信息安全研究 ›› 2024, Vol. 10 ›› Issue (6): 561-.

• 技术应用 • 上一篇    下一篇

大型体育赛事网络安全威胁及保障策略研究

王杰1朱魏魏2刘明1王鹏翩1林星辰1   

  1. 1(国家计算机网络应急技术处理协调中心北京100080)
    2(国家计算机网络应急技术处理协调中心四川分中心成都610031)
  • 出版日期:2024-06-06 发布日期:2024-06-08
  • 通讯作者: 王杰 硕士,工程师.主要研究方向为网络安全攻防、逆向工程. wangjie@cert.org.cn
  • 作者简介:王杰 硕士,工程师.主要研究方向为网络安全攻防、逆向工程. wangjie@cert.org.cn 朱魏魏 硕士,高级工程师.主要研究方向为网络安全攻防. zhuww@cert.org.cn 刘明 博士,高级工程师.主要研究方向为网络安全攻防、网络和数据安全. lium@cert.org.cn 王鹏翩 博士,高级工程师.主要研究方向为网络安全风险评估、入侵检测及防范. wangpengpian@cert.org.cn 林星辰 硕士,高级工程师.主要研究方向为数据安全和网络安全、关键信息基础设施防护、ICT供应链安全. linxc@cert.org.cn

Research on Cyber Security Threats and Assurance Strategies for  Largescale Sports Events

Wang Jie1, Zhu Weiwei2, Liu Ming1, Wang Pengpian1, and Lin Xingchen1   

  1. 1(National Computer Network Emergency Response Technical TeamCoordination Center of China, Beijing 100080)
    2(Sichuan Branch of National Computer Network Emergency Response Technical TeamCoordination Center of China, Chengdu 610031)
  • Online:2024-06-06 Published:2024-06-08

摘要: 大型体育赛事规模大、涉及面广、影响力强、信息化程度高,已成为网络攻击的重要目标.对体育赛事的网络攻击呈现攻击目标精准化、攻击团队产业化、攻击规模巨量化等特点.根据大型体育赛事信息化业务特性,将信息系统、场馆、用户群体和供应链作为攻击面,分析网络攻击的动机、目标、类型、能力等特征,将体育赛事和网络攻击动机、目标、方式结合构建出威胁场景,针对性提出赛前、赛时和赛后保障策略,有效防范和阻止网络攻击,对赛事各相关方具有重要意义.

关键词: 大型体育赛事, 脆弱性分析, 威胁场景分析, 安全保障, 安全防护体系

Abstract: Largescale sports events have become important targets for cyber attacks due to their large scale, wide coverage, strong influence, and high level of informatization. Cyber attacks on sports events exhibit characteristics such as precise attack targets, industrialization of attack teams, and massive attack scale.Based on the characteristics of largescale sports event informatization business, this article takes information systems, venues, user groups, and supply chains as attack surfaces, analyzes the motivations, targets, types, capabilities, and other characteristics of cyber attacks, and combines sports events and cyber attack motivations, targets, and methods to construct threat scenarios. Targeted prematch, duringgame, and postgame support strategies are proposed to effectively prevent and prevent cyber attacks. Which is of great significance to all parties involved in the event.

Key words: large-scale sports, vulnerability analysis, threats scenario analysis, security grarantee, security protection systems

中图分类号: