期刊文献+

数据推断:信息物理融合系统数据泄露威胁范式和防御方法 被引量:2

Data inference:data leakage paradigms and defense methods in cyber-physical systems
原文传递
导出
摘要 随着计算单元和物理对象的高度集成,信息系统和物理系统正逐渐耦合发展为信息物理融合系统(cyber-physical system,CPS).根据CPS物理系统的客观规律,或业务流程间的复杂关联关系,CPS数据之间存在相互推断的可能;当出现从低安全域数据向高安全域数据的准确推断途径时,将引发推断型数据泄露威胁.本文通过分析数据推断引发的CPS数据泄露事件,从数据窃取和数据推断两个维度,提出数据泄露威胁的范式;将数据推断归纳为3类问题:状态估计问题、参数辨识问题和盲源分离问题,从模型驱动、数据驱动和数据–模型双驱动的角度,总结了数据推断的方法和算法.以电力市场为例,展示了基于公开电价数据推断电力系统关键参数的过程,验证了数据推断可以引发严重CPS数据泄露威胁.同时,分析了现有数据保护方法应对数据推断攻击时面临的挑战,探讨了CPS数据推断防御和数据安全治理的研究方向. With the high integration of computing units and physical objects,cyber and physical systems are gradually coupled into cyber-physical systems(CPSs).According to the laws of physical systems and operation ow in CPSs,unknown CPS data can be inferred from other known data.The inferred data leakage threat is triggered when an accurate inference path connects between low-and high-security domain data.In this paper,by analyzing CPS data leakage accidents caused by data inference,paradigms of data leakage threats are proposed from two dimensions:data theft and data inference.Data inference is classi ed into three problem types:state estimation,parameter identi cation,and blind source separation.The algorithms for data inference are categorized as model-driven,data-driven,and data-model-driven methods.In the case of an electricity market,the process of inferring key parameters of a power system from public electricity price data is demonstrated,verifying that data inference can cause severe CPS data leakage threats.Meanwhile,the challenges of existing data protection methods are investigated.Additionally,the future research of CPS data inference defense and data security governance is discussed.
作者 刘烃 王子骏 刘杨 周亚东 吴江 鲍远义 吴桐 管晓宏 Ting LIU;Zijun WANG;Yang LIU;Yadong ZHOU;Jiang WU;Yuanyi BAO;Tong WU;Xiaohong GUAN(Faculty of Electronic and Information Engineering,Xi'an Jiaotong University,Xi'an 710049,China;Ministry of Education Key Lab for Intelligent Networks and Network Security,Xi'an 710049,China;National Energy Administration Information Center,Beijing 100824,China)
出处 《中国科学:信息科学》 CSCD 北大核心 2023年第11期2152-2179,共28页 Scientia Sinica(Informationis)
基金 国家重点研发计划(批准号:2022YFB2703503) 国家自然科学基金(批准号:62293501,61833015,62232014,72241433,61721002,62032010,62002281) 博士后基金(批准号:2020M683520) 南方电网公司科技项目(批准号:036000KK52200061(GDKJXM-20202017)) 中央高校基本科研业务费专项资金资助项目。
关键词 数据安全 信息物理融合系统 数据泄露威胁范式 数据推断 data security cyber-physical system(CPS) data leakage threat paradigm data inference
  • 相关文献

参考文献9

二级参考文献75

共引文献294

同被引文献40

引证文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部