Industrial Control Safety Report: 2016 Cyberspace Security Trends

The key infrastructure area represented by industrial control systems is an emerging security field that has received much attention in recent years. Industrial control, industrial automation control, mainly refers to the use of computer technology, microelectronics technology, electrical means to make the factory's production and manufacturing processes more automated, efficient, accurate, and controllable and visible, as small as you can Electronic equipment, large to power grid, aerospace and so on. The normal operation of these control systems ensures the normal and healthy operation of the national economy, while ensuring that the people enjoy a safe and comfortable living environment; while the frequent occurrence of security incidents for industrial control systems casts a shadow over the normal and stable operation of the automatic system. Incidents often affect facilities that are closely related to the national economy and people's lives, causing enormous destructiveness, making production safety and public safety a huge threat, and the consequences can not be underestimated. Industrial control systems have become an important part of the country's critical infrastructure, and the safety of industrial control systems is related to the country's strategic security.

Since the outbreak of the Zhentai virus in 2010, various industrial countries have gradually paid attention to industrial safety issues. In 2016, China issued six industrial control system safety related standards, carried out national key information infrastructure network security inspections and national industrial control system security. A series of actions, such as major inspections, have repeatedly emphasized the importance and urgency of industrial information security. According to the current industrial security incidents disclosed on the Internet, all walks of life are subject to different levels of security threats.

In this context, Anheng Information officially released the “2016 Industrial Control Safety Report”. This report mainly combines the analysis results of the 2016 Anheng Research Institute to summarize and analyze the loopholes and major events in the global and national industrial control network security fields. A brief explanation.

Industrial Control Safety Report: 2016 Cyberspace Security Trends
Industrial Control Safety Report: 2016 Cyberspace Security Trends
Industrial Control Safety Report: 2016 Cyberspace Security Trends

According to the number of vulnerabilities in the industrial control system industry disclosed by the National Information Security Vulnerability Sharing Platform since 2000, more and more industrial security vulnerabilities have been disclosed since 2010, and the security threats of products such as Siemens are relatively large.

Industrial Control Safety Report: 2016 Cyberspace Security Trends

Industrial control loopholes have always maintained a growth trend since 2010. From the overall analysis, this trend appears on the one hand on the rapid development of industrial informationization, and on the other hand, it has a relatively direct improvement in network security awareness after being affected by the earthquake network virus. relationship. In view of the industrial security incidents that have erupted in the Internet in recent years, it can be found that the root cause of most attacks comes from exploiting vulnerable vulnerabilities. As shown in the following figure, based on the level of industrial security vulnerabilities disclosed in recent years, it can be seen that nearly 94% of the vulnerabilities are high-risk vulnerabilities, and the severity of high-risk vulnerabilities is more harmful than other vulnerabilities.

Industrial Control Safety Report: 2016 Cyberspace Security Trends

Through the investigation of the Anheng Research Institute, the number of devices exposed to the Internet has reached 53,831 units worldwide. The yellow dots represent industrial control equipment. The more concentrated the number of industrial control equipment, the more the risk can be considered. Note that the data of this analysis is the industrial control equipment that survived until December 2016. It is different from the historical number of all industrial control equipment provided in some third-party platforms (there are a large number of devices that are no longer used), and it is more representative of the current latest. Industrial control equipment situation.

Industrial Control Safety Report: 2016 Cyberspace Security Trends

After the inspection of domestic industrial control equipment by the Anheng Research Institute, it was found that the number of industrial control equipment exposed to the Internet nationwide has reached 2,143. As shown in the following figure, there are many industrial control equipments in Taiwan and Heilongjiang, and the industrial control equipment exposed in Taiwan is located in the top ten in the world, and the risks it faces are also large. The direct exposure of industrial control protocols to the Internet will make it easy for attackers to access these industrial devices and attack them through vulnerabilities and APT attacks.

Industrial Control Safety Report: 2016 Cyberspace Security Trends

Overall, the security vulnerabilities and threats of industrial control systems will continue to grow substantially in the future. At this stage, more and more security personnel and hackers are beginning to pay attention to this field and begin to find new methods of attack. At present, industrial safety is getting more and more attention, but there is still a long way to go. It requires the coordinated promotion and efforts of the government, operating units, enterprises, manufacturers, universities and technical teams. This report will help the whole society to understand the vulnerability of industrial control systems, the security threats faced, enhance the importance of industrial users on information security issues, and improve the development of industrial security. At the same time, this report has certain reference value for the formulation of government departments or industry policies, as well as the products and service providers of industrial control systems.

Cement Mixer

Cement Mixer,Electric Cement Mixer,Cement Mixer Machine,Portable Cement Mixer

Dragon Crown Medical Co., Ltd. , https://www.dragoncrownmed.com

This entry was posted in on