论文标题
使用网络情境意识预测网络攻击:独立发电商(IPP)的情况
Predicting Cyber-Attack using Cyber Situational Awareness: The Case of Independent Power Producers (IPPs)
论文作者
论文摘要
对Internetof-Things(IoT)的关键依赖性日益增加引起了安全问题;多年来,它在关键基础设施(CI)上的应用已受到巨大的网络攻击。从网络情境意识(CSA)角度了解网络安全的先前研究工作未能从人类行为的角度考虑各种网络情境意识(CSA)安全脆弱性。这项研究评估了CSA元素,以预测发电部门的网络攻击。使用调查方法从IPP收集了本研究文章的数据。通过部分最小二乘结构方程建模(PLS-SEM)采用了分析方法来评估所提出的模型。结果表明对人和网络攻击产生了负面影响,但对预测网络攻击很重要。该研究还表明,信息处理是显着的,并且会对网络攻击产生积极影响。该研究还揭示了人们与攻击,信息和攻击之间没有调解效果。这可能是由IPP实施的有效的网络安全控制造成的。最后,该研究还没有显示网络基础架构网络攻击预测的迹象。原因可能是因为IPP的经理制定了适当的访问政策和安全措施。
The increasing critical dependencies on Internetof-Things (IoT) have raised security concerns; its application on the critical infrastructures (CIs) for power generation has come under massive cyber-attack over the years. Prior research efforts to understand cybersecurity from Cyber Situational Awareness (CSA) perspective fail to critically consider the various Cyber Situational Awareness (CSA) security vulnerabilities from a human behavioural perspective in line with the CI. This study evaluates CSA elements to predict cyber-attacks in the power generation sector. Data for this research article was collected from IPPs using the survey method. The analysis method was employed through Partial Least Squares Structural Equation Modeling (PLS-SEM) to assess the proposed model. The results revealed negative effects on people and cyber-attack, but significant in predicting cyber-attacks. The study also indicated that information handling is significant and positively influences cyber-attack. The study also reveals no mediation effect between the association of People and Attack and Information and Attack. It could result from an effective cyber security control implemented by the IPPs. Finally, the study also shows no sign of network infrastructure cyber-attack predictions. The reasons could be because managers of IPPs had adequate access policies and security measures in place.