首页> 外文期刊>Software >Threat intelligence platform for the energy sector
【24h】

Threat intelligence platform for the energy sector

机译:能源部门威胁情报平台

获取原文
获取原文并翻译 | 示例
       

摘要

In recent years, critical infrastructures and power systems in particular have been subjected to sophisticated cyberthreats, including targeted attacks and advanced persistent threats. A promising response to this challenging situation is building up enhanced threat intelligence (TI) that interlinks information sharing and fine-grained situation awareness. In this paper, a framework that integrates all levels of TI, ie, strategic, tactical, operational, and technical, is presented. The platform implements the centralized model of information exchange with peer-to-peer interactions between partners as an option. Several supportive solutions were introduced, including anonymity mechanisms or data processing and correlation algorithms. A data model that enables communication of cyberincident information, both in natural language and machine-readable formats, was defined. Similarly, security requirements for critical components were devised. A pilot implementation of the platform was developed and deployed in the operational environment, which enabled practical evaluation of the design. Also, the security of the anonymity architecture was analyzed.
机译:近年来,特别是关键基础设施和电力系统遭受了复杂的网络威胁,包括针对性攻击和高级持续威胁。对这种具有挑战性的情况的有希望的回应是建立增强的威胁情报(TI),该情报将信息共享与细粒度的情况意识相互关联。在本文中,提出了一个框架,该框架集成了TI的所有级别,即战略,战术,运营和技术。该平台通过伙伴之间的对等交互来实现信息交换的集中模型。介绍了几种支持性解决方案,包括匿名机制或数据处理和关联算法。定义了一种能够以自然语言和机器可读格式进行网络事件信息通信的数据模型。同样,还设计了关键组件的安全要求。开发了该平台的试验性实施,并将其部署在运营环境中,从而可以对设计进行实际评估。此外,分析了匿名体系结构的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号