陈希, 马冰珂. Application of situational awareness techniques for information security enhancements[J]. 2018, 31(2): 38-42. DOI: 10.13992/j.cnki.tetas.2018.02.013.
Application of situational awareness techniques for information security enhancements
摘要
公网资产、业务网站和手机应用等作为直接暴露在互联网侧的信息系统和应用
在重大活动期间
极易成为网络攻击者的首选攻击目标和入口。为有效提升信息安全事件的整体处理水平
为重大活动提供信息安全保障
本文对态势感知平台的相关关键技术和应用进行了研究。在相关研究内容的基础上
本文设计开发了一套信息安全态势感知平台
支持重点资产和网站、不良信息以及手机移动应用的安全监测等功能
并能够将各类安全事件和风险进行集中监测感知、态势分析和统一呈现。
Abstract
With the uprising trend and ever-growing techniques of network attacks
important assets
i.e.
severs
websites and mobile apps
which are directly exposed to the Internet
become the natural attacking targets and even entries for hackers. In order to improve the abilities to tackle information security incidents as a unity
and ensure network security during major activities
this paper investigates the fundamental techniques of situational awareness and its applications. Based on our research
a situational awareness platform is built which supports the monitoring of assets
websites and mobile applications
and is able to manage various kinds of security incidents and vulnerabilities for intensive awareness and analysis.