Command, Control, Communication, and Intelligence (C3I) system is a kind of system-of-system that integrates computing machines, sensors, and communication networks. C3I systems are increasingly used in critical civil and military operations for achieving information superiority, assurance, and operational efficacy. C3I systems are no exception to the traditional systems facing widespread cyber-threats. However, the sensitive nature of the application domain (e.g., military operations) of C3I systems makes their security a critical concern. For instance, a cyber-attack on military installations can have detrimental impacts on national security. Therefore, in this paper, we review the state-of-the-art on the security of C3I systems. In particular, this paper aims to identify the security vulnerabilities, attack vectors, and countermeasures for C3I systems. We used the well-known systematic literature review method to select and review 77 studies on the security of C3I systems. Our review enabled us to identify 27 vulnerabilities, 22 attack vectors, and 62 countermeasures for C3I systems. This review has also revealed several areas for future research and identified key lessons with regards to C3I systems' security.
翻译:指挥、控制、通信和情报(C3I)系统是一种整合计算机机器、传感器和通信网络的系统系统,C3I系统越来越多地用于重要的民用和军事行动,以实现信息优越性、保证性和操作效率;C3I系统并不例外于面临广泛网络威胁的传统系统;然而,C3I系统应用领域的敏感性质(例如军事行动)使其安全成为关键关注事项;例如,对军事设施进行网络攻击可能对国家安全产生有害影响;因此,在本文件中,我们审查了有关C3I系统安全的最新技术;特别是,本文件旨在查明C3I系统的安全弱点、攻击矢量和反措施;我们使用众所周知的系统文献审查方法挑选和审查关于C3I系统安全的77项研究。我们的审查使我们能够查明27项弱点、22项攻击矢量和C3I系统62项对策。本审查还揭示了未来研究的若干领域,并确定了C3I系统安全方面的关键经验教训。