论文标题
KYPO4Industry:工业控制系统网络安全的测试床
KYPO4INDUSTRY: A Testbed for Teaching Cybersecurity of Industrial Control Systems
论文作者
论文摘要
对工业控制系统和信息技术系统的网络安全有不同的要求。这一事实加剧了雇用具有相关技能的网络安全员工的全球问题。在本文中,我们介绍了Kypo4 -Industry培训设施,并为初学者和中级计算机科学专业的学生提供课程大纲,以在模拟的工业环境中学习网络安全。培训设施是使用开源硬件和软件构建的,并提供了工业控制系统的可重构模块。该课程使用动手项目的翻转教室格式:学生创建的教育游戏来复制真正的网络攻击。在整个学期中,他们学会了解风险并获得能力,以应对针对工业控制系统的网络攻击。我们从测试床的设计及其用法的设计经验可以帮助任何有兴趣教授网络物理系统网络安全的教育者。
There are different requirements on cybersecurity of industrial control systems and information technology systems. This fact exacerbates the global issue of hiring cybersecurity employees with relevant skills. In this paper, we present KYPO4INDUSTRY training facility and a course syllabus for beginner and intermediate computer science students to learn cybersecurity in a simulated industrial environment. The training facility is built using open-source hardware and software and provides reconfigurable modules of industrial control systems. The course uses a flipped classroom format with hands-on projects: the students create educational games that replicate real cyber attacks. Throughout the semester, they learn to understand the risks and gain capabilities to respond to cyber attacks that target industrial control systems. Our described experience from the design of the testbed and its usage can help any educator interested in teaching cybersecurity of cyber-physical systems.