基础软件供应链安全现状分析与对策建议  

Security Status Analysis and Countermeasures of Basic Software Supply Cha

在线阅读下载全文

作  者:张蕾 闻书韵 Zhang Lei;Wen Shuyun(China Industrial Control Systems Cyber Emergency Response Team,Beijing 100040)

机构地区:[1]国家工业信息安全发展研究中心,北京100040

出  处:《信息安全研究》2024年第8期780-784,共5页Journal of Information Security Research

摘  要:基础软件是支撑计算机系统高效稳定运行的基石,决定数字基础设施发展的水平.以操作系统、数据库、中间件为代表的基础软件产业链在整个软件产业处于上游位置,直接影响下游产出的规模和效益.由于基础软件具有研发周期长、投入大等特点,在软件供应链日益复杂的环境下,逐渐引起各国重视并上升至国家战略高度.近年来,我国基础软件产业借助开源路径提速发展的同时,发生了众多基础软件供应链安全事件,带来了风险挑战.梳理了基础软件供应链安全现状,分析基础软件供应链面临的风险挑战,并从政策、产业、用户、生态4个层面提出合理化对策建议.Basic software is the cornerstone of supporting the efficient and stable operation of computer systems,which determines the level of development of digital infrastructure.The industrial chain of basic software,represented by operating system,database and middleware,occupies an upstream position in the entire software industry,which directly determines the scale and the efficiency of the downstream output.Due to the characteristics of long R&D cycle and large R&D investment,basic software has gradually attracted attention from various countries and risen to the level of national strategy in the increasingly complex environment of software supply chain.In recent years,while China’s basic software industry has developed rapidly with the help of open source,many security incidents of basic software supply chain have occurred,which brings risks and challenges.This paper reviews the current situation of the basic software supply chain security,analyzes the risks and challenges faced by the basic software supply chain,and puts forward reasonable suggestions from four aspects:policy,industry,user and ecology.

关 键 词:基础软件 国家战略 供应链安全 风险挑战 对策建议 

分 类 号:TP311.52[自动化与计算机技术—计算机软件与理论]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象