首页> 外文期刊>Software, practice & experience >Threat intelligence platform for the energy sector
【24h】

Threat intelligence platform for the energy sector

机译:威胁情报平台为能源部门

获取原文
获取原文并翻译 | 示例
       

摘要

In recent years, critical infrastructures and power systems in particular have been subjected to sophisticated cyberthreats, including targeted attacks and advanced persistent threats. A promising response to this challenging situation is building up enhanced threat intelligence (TI) that interlinks information sharing and fine-grained situation awareness. In this paper, a framework that integrates all levels of TI, ie, strategic, tactical, operational, and technical, is presented. The platform implements the centralized model of information exchange with peer-to-peer interactions between partners as an option. Several supportive solutions were introduced, including anonymity mechanisms or data processing and correlation algorithms. A data model that enables communication of cyberincident information, both in natural language and machine-readable formats, was defined. Similarly, security requirements for critical components were devised. A pilot implementation of the platform was developed and deployed in the operational environment, which enabled practical evaluation of the design. Also, the security of the anonymity architecture was analyzed.
机译:近年来,特别是关键基础设施和电力系统尤其经受了复杂的网络滑轨,包括有针对性的攻击和先进的持续威胁。对这一具有挑战性局势的有希望的反应正在建立增强的威胁情报(TI),这是相互关联的信息共享和细粒度的情况意识。本文介绍了一份集成所有级别的TI,即战略,战术,操作和技术的框架。该平台实现了与合作伙伴之间的对等相互作用的集中式信息交换模型作为选项。介绍了几种支持性解决方案,包括匿名机制或数据处理和相关算法。定义了一种数据模型,其能够定义自然语言和机器可读格式的网络化信息的通信。同样,设计了关键组件的安全要求。在运营环境中开发并部署了该平台的试验实施,这使能够进行实际评估设计。此外,分析了匿名架构的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号