信息网络安全 ›› 2016, Vol. 16 ›› Issue (9): 228-233.doi: 10.3969/j.issn.1671-1122.2016.09.045

• • 上一篇    下一篇

工业控制系统中PLC面临的网络空间安全威胁

宋国江1(), 肖荣华2, 晏培2   

  1. 1.北京江南天安科技有限公司,北京 100088
    2.中京天裕科技(北京)有限公司,北京 100085
  • 收稿日期:2016-07-25 出版日期:2016-09-20 发布日期:2020-05-13
  • 作者简介:

    作者简介: 宋国江(1979—),男,吉林,工程师,本科,主要研究方向为信息安全管理、工控安全整体解决方案;肖荣华(1977—),男,广东,工程师,硕士,主要研究方向为工业控制系统信息安全领域协议漏洞分析、工业控制系统安全配置基线和网络靶场;晏培(1972—),男,北京,高级工程师,硕士,主要研究方向为工业控制系统安全和防护技术、工业通讯协议分析和转换。

The PLC of Industrial Control System Facing Security Threats from Cyberspace

Guojiang SONG1(), Ronghua XIAO2, PEI YAN2   

  1. 1.Beijing JN TASS Technology Co., LTD, Beijing 100088, China
    2. SEAtech (Beijing) Co., LTD, Beijing 100085, China
  • Received:2016-07-25 Online:2016-09-20 Published:2020-05-13

摘要:

可编程逻辑控制器(PLC)出现以来,在工业自动控制方面得到广泛应用。随着工业化和信息化的进一步深入融合,物联网、智能硬件的出现,越来越多的PLC暴露在互联网中。由于PLC最初是为自动化控制而开发,在安全性方面几乎没有考虑,造成在网PLC极易遭受到攻击,并造成对真实物理设备的实质性损坏。文章模拟还原了一种新型针对PLC攻击的过程——攻击者可以通过网络入侵工具入侵PLC,拥有PLC访问权限后,可上传下载代码,将PLC变成网关,通过工业控制系统作为跳板来攻击企业工业控制系统和企业业务网络。这种攻击的潜伏过程时间长,在攻击达到实际破坏前很难被发现和中止。文章通过对该攻击过程的分析,为PLC的安全评估和防护提供了借鉴和技术支撑。

关键词: PLC, 工业控制系统, 网络攻击

Abstract:

Since invented, Programmable Logic Controller(PLC) is widely used in Industrial Control Systems(ICS).With the gradual fusion of industrialization and informationization,more technology like smart hardware & the Internet of Things IoT was used in ICS, and more PLCs exposed on the Internet.For originally only for automation control without considering security, PLC was attacked by hacker have occurred sometimes,and caused substantial damage to real physical device. The paper simulated the reduction process of a new type attack on PLC. Hackers use tools to invade PLC. PLCs Which can be uploaded and downloaded code turn into the gateway. Then they use PLC as tools to access other ICS and information systems. Malicious code is long latent period and hard to moniter.It is hard to stop when the attack occurred. The paper provides the attack process for the analysis and research, and provide reference for the research of the PLC and ICS safety.

Key words: PLC, ICS, cyberspace attack

中图分类号: