A virtualization-based security architecture for industrial control systems


연구 분야: Infrastructure



학회: 2022 7th IEEE International Conference on Data Science in Cyberspace (DSC)


초록

The Industrial Internet expands the attack surface of industrial control systems(ICS), bringing cybersecurity threats to industrial controllers located in operation technology(OT) networks. Honeypot technology is an important means to detect network attacks. However, the existing honeypot system cannot simulate business logic and is difficult to resist highly concealed APT attacks. This paper proposes a high-simulation ICS security defense framework based on virtualization technology. The framework utilizes virtualization technology to build twins for protected control systems. The architecture can infer the execution results of control instructions in advance based on actual production data, so as to discover hidden attack behaviors in time. This paper designs and implements a prototype system and demonstrates the effectiveness and potential of this architecture for ICS security.


Author Profile
Chonghua Wang

China Industrial Control Systems Cyber Emergency Response Team Beijing China

China
Author Profile
Yuqiang Zhang

Cyberspace Institute of Advanced Technology Guangzhou University Guangzhou China

China
Author Profile
Zhiqiang Hao

China Industrial Control Systems Cyber Emergency Response Team Beijing China

China

📄 논문 정보

발행 연도 2022년
인용수 2
출판 국가 China
사이트 IEEE
좋아요 수 0

연관 논문 목록 (338건)