Dynamic Defense Method for Industrial Control Networks based on Shadow Honeynet


연구 분야: Infrastructure



학회: 2023 9th International Conference on Computer and Communications (ICCC)


초록

With the deep integration of Internet technology and industrial development, traditional closed industrial Internet faces an increasing array of dynamic attack vectors. To address these evolving threats, dynamic defense methods have become a crucial component of industrial control network security. This paper proposes a dynamic defense method based on a shadow honeynet, which involves a collaborative construction strategy with the industrial control network to share operational states and network structures. The method aims to collect targeted attack traffic and utilizes an efficient adaptive clustering technique to classify malicious traffic within the shadow honeynet. This enables real-time adjustments of defense strategies to detect new attacks. Furthermore, extensive experiments are conducted on a composite dataset comprising real-world data, SCADA data, and industrial control honeypot data. The results demonstrate significant performance improvements of the proposed method compared to existing approaches.


Author Profile
Wei Yang

Software College Northeastern University Shenyang China

China
Author Profile
XiaoLong Li

College of Computer Science and Engineering Northeastern University Shenyang China

Andorra
Author Profile
Chao Xu

Department of Cybersecurity Monitoring State Grid Liaoning Information and Communication Company

Andorra

📄 논문 정보

발행 연도 2023년
인용수 75
출판 국가 Andorra, China
사이트 IEEE
좋아요 수 0

연관 논문 목록 (339건)