首页> 外文会议>Proceedings of 2016 IEEE Information Technology,Networking, Electronic and Automation Control Conference >A novel vulnerability analysis approach to generate fuzzing test case in industrial control systems
【24h】

A novel vulnerability analysis approach to generate fuzzing test case in industrial control systems

机译:一种新颖的漏洞分析方法,可在工业控制系统中生成模糊测试案例

获取原文
获取原文并翻译 | 示例

摘要

A smart grid is nationwide industrial control system that combine IT and traditional electric system. The main hindrance to smart grid is security. To solve this problem we propose a novel approach for vulnerability analysis of smart grid protocols using fuzzing test. The fuzzing test is widely used for vulnerability analysis, however, these studies do not consider the cross-protocol test and are not suitable to smart grid network. Therefore, we propose a novel test case generation method for fuzzing test. Before creating test cases, we classify the protocol fields into three categories by its characteristics. Based on the classification, we can easily create test case based on the categories without considering each fields. So, it helps to generate cross-field and cross-layer test case. To verify our approach, we examine the common used protocol library using the test case generated by proposed method and successfully find unknown abnormality.
机译:智能电网是结合了IT和传统电气系统的全国性工业控制系统。智能电网的主要障碍是安全性。为了解决这个问题,我们提出了一种使用模糊测试对智能电网协议进行漏洞分析的新颖方法。模糊测试广泛用于漏洞分析,但是,这些研究没有考虑跨协议测试,因此不适用于智能电网。因此,我们提出了一种新的模糊测试的测试用例生成方法。在创建测试用例之前,我们根据其特性将协议字段分为三类。基于分类,我们可以轻松地基于类别创建测试用例,而无需考虑每个字段。因此,它有助于生成跨域和跨层测试用例。为了验证我们的方法,我们使用提出的方法生成的测试用例检查了常用的协议库,并成功发现了未知异常。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号