Industrial control system security experiment platform for penetration testing

An industrial control system and penetration testing technology, applied in the direction of transmission systems, digital transmission systems, electrical components, etc., can solve problems such as disrupting communication, and achieve the effect of interface multiplexing, security assurance, and hidden safety hazards

Active Publication Date: 2018-11-06
ZHEJIANG UNIV
View PDF5 Cites 26 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Even if the malicious person does not know the security configuration of the system, they can still achieve the p

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Industrial control system security experiment platform for penetration testing

Examples

Experimental program
Comparison scheme
Effect test

Embodiment

[0054] This embodiment provides a specific implementation of an industrial control system security experiment platform.

[0055] Simulate the virtual industrial control network part: manually set the IP of VMnet in the virtual network editor in VMware Workstation, and set up multiple LANs by adding a gateway router, setting up a firewall, and establishing a three-layer simulated industrial control network. The virtual network specifically includes an extranet of an enterprise and a DMZ area. The DMZ area supports the monitoring functions of the SCADA system, such as control hardware configuration, data acquisition, and real-time monitoring of the production and operation of the underlying control system. The historical data server is deployed in the DMZ area, which stores the data uploaded by the control equipment and provides data analysis functions; at the same time, this layer plays the role of connecting the internal and external networks, and restricts the two-way access ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses an industrial control system security experiment platform for penetration testing. The platform comprises a virtual industrial control network, a control device, a control object, an attacker module, a data acquisition module and an anomaly detection module, wherein the virtual industrial control network is a three-layer network structure, which is successively an enterprise network, a demilitarized zone, and a control intranet from the outside to the inside; the enterprise network with the demilitarized zone, and the demilitarized zone with the control intranet are allconnected through a gateway; the control device is connected to the control intranet through an Ethernet protocol; the control object comprises a physical model and a simulation model and communicates with the control device; the attacker module is connected to a public network, simulates an attacker, and performs penetration testing on the industrial control system; the data acquisition module collects network flow data of the gateway; and the anomaly detection module is used for implementing anomaly detection of industrial control systems based on network flow data. The platform of the invention can deeply dig into the safety hazards of the industrial control system and has a positive effect on protecting the safety performance of the industrial control system.

Description

technical field [0001] The invention belongs to the field of industrial control system security and relates to an industrial control system security experiment platform for penetration testing. Background technique [0002] An industrial control system refers to a collection of equipment, systems, networks, and controllers used to operate, control, and assist automated industrial processes. It includes data monitoring and acquisition system, distributed control system, programmable logic controller, human-computer interaction interface, intelligent terminal and other systems. The industrial control system is a major key infrastructure related to the development of the national economy and national security, and its safe, stable and efficient operation is very important. However, with the increase in the degree of intelligence and system openness, major security incidents such as Stuxnet and Black Energy in recent years have shown that industrial control systems are facing i...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L12/24
CPCH04L41/145H04L63/02H04L63/1416H04L63/1425H04L63/1433H04L63/1441
Inventor 程鹏何阳陈积明王文海孙优贤
Owner ZHEJIANG UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products