arXiv:2602.09078cs.CRcs.AI2026-02

为关键基础设施云端设备安全设计零信任集成框架

Framework for Integrating Zero Trust in Cloud-Based Endpoint Security for Critical Infrastructure

  • 提出定制化零信任架构,按需验证每次访问请求
  • 可降低攻击面并提升持续防护能力,增强合规性
  • 适合电力、医疗等高危行业云环境安全升级

网络威胁日益复杂,对关键基础设施的终端安全构成严峻挑战。零信任架构(ZTA)要求将每个访问请求视为新请求,不默认信任任何主体。电力、医疗、金融、供水及军事设施等关键系统易受黑客和钓鱼攻击。本文提出一种综合框架,将定制化的零信任架构融入管理敏感运营的组织中。该框架强调通过持续验证提升合规性,实现持续保护,并有效缩小攻击面。研究旨在填补现有在云环境中应用零信任架构于终端管理方面的空白。

原文摘要 · Abstract (English)

Cyber threats have become highly sophisticated, prompting a heightened concern for endpoint security, especially in critical infrastructure, to new heights. A security model, such as Zero Trust Architecture (ZTA), is required to overcome this challenge. ZTA treats every access request as new and assumes no implicit trust. Critical infrastructure like power plants, healthcare systems, financial systems, water supply, and military assets are especially prone to becoming targets for hackers and phishing attacks. This proposes a comprehensive framework for integrating tailored ZTA into organizations that manage sensitive operations. The paper highlights how the ZTA framework can enhance compliance, enabling continuous protection, thereby reducing attack surfaces. This paper aims to address the gap that exists in applying ZTA to endpoint management within cloud environments for critical infrastructure.

零信任云安全关键设施

Thank you to arXiv for use of its open access interoperability. PaperDance 不是 arXiv 官方产品;中文卡片由大模型生成,请以原文为准。