arXivDaily arXiv每日学术速递 周一至周五更新
arXiv周末暂无论文更新,休息一下吧,周末愉快~~

SCRM:空间网络风险管理的一个可操作框架

SCRM: An Actionable Framework for Space Cyber Risk Management

Ekzhin Ear, Caleb Chang, Shouhuai Xu

arXiv 2610.03970首次发表:更新:

发表机构

University of Colorado Colorado Springs; The Laboratory for Cybersecurity Dynamics(科罗拉多大学斯普林斯分校; 网络安全动力学实验室)

机构由 AI 辅助整理,请以论文原文为准。

AI 中文总结

提出首个空间网络风险管理框架,系统建模基础设施、任务与攻击,提供风险分析与加固算法,经真实SATCOM攻击案例验证,可有效缓解级联效应与网络风险。

AI 中文摘要

空间基础设施在现代社会中扮演着关键角色,包括卫星通信(SATCOM)。与互联网类似,空间基础设施容易受到网络攻击,即空间网络攻击,这凸显了管理空间基础设施网络风险(即空间网络风险)的重要性。然而,充分管理空间网络风险仍是一个开放问题。在本文中,我们提出了首个空间网络风险管理(SCRM)框架,以系统性地分析和缓解空间网络风险。该框架对空间基础设施、空间任务和空间网络攻击进行建模,同时提供用于空间任务风险分析和加固的算法。我们通过在测试平台上对SATCOM基础设施实施的真实世界空间网络攻击进行案例研究,展示了其有用性。我们的结果尤其表明:(i)处理空间网络攻击的级联效应对于空间网络风险管理至关重要;(ii)该框架能够有效加固空间任务;(iii)国家标准与技术研究院(NIST)的安全控制能够有效缓解空间网络风险。

英文摘要

Space infrastructures play critical roles in modern society, including satellite communications (SATCOM). Like the Internet, space infrastructures are vulnerable to cyber attacks, or space cyber attacks, highlighting the importance of managing cyber risks to space infrastructures, or space cyber risks. However, adequately managing space cyber risks is an open problem. In this paper, we propose the first Space Cyber Risk Management (SCRM) framework to systematically analyze and mitigate space cyber risks. The framework models space infrastructures, space missions, and space cyber attacks, while offering algorithms for space mission risk analysis and hardening. We demonstrate its usefulness by conducting a case study on real-world space cyber attacks against the SATCOM infrastructure implemented in our testbed. Our results show, among other things, that: (i) dealing with space cyber attack cascading effects is essential to space cyber risk management; (ii) the framework can effectively harden space missions; (iii) National Institute of Standards and Technology (NIST) security controls can effectively mitigate space cyber risks.

论文原文

arXiv 摘要页 · PDF 原文 · HTML 原文

↑