰病毒、BlackEnergy等靶向攻击,针对工业控制系统漏洞挖掘、修复与控制等技术滞后,以及工业控制安全面临的"难发现、难监测、难防护"等问题,通过对工业控制系统的理论模型、关键技术、装备研制及测试评估进行研究,以漏洞挖掘与利用研究为主线,以理论与体系架构研究和安全技术测试验证平台的建设为基础,以动态监测防护和主动防御为目标,以测试样例集的攻防验证与典型示范为应用,提出了包含工业控制系统漏洞挖掘、深度检测、动态防护、主动防御等的整体安全技术解决方案,设计并构建了集漏洞挖掘、验证评估、动态防护、主动防御于一体的工业控制系统安全技术体系。
In order to face the new challenges caused by the deep integration of control system and Internet technology and resist the target attack,such as shock virus,flame virus and BlackEnergy,aiming at the technical lag of industrial control system vulnerability mining,repair and control,and the problems of“difficult to detect,difficult to monitor,difficult to protect”,this paper researched the theoretical model,key technology,equipment development and test evaluation of industrial control system.Besides,through taking the research of vulnerability mining and utilization as the main line,taking theoretical system architecture research and test verification platform construction as the basis,taking dynamically monitoring protection and active defense as the goal,taking test example set attack and defense verification and typical demonstration as the applicationl,this paper proposed security technology solutions including industrial control system vulnerability mining,depth detection,dynamic protection,active defense,and designed the integrated security technology system including vulnerability mining,verification and evaluation,dynamic protection and active defense.
作者
锁延锋
王少杰
秦宇
李秋香
丰大军
李京春
SUO Yan-feng;WANG Shao-jie;QIN Yu;LI Qiu-xiang;FENG Da-jun;LI Jing-chun(School of Computer and Communication Engineering,University of Science and Technology Beijing,Beijing 100083,China;National Research Center of Information Technology Security,Beijing 100084,China;Institute of Software,Chinese Academy of Sciences,Beijing 100083,China;The First Research Institute of the Ministry of Public Security,Beijing 100083,China;The 6th Research Institute of China Electronics Corporation,Beijing 100083,China)
出处
《计算机科学》
CSCD
北大核心
2018年第4期25-33,共9页
Computer Science
基金
国家863计划项目:漏洞验证评估与综合服务平台研究(2012AA012901)资助
关键词
工业控制系统
漏洞挖掘
验证评估
动态防护
主动防御
Industrial control system
Vulnerability mining
Validation evaluation
Dynamic protection
Active defense