On this page

Distributed Ledger Enabling Trusted Traceability and Quality Gating Enhancement for Software Development Security Testing in the Power Industry

By: Kongsheng Lin 1, Xiangyu Lei 1, Heng Xia 1
1Digital Operation Center, Guangxi Power Grid Co., LTD., Nanning, Guangxi, 530000, China

Abstract

Power industry software, as a core tool for modern power equipment control and management, is facing increasingly severe cybersecurity threats. Distributed ledger technology provides new ideas for power software security detection due to its decentralization, transparency and tamper-proof characteristics. This paper discusses the application of distributed ledger technology in the security detection of software development in the electric power industry, and proposes a trusted traceability and quality access control reinforcement method based on distributed ledger. The research designs the traceability data model and smart contract system to realize the trusted collection, storage and verification of security data; at the same time, it proposes the sensitive data aggregation method based on homomorphic encryption and the tamper-proof technology of RSA asymmetric encryption, and constructs the data communication structure of Overlay structure, which guarantees the complete transmission of electric power software security detection data and traceability tracking. The experimental results show that compared with SHA256 algorithm and DyRH model, the average value of the error localization time of this method is reduced to 9.23ms, which is 8.6ms and 4.1ms less than the control group, respectively; the accuracy rate of the error localization reaches 98.33%, which is improved by 4.77% and 1.79%; and in the test of the anti-attack performance, the average number of tampered data is only 189, which is respectively reduced by 184 and 156. The study proves that distributed ledger technology can effectively enhance data credibility, strengthen traceability, and enhance the strength of system quality access control in software development security detection in the power industry, which provides a new technical path and solution for the information security of the power system.