您好,欢迎访问三七文档
当前位置:首页 > IT计算机/网络 > 网络安全 > 哈佛空间力量太空资产网络安全英文版2018736页
PAPERJULY2018CYBERSECURITYPROJECTJobOneforSpaceForce:SpaceAssetCybersecurityGregoryFalcoCyberSecurityProjectBelferCenterforScienceandInternationalAffairsHarvardKennedySchool79JFKStreetCambridge,MA02138:AsetofNanoRacksCubeSatsisdeployedfromtheInternationalSpaceStation,February25,2014.(NASA/iss038e056389)Copyright2018,PresidentandFellowsofHarvardCollegePrintedintheUnitedStatesofAmericaCYBERSECURITYPROJECTPAPERJULY2018JobOneforSpaceForce:SpaceAssetCybersecurityGregoryFalcoiiJobOneforSpaceForce:SpaceAssetCybersecurityAbouttheAuthorGregoryFalcoisaResearchFellowwiththeBelferCenter’sCyberSecurityProjectatHarvardKennedySchool.HereceivedhisPhDinCybersecu-rityfromMIT’sComputerScienceandArtificialIntelligenceLaboratory(CSAIL)andearnedhismaster’sdegreefromColumbiaUniversityandundergraduatedegreefromCornellUniversity.HeisanexpertinIndus-trialInternetofThings(IIoT)cyber-physicalsystemsecurity.HisresearchfocusesonanalyzingcyberrisktocriticalinfrastructureusingAIplan-ning,datascienceandqualitativemethods.Muchofhisworkhasfocusedonthesecurityofsmartcities’industrialcontrolsystemsusedincriticalinfrastructureincludingelectricgrids,waternetworksandtransportationsystems.HehaspioneeredthefieldofDefensiveSocialEngineering—atoolboxofnon-technicaldefensesthatemployssocialengineeringmethodsagainsthackers.GregisanAdjunctProfessoratColumbiaUniversitywhereheteachesclassesonmachinelearning,bigdataandsmartcities.HeisalsotheCo-founderandCEOofNeuroMesh,anIoTmanagedsecurityandend-pointprotectioncompanythatispilotingitstechnologywithmajorutilitiestosecuretheroutingandsmartmeteringinfrastructureoftheSmartGrid.Previously,GreghasworkedasasecurityresearcherforNASA’sJetPro-pulsionLaboratoryoncuttingedgeAI-basedriskassessmentformissioncriticalIoTandwasanexecutiveatAccenturewherehefoundedtheSmartCityStrategyDivision.HewillbeginhispostdoctoralstudiesatStanfordUniversityintheFallwherehewillteachcoursesonCyberRisk.iiiBelferCenterforScienceandInternationalAffairs|HarvardKennedySchoolTableofContentsExecutiveSummary...........................................................................1Whyarespacesystemsanattractivetarget?...............................4Whatattackshaveoccuredonthesesystems?.............................7Whyarespaceassetssovulnerabletoday?.................................10Whatisbeingdonetodaytosecurethesesystems?...................15Recommendations..........................................................................19Whatcanspaceassetorganizationsdo?......................................................19Whatcanpolicymakersdo?...........................................................................22WhatcantheDepartmentofHomelandSecuritydo?................................23Conclusion.......................................................................................26Acknowledgements.............................................................................................27CoverImageAsetofNanoRacksCubeSatsisdeployedfromtheInternationalSpaceStation,February25,2014.(NASA/iss038e056389)1BelferCenterforScienceandInternationalAffairs|HarvardKennedySchoolExecutiveSummaryWhenwethinkaboutcriticalinfrastructure,thefirstassetsthatcometomindincludetheelectricgrid,waternetworksandtransportationsystems.Furtherunpackingthedefinitionofcriticalinfrastructure,weconsiderindustriessuchasagriculture,defenseorthefinancialsector.However,werarelythinkaboutwheretheunderlyingsystemsthatenabletechnologyfunctionalityacrossthesesectorsphysicallyreside,whodevelopedthetechnology,andwhocanaccessandmanagethattechnology.MuchoftheUnitedStates’criticalinfrastructurereliesonspacesys-tems.Idefinespacesystemsasassetsthateitherexistinsuborbitalorouterspaceorgroundcontrolsystems—includinglaunchfacilitiesfortheseassets.Spaceassetorganizationsareorganizationsthatbuild,operate,maintainorownspacesystems.Someexamplesofcriticalinfrastructure’srelianceonspacesystemsareagribusiness’relianceonweatherandclimatesatellites,theU.S.military’srelianceonintel-ligencesatellites,andvarioustransportationindustries’relianceonglobalpositioningsystem(GPS)satellites.Severalcriticalinfrastruc-turesectorsalsorelyonspacesystemsforglobalcommunications.Wealsorelyonspacesystemsforscientificdiscovery,whichoftenrequireshighlyspecializedandadvancedequipment.Suchequipmentoriginallydesignedforscientificdiscoveryislaterusedincriticalinfrastructuresectorsuponfurthertestingandcommercializationoftheintellectualproperty.DespiteeffortstoimprovethecybersecurityofcriticalinfrastructureintheU.S.,therehasbeenlittlefocusoncybersecurityforspacesys-tems.Whilesecuritystandardsforcriticalinfrastructureareoftentechnicallysufficienttodetermanyattacks,theyremainachallengetoimplementduetotimeandresourceconstraints.1Spacesystems,how-ever,aremorecomplexthancri
本文标题:哈佛空间力量太空资产网络安全英文版2018736页
链接地址:https://www.777doc.com/doc-6811272 .html