Netinfo Security ›› 2018, Vol. 18 ›› Issue (10): 70-77.doi: 10.3969/j.issn.1671-1122.2018.10.010

Previous Articles     Next Articles

Research on Threat Modeling of Industrial Control Network Based on Attack Graph

Ruiying CHEN1(), Zemao CHEN1, Hao WANG2   

  1. 1. Information Security Department, Naval University of Engineering, Wuhan Hubei 430033, China
    2. 91910 Troops of PLA, Dalian Liaoning 116001, China
  • Received:2018-05-09 Online:2018-10-10 Published:2020-05-11

Abstract:

Application of network and computer technology in industrial control network has been very common. The industrial control network security has been widely concerned followed by universal application of information technology. Security issues such as vulnerabilities have been exposed in industrial control network security incidents. In this paper, the attack graph based on the growth of attack level is used to model attack scenarios of the industrial control network. Firstly, the formal representation methods of the attack graph and attack graph generation procedure have been introduced. Next, the article describes the typical attack scenarios in the industrial control network as an example and build the attack graph based on the attack level growth for the attack scenarios. Furthermore, it uses the attack graph to analyze the security of the network, predict the attack path most likely to be taken by attackers, and to obtain the security requirements. The example shows that using the attack graph to analyze the network security of the warship platform network can provide scientific guidance for the constructing the industrial control network security architecture, and is practical in use.

Key words: industrial control network, attack graph, attach modeling, attack level, security analysis

CLC Number: