Current Location: 首页 > Industrial control safety > Product system > Net series products
  • Industrial switch system
  • Industrial firewall system
  • Centralized safety management system
  • Industrial safety isolation network gate system
  • Industrial safety audit system
  • Industrial asset exploration and full life cycle management system
  • Video terminal security access control platform
  • Video terminal security access acquisition probe
Industrial control honeypot system
Haotian industrial control honeypot system adopts the virtual and real combination method, which can disguise and simulate various industrial control equipment and protocols in the industrial control system, and support high interactive communication of a variety of general IT protocols and common industrial control protocols。The system built-in industrial control system commonly used protocol data acquisition and analysis module,By deploying decoys and traps along the critical path of the attacker's intrusion,Luring attackers into honeynet systems that are isolated from the real network,Capture attacks against industrial control systems and obtain attack data,The traffic entering the sensing terminal is fully recorded,Analyze the packet in depth,Alarm the attack behavior。
Fast switching
Flow analysis
Dynamic forensics
Flexible networking
Functional characteristics
"High sweetness" decoy ability
Stand in the attacker's point of view, set bait, in the case of a single point of Intranet breakthrough, let the attacker away from the real asset。Intelligently learning defended networks,Automated simulation simulates business scenarios,Build diverse vulnerable environments and information that attract attackers,Luring the attacker deeper into the honeypot scenario,Expose their motives and technical means,Delay attacker time,This gives the defense a firm hold on the initiative,Improve the speed of emergency response to sudden cybersecurity incidents。
"High disposal" defense capability
The deceptive defense mode is an effective supplement to the traditional border defense means。Precise location of attack sources and detailed analysis of attack behavior make post-processing fast and efficient, especially for the defense and disposal of new infiltration attacks that have bypassed border protection and are both highly dangerous and highly concealed。
"Zero false positives" discovery capability
Honeypot endogenous trapping mechanism, any touching and entering the honeypot behavior is detailed positioning and analysis, "attack is alarm, response is disposal", achieve zero false positives。When hackers are already conducting network scanning and reconnaissance, the product can provide a large number of fake hosts and fake services to form a "shadow network", hide the original real business system, interfere with hackers' judgment of the attack target, respond quickly and obtain evidence。
"Traceability analysis" intelligence capability
Through the detection of malicious code, the virus Trojan existing in the industrial control host is found to help the management personnel of the tested unit trace the source and take security precautions in time。Highly concealed collection of the honeypot attacker's address, sample, behavior, hacker fingerprint and other information, master its detailed attack path, terminal fingerprint and behavioral characteristics, to achieve comprehensive forensics, accurate traceability。
Industrial asset exploration and full life cycle management system
Haotian Industrial asset exploration and whole life cycle management system,The method of combining passive flow analysis technology with active nondestructive exploration technology is adopted,Discover mainstream assets in the industrial network,Active asset exploration Lossless exploration using proprietary asset discovery instructions for each brand of industrial asset,Significantly reduces the pressure on industrial assets caused by active exploration。Haotian Industrial Asset exploration and full life cycle management system will also manage changes and life cycles for asset manufacturers, models, firmware versions, software lists, configurations, patches and operational data。
Active probe
Passive detection
Classification recognition
Asset tracking
Functional characteristics
High coverage asset identification
Equipment detection covers the main industrial control protocols, supports the monitoring of more than 90 industrial control protocols, can scan assets at high speed, scan a C-segment of 68 protocols within tens of seconds, the system built-in 2500+ industrial equipment fingerprint information。
Active lossless probing technique
For industrial control equipment in industrial field, using the actual communication protocol to obtain equipment characteristic information will not affect the field equipment。The asset discovery mechanism combining active and passive detection is adopted to improve the coverage and accuracy of asset identification。
Authoritative and rich vulnerability library
Fully support CVE industrial control vulnerability detection, built-in 130,000 + vulnerability rules。Support industrial control equipment vulnerabilities, industrial control system component software vulnerabilities, monitoring software vulnerabilities, OS vulnerabilities, database vulnerabilities, office software vulnerabilities, etc., can be scanned in the industrial control system for the asset risk alarm。
Asset lifecycle management
It covers the whole process of asset discovery, asset tracking, asset management and asset retirement。Help industrial enterprises dynamically track the location and use of industrial assets and equipment, and generate asset statistical reports, analyze asset data, and automatically determine asset decommissioning through scanning。
Flexible asset management
Active and passive asset management: Supports flexible asset management by setting the asset range and then detecting assets and grouping assets according to their common characteristics。

Shandong Yuntian Safety Technology Co., LTD. All rights reserved Lu ICP No. 17007379-1

Lu public network Anbei 37010202002190