Computer and Modernization ›› 2020, Vol. 0 ›› Issue (07): 32-37.doi: 10.3969/j.issn.1006-2475.2020.07.007

Previous Articles     Next Articles

Security Risk Assessmenton of Attack Graph and HMM Industrial Control Network

  

  1. (1. College of Oceanography and Space Informatics, China University of Petroleum, Qingdao 266580, China;
    2. College of Computer Science and Technology, China University of Petroleum, Qingdao 266580, China)
  • Online:2020-07-06 Published:2020-07-15

Abstract: In order to evaluate the network security risk of industrial control system and realize the effective defense of industrial control system, a risk assessment method based on attack graph and HMM is proposed to describe the network security status according to the change of attack behavior. Firstly, the industrial control network attack graph model is established, and the network attack is transformed into the network state migration problem. The network node association (NNC) is introduced to study the association of the industrial control network nodes, and further analyze the network security risks. Then the HMM establishes the relationship between network observation and attack state, and introduces the CVSS evaluation system to evaluate the security status of the industrial control system. Finally, a case study is carried out with the centralized control system of thermal power plant as the experimental background. The analysis results show that the method can comprehensively analyze the safety hazards of industrial control systems and provide a basis for safety management personnel to take effective preventive measures.

Key words: industrial control network, network security, risk assessment, attack map, hidden Markov models

CLC Number: