• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

Computer Engineering & Science ›› 2020, Vol. 42 ›› Issue (09): 1563-1571.

Previous Articles     Next Articles

Application security risk assessment  of state grid edge computing

GUO Hao1,2,HE Xiao-yun1,2,SUN Xue-jie3,CHEN Hong-song3,LIU Zhou-bin4,XIE Jing5   

  1. (1.Global Energy Interconnection Research Institute Co.,Ltd.,Beijing 102209;

    2.State Grid Key Laboratory of Information & Network Security,Beijing 102209;

    3.School of Computer and Communication Engineering,University of Science and Technology Beijing,Beijing 100083;

    4.State Grid Zhejiang Province Electric Power Research Institute,Hangzhou 310014;

    5.Defense Electronics Institute,China Industrial Control System Cyber Emergency Response Team,Beijing 100040,China)
  • Received:2019-10-14 Revised:2020-04-10 Accepted:2020-09-25 Online:2020-09-25 Published:2020-09-24

Abstract: According to a series of the national cyber security level protection and risk assessment standards and the characteristics of electric power information systems, a risk assessment model for application security of state grid edge computing is proposed. Then, the vulnerability scanning tools AWVS and AppScan are used to target security vulnerability evaluation and risk assessment experiments on the open source web application target software BWAPP that integrates the latest security vulnerabilities. Finally, the fuzzy analytic hierarchy method is used to comprehensively evaluate the security of Web application security. Based on the test results of the application security, the security assessment data are compiled to realize the verification of the application security risk assessment of the state grid edge computing.


Key words: edge computing, application security, risk assessment