论文部分内容阅读
电力系统中信息技术的广泛使用为攻击者提供了更多入侵和攻击的途径,这已成为电力信息物理融合系统(Cyber-Physical Systems,CPS)安全的最大隐患之一。为更好地分析多源安全威胁,有必要应用基于告警关联的入侵攻击场景还原技术。本文阐述了电力系统告警数据采集方法;并对现有的告警分析处理方法进行了分析和比较;最后提出电力系统应用入侵攻击场景还原面临的重要技术问题和发展方向。
The widespread use of information technology in power systems provides attackers with more intrusions and attacks, which has become one of the biggest risks to the Cyber-Physical Systems (CPS) security. To better analyze multi-source security threats, it is necessary to apply alarm context-based intrusion attack scenario restoration technology. This paper describes the power system alarm data acquisition method, and analyzes and compares the existing alarm analysis and processing methods. Finally, it points out the important technical problems and the development direction of the power system application intrusion attack scenario reduction.