摘要
随着能源互联网的快速发展与深入应用,泛在互联、对等开放、多源协同等特性导致恶意网络攻击不断发生,已经严重影响与威胁到能源互联网生产、传输、交易及消费各环节业务系统,能源互联网供应链安全作为保障能源互联网安全的重要部分得到进一步重视。针对能源互联网供应链全生命周期,提出了能源互联网供应链场景模型,概括了各场景下存在的安全风险,分析了供应链攻击各类场景,总结了供应链攻击的分类及特点,描述了能源互联网供应链攻击威胁模型,最后提出了各个场景的安全防御策略,为能源互联网供应链上下游安全保障提供参考。
With the rapid development and in-depth application of the energy Internet,malicious cyberattacks occur continuously because of the characteristics of the energy Internet:ubiquitous interconnection,open equality and multi-source cooperation.That has seriously affected and threatened these business systems at all stages of the energy Internet:production,transmission,transaction,consumption and so on.The security of supply chain of the energy Internet should be paid more attention as an important part of securing the energy Internet.In view of the whole life cycle of supply chain of the energy Internet,this paper puts forward the scene model about supply chain of the energy Internet,summarizes the security risks under each scene,analyzes various scenarios of supply chain attacks,summarizes the classification and characteristics of supply chain attacks,describes the threat model about supply chain attacks of the energy Internet,and finally puts forward the security defense strategies about various scenarios,which provides some references for upstream and downstream security of the energy Internet supply chain.
作者
李鸿彬
张赛楠
魏恩浩
杨雪华
Li Hongbin;Zhang Sainan;Wei Enhao;Yang Xuehua(Beijing Venus Information Security Technology Co.,Ltd.,Beijing 100193,China;Software College,Shenyang Normal University,Shenyang 110034,China)
出处
《信息技术与网络安全》
2022年第3期18-25,共8页
Information Technology and Network Security
关键词
能源互联网
供应链安全
供应链攻击
安全开发
防御策略
energy Internet
security of supply chain
supply chain attacks
security development
defense strategy