作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2025, Vol. 51 ›› Issue (2): 1-17. doi: 10.19678/j.issn.1000-3428.0068374

• 热点与综述 • 上一篇    下一篇

数字孪生在工控安全中的应用进展综述

毛竞争, 胡潇锐, 徐庚辰, 吴国栋, 孙彦斌*(), 田志宏   

  1. 广州大学网络空间安全学院, 广东 广州 510000
  • 收稿日期:2023-09-12 出版日期:2025-02-15 发布日期:2025-03-23
  • 通讯作者: 孙彦斌
  • 基金资助:
    国家重点研发计划项目(2021YFB3101704); 国家自然科学基金(62272119); 国家自然科学基金(62072130); 国家自然科学基金(U20B2046); 中国工程院战略研究与咨询课题(2022-JB-04-05); 广东省珠江学者项目(2019); 广东省高校创新团队项目(2020KCXTD007); 广州市高校创新团队项目(202032854)

Review of Application Progress of Digital Twins in Industrial Control Security

MAO Jingzheng, HU Xiaorui, XU Gengchen, WU Guodong, SUN Yanbin*(), TIAN Zhihong   

  1. Cyberspace Institute of Advanced Technology, Guangzhou University, Guangzhou 510000, Guangdong, China
  • Received:2023-09-12 Online:2025-02-15 Published:2025-03-23
  • Contact: SUN Yanbin

摘要:

基于数字孪生(DT)的工业控制系统(ICS)在提升系统安全性、保障稳定运行及优化生产效率方面具有重要作用, 其在工控安全领域的应用主要涵盖两方面: 安全态势感知和工业网络靶场。基于DT的安全态势感知通过实时监测、异常检测、漏洞分析和威胁识别, 实现系统安全的可视化管理。基于DT的工业网络靶场作为策略验证平台, 支持工控系统的攻防模拟, 评估安全策略有效性, 强化关键设施防护, 并提供人员培训支持。首先, 分析了ICS的安全现状, 并阐述了DT技术在ICS安全态势中的应用进展及其对风险评估的提升作用; 然后, 介绍了基于DT的工控网络靶场在工控安全中的优化作用; 最后, 通过智能电网典型案例验证了DT技术在工控安全中的重要作用, 并进一步探讨了DT技术在工控安全领域的未来发展方向。

关键词: 数字孪生, 工控安全, 安全态势感知, 网络靶场, 安全性增强

Abstract:

Industrial Control System (ICS) that utilizes Digital Twin (DT) technology plays a critical role in enhancing system security, ensuring stable operations, and optimizing production efficiency. The application of DT technology in the field of industrial control security primarily focuses on two key areas: security situation awareness and industrial cyber ranges. DT-based security situation awareness facilitates real-time monitoring, anomaly detection, vulnerability analyses, and threat identification while enabling a visualized approach to managing system security. Similarly, industrial cyber ranges powered by DT technology act as strategy validation platforms, supporting attack-defense simulations for ICSs, assessing the effectiveness of security strategies, enhancing the protection of critical infrastructure, and providing robust training support for personnel. This study analyzes the current security landscape of ICS and advancements in applying DT technology to enhance ICS security situation awareness, with particular emphasis on the technology's contributions to risk assessment. Furthermore, the study explores the optimization capabilities of the DT-based industrial cyber ranges for bolstering ICS security. Through a case study of intelligent power grids, this study validates the critical role of DT technology in ICS security. Finally, the study discusses future directions for the development of DT technology within the ICS security domain.

Key words: Digital Twin (DT), industrial control security, security situation awareness, cyber range, security enhancement