摘要
随着网络技术的飞速发展,数据跨网交换变得越来越普遍。目前,数据跨网交换主要采用安全隔离交换设备,物理隔绝内部网络和外部网络,但是仍然面临数据在跨网域交换的过程中夹带敏感信息或恶意代码等安全风险。针对数据跨网交换存在的问题,对文档、图像、音频和视频等多种数据载体进行了风险分析,重点梳理了其中潜在的数据隐藏风险,并提出了基于零信任的数据清洗消毒方案,可有效阻断数据夹带行为,实现跨网数据的安全交换。
With the rapid development of network technology,cross-network data exchange is becoming increasingly common.At present,cross-network data exchange mainly uses secure isolation switching devices to physically isolate internal and external networks,but still faces security risks such as sensitive information or malicious code carried by data during cross-domain exchange.In response to the issues associated with cross-network data exchange,a risk analysis was conducted on various data carriers,including documents,images,audio,and video,with a particular focus on identifying potential data concealment risks,such as format hiding and content hiding,and proposes a data sanitization scheme based on zero-trust,which can effectively block data entrainment behaviors and achieve secure crossnetwork data exchange.
作者
张芙蓉
齐伟钢
李静
白黎阳
ZHANG Furong;QI Weigang;LI Jing;BAI Liyang(CETC Cyberspace Security Technology Co.,Ltd.,Chengdu Sichuan 610041,China)
出处
《信息安全与通信保密》
2025年第2期65-76,共12页
Information Security and Communications Privacy