欺騙誘捕技術(shù)在氣象網(wǎng)絡(luò)安全攻防對抗場景下的應(yīng)用
作者:
作者單位:

作者簡介:

通訊作者:

中圖分類號:

基金項目:

國家氣象信息中心信息網(wǎng)絡(luò)安全與“信創(chuàng)”技術(shù)研發(fā)創(chuàng)新團隊(NMIC20201105)攻關(guān)任務(wù)、國家氣象信息中心科研項目結(jié)余資金課題(NMICJY202320)、國家重點研發(fā)計劃項目(2016YFA0602100)資助


Application of Deception Trapping in Defending Against Cyber Attacks in CMA
Author:
Affiliation:

Fund Project:

  • 摘要
  • |
  • 圖/表
  • |
  • 訪問統(tǒng)計
  • |
  • 參考文獻(xiàn)
  • |
  • 相似文獻(xiàn)
  • |
  • 引證文獻(xiàn)
  • |
  • 資源附件
  • |
  • 文章評論
    摘要:

    隨著信息技術(shù)的快速發(fā)展,網(wǎng)絡(luò)安全形勢愈發(fā)嚴(yán)峻,氣象部門通過組織網(wǎng)絡(luò)攻防演習(xí),以實戰(zhàn)標(biāo)準(zhǔn)檢驗并提升業(yè)務(wù)安全防護(hù)體系能力。在演習(xí)中,攻擊隊伍對重要業(yè)務(wù)單位的真實網(wǎng)絡(luò)及信息系統(tǒng)進(jìn)行攻擊滲透,各業(yè)務(wù)單位作為防守方開展實時監(jiān)控與應(yīng)急處置。由于攻防雙方信息不對等,防守方采用傳統(tǒng)防御手段經(jīng)常處于被動挨打的局面。為提升網(wǎng)絡(luò)防御能力,本文研究偽裝欺騙和攻擊誘捕技術(shù)在氣象部門網(wǎng)絡(luò)安全實戰(zhàn)場景下的應(yīng)用,通過采用基于蜜罐的欺騙誘捕平臺,構(gòu)建主動防御體系,實現(xiàn)對異常網(wǎng)絡(luò)流量的監(jiān)測、分析和預(yù)警,并對攻擊方進(jìn)行誘捕、溯源。經(jīng)過實戰(zhàn)檢驗,欺騙誘捕技術(shù)的應(yīng)用切實提高了網(wǎng)絡(luò)安全防御能力,保障氣象業(yè)務(wù)系統(tǒng)穩(wěn)定運行。

    Abstract:

    With the rapid development of information technology, the cyber security situation is becoming more and more severe. The meteorological department has organized network attack and defence exercises to test and improve the capability of the service security protection system with practical standards. In the drill, the attacking team penetrates the real network and information system of important operational units. Each unit acts as the defender to carry out real-time monitoring and emergency response. Because of the information imbalance between the two sides, the defence is often in a passive situation by using traditional defence means. In order to improve the network defence capability, this paper studies the application of camouflage deception and attack trapping technology in the actual scenario of cyber security in meteorological departments. By adopting a honeypot-based deception trapping platform, an active defence system is constructed to realize the monitoring, analysis and early warning of abnormal network traffic, and trap and trace the source of attackers. Through actual combat tests, the application of deception trapping technology has effectively improved the cyber security defence capability and ensured meteorological operational systems stable and reliable.

    參考文獻(xiàn)
    相似文獻(xiàn)
    引證文獻(xiàn)
引用本文

周琰,馬強.欺騙誘捕技術(shù)在氣象網(wǎng)絡(luò)安全攻防對抗場景下的應(yīng)用[J].氣象科技,2023,51(2):208~214

復(fù)制
分享
文章指標(biāo)
  • 點擊次數(shù):
  • 下載次數(shù):
  • HTML閱讀次數(shù):
  • 引用次數(shù):
歷史
  • 收稿日期:2022-03-24
  • 定稿日期:2022-11-04
  • 錄用日期:
  • 在線發(fā)布日期: 2023-04-27
  • 出版日期:
您是第位訪問者
技術(shù)支持:北京勤云科技發(fā)展有限公司
揭阳市| 巴东县| 社会| 乐昌市| 石家庄市| 昌黎县| 化州市| 济南市| 邳州市| 湘潭县| 张家川| 镶黄旗| 徐闻县| 永丰县| 寿阳县| 东乌珠穆沁旗| 佳木斯市| 富平县| 肃宁县| 宜宾县| 久治县| 准格尔旗| 托克逊县| 论坛| 乌恰县| 固原市| 天柱县| 儋州市| 汕尾市| 东阳市| 木里| 渑池县| 汤原县| 九龙城区| 双牌县| 依兰县| 定结县| 凉城县| 文昌市| 隆德县| 游戏|