Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Industrial control network security detection method and device, electronic equipment and storage medium

A security detection and industrial control network technology, applied in electrical components, transmission systems, etc., can solve problems such as large differences in security data distribution, high false alarm rate, and limited detection capabilities of anomaly detection models.

Active Publication Date: 2020-06-26
中国航空油料集团有限公司 +1
View PDF5 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

One is an anomaly detection technology that relies entirely on unsupervised learning. It does not need to mark the data in advance. It can use the internal connection of the data itself in the space-time dimension, through statistics-based, hierarchical, cluster-based, and isolation-based However, there are also the following disadvantages: the distribution of security data in different application scenarios varies greatly, and the selection and design of anomaly detection models is a challenge; the detection ability of a single anomaly detection model is limited, and the false alarm rate is high

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Industrial control network security detection method and device, electronic equipment and storage medium
  • Industrial control network security detection method and device, electronic equipment and storage medium

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0042] In order to make the purpose, technical solutions and advantages of the embodiments of the present invention clearer, specific embodiments of the present invention will be described in detail below in conjunction with the accompanying drawings.

[0043] According to an aspect of an embodiment of the present invention, a method for detecting security of an industrial control network is provided.

[0044] like figure 1 As shown, the method includes:

[0045] Step 1, receiving the first random parameter, and dynamically obtaining a subset of heterogeneous base detectors from the base detector library.

[0046] In one embodiment, it is first determined whether the session to be detected is an in-depth analysis session.

[0047] If it is judged that the session to be detected is an in-depth analysis session, receiving a part of the first random parameter to obtain the first detector subset in the traditional attack detection algorithm library, and receiving another part of...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an industrial control network security detection method, which comprises the following steps of: receiving a first random parameter, and dynamically obtaining a heterogeneous base detector subset from a base detector library; receiving a second random parameter, and dynamically obtaining an integration algorithm from an integration algorithm library, the integration algorithm library being pre-configured; adaptively extracting a feature subset of the network session to be detected based on each base detector in the heterogeneous base detector subset; and inputting the feature subset into the heterogeneous base detector subset, and processing an obtained output result through the integration algorithm to obtain a detection result. According to the method, the heterogeneous base detectors and the heterogeneous integration method are dynamically selected, and the dynamic heterogeneous integration method is adopted for different base detectors, so that attackers arenot easy to capture vulnerabilities of a detection system to fight against attacks.

Description

technical field [0001] The present application relates to the field of industrial control, and in particular to an industrial control network security detection method, device, electronic equipment and storage medium. Background technique [0002] All network attacks will be manifested as abnormal communication behaviors, which is the basis for network security monitoring through passive traffic detection. Combined with the characteristics of the layered structure of the industrial control network, the current industrial control network attack scenarios mainly have three manifestations: one is the traditional network attack against the 3-4 layer network layer and the transport layer in the OSI seven-layer protocol, such as scanning detection, DDoS, Buffer overflow attacks; the second is network attacks based on industrial control depth protocols targeting the seventh layer of the OSI protocol, such as C&C communication, DDoS, S7 in SCADA systems, Modbus traffic tampering, an...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L63/1441H04L63/20
Inventor 周文成龙董贵山郭晓玲徐砚任琳琳
Owner 中国航空油料集团有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products