透過您的圖書館登入
IP:3.143.17.127
  • 期刊

Application of Fuzzing in Security Testing of Industrial Control Network Protocols

摘要


In the test of the security and robustness of industrial control protocols, there are multiple test methods, such as black box test, white box test, and gray box test. However, the industrial control system is complex and changeable, and the transmission protocols are diverse. It is difficult to achieve unified testing with one method. As a black-box test method, fuzzy test has strong practicability and can solve this problem to a certain extent. This article will explain the main characteristics of industrial control protocol testing, and introduce the related research work of fuzzy testing applied to industrial control protocol testing. Finally, the future research directions of fuzzy control of industrial control protocols are forecasted.

參考文獻


H. Zhao, Z. Li, H. Wei, et al. "SeqFuzzer: An Industrial Protocol Fuzzing Framework from a Deep Learning Perspective," 2019 12th IEEE Conference on Software Testing, Validation and Verification (ICST), Xi'an, China, 2019, pp. 59-67.
VOYIATZIS A G, KATSIGIANNIS K, KOUBIAS S, et al. A Modbus/TCP Fuzzer for testing internetworked industrial systems[C]. 2015 IEEE 20th Conference on Emerging Technologies & Factory Automation (ETFA). IEEE, 2015.
ZHAO R, LV S. Neural-Network Based Test Cases Generation Using Genetic Algorithm[C].Pacific Rim International Symposium on Dependable Computing. IEEE, 2008.
ZHANG Yuqiang, GAO Shiwei, WANG Fu, et al. Review of Research on Industrial Control System Security Technology[A]. Chinese Association of Automation. Proceedings of the 2018 China Automation Conference (CAC2018)[C], 2018: 6.
XIONG Qi, PENG Yong, YI Shengwei, et al. Survey on the fuzzing technology in industrial network protocols[J]. Journal of Chinese Computer Systems, 2015, 36(3):497-502(in Chinese).

延伸閱讀