Industrial control data evidence obtaining method and device, electronic equipment and storage medium

A technology of engineering data and industrial control, applied in the direction of comprehensive factory control, comprehensive factory control, electrical program control, etc., can solve the problems of poor pertinence of industrial control system, reduce the efficiency and accuracy of industrial control data forensics, etc., and improve readability , enhance professionalism, improve efficiency and accuracy

Pending Publication Date: 2022-04-15
NSFOCUS INFORMATION TECHNOLOGY CO LTD +1
View PDF10 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] In related technologies, when obtaining evidence for industrial control data, traditional IT forensics methods are usually used to obtain evidence for industrial control accidents. H

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Industrial control data evidence obtaining method and device, electronic equipment and storage medium
  • Industrial control data evidence obtaining method and device, electronic equipment and storage medium
  • Industrial control data evidence obtaining method and device, electronic equipment and storage medium

Examples

Experimental program
Comparison scheme
Effect test

Embodiment approach

[0119] Optionally, in the embodiment of this application, a possible implementation manner is provided for determining the industrial control protocol corresponding to the industrial controller, including:

[0120] Scan the asset information in the industrial control network to obtain the device attribute information corresponding to the industrial controller in the industrial control network.

[0121] In the embodiment of the present application, the asset information in the industrial control network is actively scanned, the industrial controllers connected to the industrial control network are determined, and the device attribute information corresponding to the industrial controllers is obtained.

[0122] Wherein, the device attribute information includes at least one of the following: model, IP address, and firmware version, which are not limited in this embodiment of the present application.

[0123] Based on the device attribute information, determine the industrial con...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to the technical field of industrial control security, in particular to an industrial control data evidence obtaining method and device, electronic equipment and a storage medium, industrial control flow data and engineering data of an industrial controller are obtained, and the engineering data comprise variable addresses of a plurality of engineering variables; on the basis of the variable address of each engineering variable, a corresponding target variable name is obtained by combining a preset mapping relation between each engineering variable and the variable name, and corresponding first sensitive operation information is obtained from the engineering data on the basis of each target variable name; analyzing the industrial control flow data to obtain each piece of second sensitive operation information; and generating a sensitive operation information set containing the first sensitive operation information and the second sensitive operation information, and performing corresponding processing based on the sensitive operation information set. Therefore, the engineering variables which are difficult to understand are converted into the variable names, the readability of sensitive operation information can be improved, and the efficiency and accuracy of industrial control data evidence obtaining can be improved.

Description

technical field [0001] The present application relates to the technical field of industrial control security, and in particular to an industrial control data forensics method, device, electronic equipment and storage medium. Background technique [0002] At present, with the development of industrial control technology, there are more and more accidents in industrial control systems. For example, industrial control systems and industrial control equipment have been in disrepair for a long time, and their own functions have malfunctioned, resulting in industrial control accidents; another example, targeted and concealed attacks on industrial control systems, resulting in industrial control accidents. Therefore, in order to preserve the evidence of industrial control accidents, forensics of industrial control data is required. [0003] In related technologies, when obtaining evidence for industrial control data, traditional IT forensics methods are usually used to obtain evid...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): G05B19/418
CPCY02P90/02
Inventor 高剑陈杰李东宏马良田泽夏潘雨晨史龙安
Owner NSFOCUS INFORMATION TECHNOLOGY CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products