论文标题

互连系统时代的铁路网络安全:一项调查

Railway cyber-security in the era of interconnected systems: a survey

论文作者

Soderi, Simone, Masti, Daniele, Lun, Yuriy Zacchia

论文摘要

电信行业的技术进步在通信网络的管理和性能方面带来了很大的优势。铁路行业是受益最大的铁路行业之一。但是,这些相互联系的系统在网络攻击中具有广泛的区域。该调查通过考虑行业中用于评估和减轻网络安全风险的标准,准则,框架和技术,研究铁路系统的网络安全方面,尤其是在安全与保障之间的关系。为此,我们将特定的注意力集中在信号传导上,这基本依赖计算机和通信技术使我们能够更好地探索现代超连接铁路系统安全性的多方面性质。考虑到这一点,我们然后继续分析从业者可以用来促进网络安全过程的方法和工具。详细介绍,我们对网络范围的观点呈现为一种能够建模和模拟计算机网络和攻击防御场景,研究漏洞的影响,并最终设计对策的技术。我们还讨论了与铁路行业现实密切相关的几个可能的用例。

Technological advances in the telecommunications industry have brought significant advantages in the management and performance of communication networks. The railway industry is among the ones that have benefited the most. These interconnected systems, however, have a wide area exposed to cyberattacks. This survey examines the cybersecurity aspects of railway systems by considering the standards, guidelines, frameworks, and technologies used in the industry to assess and mitigate cybersecurity risks, particularly regarding the relationship between safety and security. To do so, we dedicate specific attention to signaling, which fundamental reliance on computer and communication technologies allows us to explore better the multifaceted nature of the security of modern hyperconnected railway systems. With this in mind, we then move on to analyzing the approaches and tools that practitioners can use to facilitate the cyber security process. In detail, we present a view on cyber ranges as an enabling technology to model and emulate computer networks and attack-defense scenarios, study vulnerabilities' impact, and finally devise countermeasures. We also discuss several possible use cases strongly connected to the railway industry reality.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源