物联网学报 ›› 2017, Vol. 1 ›› Issue (1): 34-39.doi: 10.11959/j.issn.2096-3750.2017.00005

• 理论与技术 • 上一篇    下一篇

工业控制系统信息安全风险分析及漏洞检测

张晓明,王丽宏,何跃鹰,何世平   

  1. 国家互联网应急中心,北京 100029
  • 收稿日期:2017-04-25 出版日期:2017-06-30 发布日期:2017-11-02
  • 基金资助:
     

Analysis of potential vulnerabilities and security testing in industrial control system

ZHANG Xiao-ming, WANG Li-hong, HE Yue-ying, HE Shi-ping   

  1.  
  • Received:2017-04-25 Online:2017-06-30 Published:2017-11-02
  • Supported by:
     

摘要: 工业控制系统( ICS)是国家关键基础设施的重要组成部分,随着工业信息化进程的快速推进,信息、 网络技术在工业控制领域得到了广泛应用,同时工业控制系统所面临的网络安全风险也日益加剧。从工业控制系 统自身固有的属性和应用特点出发,对工控系统的信息安全隐患和当前主流应对策略进行了分析,重点对工控系 统漏洞和安全测评认证进行了阐述, 最后对如何提升工控系统安全性做了简要总结, 并对下一步工作进行了展望。

Abstract: Industrial control system (ICS) is the key part of critical infrastructure. With the development of industrial information, network information technology is widely used in industry. Meantime, the cyber security risk in industry is also growing in intensity. The potential vulnerabilities of ICS were analyzed based on its built-in attributes and application features, and set forth the importance of setting up security test and assess authentication in industry. Finally, the main idea about how to improve the security of ICS is summarized and future work is prospected.

中图分类号: 

No Suggested Reading articles found!