当前位置: X-MOL 学术Int. J. Crit. Infrastruct. Prot. › 论文详情
Our official English website, www.x-mol.net, welcomes your feedback! (Note: you will need to create a separate account there.)
Cybersecurity Assessment Framework for Digital Interface Between Safety and Security at Nuclear Power Plants
International Journal of Critical Infrastructure Protection ( IF 3.6 ) Pub Date : 2021-06-28 , DOI: 10.1016/j.ijcip.2021.100453
R.A. Busquim e Silva , J.R.C. Piqueira , J.J. Cruz , R.P. Marques

This study aims to assess the cybersecurity aspects of nuclear power plants (NPPs) in regards to a digital safety-security interface. In traditional and advanced NPPs, safety and security functions are performed by analogue and digital systems. The risk of unauthorized software changing real-world system behaviors is a major and critical infrastructure safety and security issue. Within this context, a NPP is one of the most emblematic examples of critical infrastructure cyber targets. In this study, an evaluation of the functional impact of a cyber-attack targeting specific digital equipment in a nuclear facility is performed by means of a nuclear power plant simulator specifically developed for cybersecurity assessments, deployment of realistic cyber-attack simulation scenarios, and collection and evaluation of simulated data. The Asherah nuclear power plant simulator reproduces the dynamic behavior of a two-loop 2,772 MWt pressurized water reactor (PWR) including primary, secondary, and tertiary loops, as well as selected network infrastructure elements, communication protocols, and control systems. The system is projected to survive cyber-attacks, to allow great flexibility for digital systems and network research, and to allow the capture of data for an a posteriori analysis. The preliminary simulation results obtained by the deployment of realistic cyber-attack scenarios facilitated an understanding of the impacts of cyber-attacks, how they propagate in nuclear digital cyber-physical systems and their consequences, both in terms of plant security and safety.



中文翻译:

核电厂安全与安保之间数字接口的网络安全评估框架

本研究旨在评估核电厂 (NPP) 在数字安全-安保接口方面的网络安全方面。在传统和先进核电厂中,安全和安保功能由模拟和数字系统执行。未经授权的软件改变现实世界系统行为的风险是一个重大而关键的基础设施安全问题。在此背景下,核电厂是关键基础设施网络目标最具代表性的例子之一。在这项研究中,通过专门为网络安全评估、部署真实的网络攻击模拟场景和收集信息而开发的核电厂模拟器,对针对核设施中特定数字设备的网络攻击的功能影响进行评估。和评估模拟数据。Asherah 核电站模拟器再现了双回路 2,772 MWt 压水反应堆 (PWR) 的动态行为,包括一次、二次和三次回路,以及选定的网络基础设施元素、通信协议和控制系统。该系统预计能够抵御网络攻击,为数字系统和网络研究提供极大的灵活性,并允许捕获数据以进行后验分析。通过部署真实的网络攻击场景获得的初步模拟结果有助于了解网络攻击的影响、它们如何在核数字网络物理系统中传播及其在工厂安全和安全方面的后果。772 MWt 压水反应堆 (PWR),包括一次、二次和三次回路,以及选定的网络基础设施元素、通信协议和控制系统。该系统预计能够抵御网络攻击,为数字系统和网络研究提供极大的灵活性,并允许捕获数据以进行后验分析。通过部署真实的网络攻击场景获得的初步模拟结果有助于了解网络攻击的影响、它们如何在核数字网络物理系统中传播及其在工厂安全和安全方面的后果。772 MWt 压水反应堆 (PWR),包括一次、二次和三次回路,以及选定的网络基础设施元素、通信协议和控制系统。该系统预计能够抵御网络攻击,为数字系统和网络研究提供极大的灵活性,并允许捕获数据以进行后验分析。通过部署真实的网络攻击场景获得的初步模拟结果有助于了解网络攻击的影响、它们如何在核数字网络物理系统中传播及其在工厂安全和安全方面的后果。为数字系统和网络研究提供极大的灵活性,并允许捕获数据以进行后验分析。通过部署真实的网络攻击场景获得的初步模拟结果有助于了解网络攻击的影响、它们如何在核数字网络物理系统中传播及其在工厂安全和安全方面的后果。为数字系统和网络研究提供极大的灵活性,并允许捕获数据以进行后验分析。通过部署真实的网络攻击场景获得的初步模拟结果有助于了解网络攻击的影响、它们如何在核数字网络物理系统中传播及其在工厂安全和安全方面的后果。

更新日期:2021-07-09
down
wechat
bug