首页> 外文会议>IEEE Conference on Energy Internet and Energy System Integration >A Security Model of SCADA System Based on Attack Tree
【24h】

A Security Model of SCADA System Based on Attack Tree

机译:基于攻击树的SCADA系统安全模型

获取原文
获取外文期刊封面目录资料

摘要

In recent years, attacks against SCADA systems have emerged in endlessly. Therefore, it is of great significance to study the security issues of SCADA systems. Although many scholars have studied the security of SCADA systems, their research tends to focus on one aspect of security analysis or security protection design, lacking the organic combination of the two. Therefore, this paper proposes a security model of SCADA system based on attack tree—BPATSM, which contains two modules: security analysis model and security protection scheme. For the security analysis of SCADA systems, there are a lot of methods. Attack trees are a common method for security analysis. However, the traditional attack tree model can only analyze the structure of the attack, but cannot analyze the characteristics of the attack, nor it can analyze the bias of the attack that has occurred and predicted the possibility of the attack that will occurred, so its analysis efficiency is not high. Therefore, this paper proposes a preference attack tree (PAT) model based on the attack tree model, that is, adding the attributes of the number of attacks on the nodes of the attack tree to represent the preference, which can improve the efficiency of attack tree model analysis. Based on PAT analysis, this paper also proposes a security protection scheme for SCADA system, which can switch three levels of security protection according to different protect requirements. Finally, the BPATSM model is implemented in a semi-simulation system and tested its security.
机译:近年来,针对SCADA系统的攻击层出不穷。因此,研究SCADA系统的安全性问题具有重要的意义。尽管许多学者已经研究了SCADA系统的安全性,但是他们的研究往往集中在安全性分析或安全保护设计的一个方面,而缺乏两者的有机结合。因此,本文提出了一种基于攻击树BPATSM的SCADA系统安全模型,该模型包含两个模块:安全分析模型和安全保护方案。对于SCADA系统的安全性分析,有很多方法。攻击树是安全性分析的常用方法。但是,传统的攻击树模型只能分析攻击的结构,而不能分析攻击的特征,也不能分析已经发生的攻击的偏差并预测可能发生攻击的可能性,因此分析效率不高。因此,本文在攻击树模型的基础上提出了一种优先攻击树(PAT)模型,即在攻击树的节点上增加攻击次数的属性来表示优先级,从而提高攻击效率。树模型分析。在PAT分析的基础上,提出了一种SCADA系统安全保护方案,该方案可以根据不同的保护需求切换三级安全保护。最后,BPATSM模型在半仿真系统中实现并测试了其安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号