Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 108
No
1

6,300원

본 연구에서는 미국의 재난대응표준체계인 ICS1)와 이를 반영한 해양경찰의 방제 대응 매뉴얼을 살펴보고, 2016년 만리포 해수욕장에서 발생한 태화12호 기름유출사고 의 대응과정을 분석하여 다음과 같은 시사점을 도출하였다. 해양경찰의 효과적인 방제대응체계를 구축하기 위해서는 첫째, 안전담당관의 직급 을 상향하여 투입되는 방제인력 및 일반인의 안전을 확보하여야 한다. 둘째, 유관기 관을 효과적으로 통제ㆍ조정할 수 있도록 해양경찰 신분의 연락관을 지정하여 연락 업무에 전념할 수 있도록 하여야 한다. 셋째, 지속적인 반복 훈련을 통하여 모든 방 제 참여자가 담당 업무를 숙지하도록 할 필요가 있다. 방제분야를 중심으로 개발된 미국의 ICS 체계는 미국 해안경비대에서도 다양한 해양 재난 분야에서 효과적으로 활용되고 있는 만큼, 해양경찰의 인명 구조 등의 다 양한 해양재난에 확대 적용할 수 있도록 연구가 필요하다.

In this paper, we have reviewed both an Incident Command System (ICS) which is a standardized on-scene incident management paper of USA and a Maritime Pollution Prevention Manual of Korea Coast Guard was referred to ICS of USA. During the reviewing process, we have successfully made multiple key discoveries from the analysis of oil spill incident incurred by the Taehwa 12 in the Malipo Beach. To effectively build Maritime Pollution Prevention System, the Korea Coast Guard needs to 1) place advancement of Safety Officer's rank to ascertain safety of activated resources, 2) assign Liaison Officer coming from the Korea Coast Guard in order to matter controlling and coordinating affiliated organizations, 3) conduct training in a repetitive way. So, every personnel will be familiar with individual assignments in ICS. Even though ICS was primarily conceived to facilitate in-land disaster response purposes in USA. The system has been effectively applied for various maritime disasters by the US Coast Guard. For further application to rescue operation, the Korea Coast Guard needs to seek consolidated research programs.

2

ICS malware Triton attack and countermeasures.

Jin-woo Myung, Sunghyuck Hong

ASCONS IJEMR VOLUME 3 Number 2 2019.06 pp.13-17

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

Triton is the world’s most serious malware and it’s now spreading by all over the networks. The hackers has deployed malicious code or malware which let them take over the plant’s safety instrumented systems. These physical controllers and their associated software codes are the last line of defense against life-threatening crisis. Many factories now perform automated processes using computers. However, in 2017 an attack aimed at this emerged. We have detected that a malicious program is installed in the emergency safety device. All of the automation equipment used in these industrial sites is called ICS, and Triton is one of the malicious codes targeting these ICSs. After the hacker sets up the target, the attacker uses a secure shell (SSH) based tunnel to deliver the attack tool and execute remote commands of the program after accessing the IT and OT networks, installing back doors in the computer network, and then accessing the target safety instrumentation system (SIS) controller in the OT network while scouting the network, moving the internal network, and maintaining access. Therefore, we proposed ICS malware for countermeasure to prevent from Triton attack.

3

공격 트리를 이용한 산업 제어 시스템 보안 위험 분석 KCI 등재후보

김경아, 이대성, 김귀남

한국융합보안학회 융합보안논문지 제11권 제6호 2011.12 pp.53-58

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

산업 현장에서 일반 컴퓨터와 윈도우 운영체계를 사용하여 생산 시스템을 제어 하게 되면서, 산업 시설에 대한 사이버 보안 위협이 심각한 문제로 대두 되고 있다. 네트워크와 연결된 산업 제어 시스템은 우리가 일상적으로 사용하는 PC나 기업의 정보 시스템에서 문제시 되던 악성코드의 공격에 노출되었다. 특히 컴퓨터 웜인 스턱스넷은 가스 수송관이나 발전소 같은 특정 산업 제어 시스템을 표적으로 하며, 이론상 물리적 타격도 가능하다. 본 논문에서는 산업 제어 시스템 구성 요소와 SCADA의 사이버 보안 위협을 살펴본 후, SCADA 보안 취약점을 조기에 파악하고 평가하여 가능한 사이버 공격을 사전에 대처할 수 있는 위험 분석 방법으로 공격 트리 분석을 고찰한다.

There is increasing use of common commercial operation system and standard PCs to control industrial production systems, and cyber security threat for industrial facilities have emerged as a serious problem. Now these network connected ICS(Industrial Control Systems) stand vulnerable to the same threats that the enterprise information systems have faced and they are exposed to malicious attacks. In particular Stuxnet is a computer worm targeting a specific industrial control system, such as a gas pipeline or power plant and in theory, being able to cause physical damage. In this paper we present an overview of the general configuration and cyber security threats of a SCADA and investigate the attack tree analysis to identify and assess security vulnerabilities in SCADA for the purpose of response to cyber attacks in advance.

4

산업제어시스템에 대한 고도화된 Kill Chain 공격 기법 연구 KCI 등재

엄익채, 신동혁, 김가영, 이상준

한국EA학회 정보화연구 제17권 4호 2020.12 pp.331-342

※ 기관로그인 시 무료 이용이 가능합니다.

4,300원

산업제어시스템은 일반적으로 IT 시스템과 분리된 폐쇄망으로 운영되며 제어망 네트워크 통신 을 위한 전용 프로토콜을 사용해 왔다. 그러나 정보통신 기술의 발달로 개방형 프로토콜 환경으로 변 화하고 있다. 또한, 다양한 ICT 환경과 연계되어 상호 의존적 시스템을 구성하면서 제어망은 내부자 위협을 포함하여 침투 경로가 다양해졌다. 특히 에너지 분야와 같은 기반시설에 대한 사이버 위협은 사회적으로나 경제적으로나 큰 손실을 발생시킬 수 있다. 따라서 공격이 발생하기 이전에 방어 전략 을 수립해야 하며, 공격에 대해 효과적인 대응 체계를 구축해야 한다. 본 연구에서는 OT의 다양한 산 업 중 에너지 분야에 대해 1년간 발생했던 침해 사례를 중심으로 보안 취약점을 분석한다. 또한, MITRE ATT&CK 프레임워크를 활용하여 공격자의 침투 전략 및 공격 기술을 분석하여 제어시스템 에 잠재적인 영향을 미칠 수 있는 위험을 식별하고 대응 전략을 제시한다.

Industrial control systems are generally operated as a closed network separated from the IT system and have used a dedicated protocol for control network communication. However, with the development of information and communication technology, it is changing to an open protocol environment. In addition, as the system is interdependent in connection with various ICT environments, the control network has diversified penetration routes including insider threats. In particular, cyber threats to infrastructure such as the energy sector can cause great losses both socially and economically. Therefore, it is necessary to establish a defense strategy before an attack occurs, and an effective response system to the attack must be established. This study analyzes security vulnerabilities based on cases of infringements that have occurred for one year in the energy field among various industries of OT. In addition, by using the MITER ATT&CK framework, the attacker's intrusion strategy and attack technology are analyzed to identify risks that may have a potential impact on the control system and propose a countermeasure strategy.

7

재난현장 지휘체계의 유기적 연계를 위한 표준대응체계 구축 KCI 등재

윤용선, Sang Won Bae, 임상규

위기관리 이론과 실천 한국위기관리논집 제12권 제12호 2016.12 pp.37-46

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

재난 발생 시 재난관리 주체 간 원활하고 유기적인 연계를 이루는 것은 재난대응에서 무엇보다 중요하다. 그러나 재난의 유형별로 재난관리 주관기관이 존재하는 우리나라의 현실에서 협력적 재난대응이 이루어지기에 많은 한계점이 있다. 표준화된 재난대응절차는 통합적 재난관리체계를 구축하고 운영하는데 있어 중요한 요인이기 때문이다. 본 연구는 이러한 한계점을 개선하기 위해 국내 주요 재난관리 주관기관의 재난대응체계와 미국 현장지휘체계의 조직과 기능을 비교ㆍ분석하고 표준화된 재난현장 대응체계를 정책적 대안으로 제시하였다. 한국형통합 현장 지휘체계를 제시하기 위해 소방,해경, 경찰, 군, 지자체의 재난대응조직을 비교분석하였다. 이를 통해 명칭은 상이하지만, 기능이 유사한 조직들을 통합하여 표준화 방안을 마련하였다. 표준현장지휘체계 내 주요 기능은 공보, 연락, 상황총괄, 현장대응, 자원지원, 대민지원 등으로 구성하였다.

It is most critical to secure organic linkage and cooperation among disaster-related organizations for successful disaster management. However, cooperative disaster management has been limited in Korea because different organizations take roles and responsibilities for different types of disasters according to the Framework Act on the Management of Disasters and Safety. Standardized disaster response procedures are key success factors to build and operate the integrated disaster management system. For this reason this study suggests a standardized on-scene disaster response systems the policy alternative, by analyzing and comparing the major disaster on-scene response systems(Central & Local governments, Fire fighters, Coast guard, and Army etc) in Korea with the Incident Command System (ICS) in United States. In addition, it suggests the core functions of on-scene disaster management system in Korea.

8

제어시스템 보안위협 및 대응방안 연구 KCI 등재후보

김신규, 민병길, 장문수, 서정택

한국융합보안학회 융합보안논문지 제9권 제1호 2009.03 pp.105-111

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

제어시스템은 에너지, 교통, 수자원 등의 운영을 제어하는 국가기반시설로 사고 발생시 국가적 재앙수준의 피해를 유발시킨다. 현대 전쟁에는 사이버전이 동반 수행되고 있으며 제어시스템은 제일의 목표일 가능성이 높다. 또한, 테러리스트들의 공격 목표대상이기도 하다. 이렇게 제어시 스템에 대한 사이버 테러 가능성이 높아지고 있으나 제어시스템은 점점 외부에 노출되고 있다. 이는 효율적인 제어시스템 운용을 위해 제어시스템의 실시간 정보를 외부에 전달하기 시작했기 때문이다. 본 논문에서는 국가 중추신경이라 할 수 있는 제어시스템에 대해 발생할 수 있는 보 안위협과 시나리오 및 대응방안에 대해 설명한다.

ICS(Industrial Control System) is national critical infrastructure. That controls energy, transportation, water and so on. If ICS is Attacked by terrorists or enemy nations, Nation has been critically damaged. Today, the cyber war belongs to the general war. So, Critical infrastructure is a first target to terrorist or enemy nation for Cyber war. But, There are many security threats in ICS, because ICS connects to intranet or internet. In this paper, We discuss cyber security threats and scenarios in ICS. And, We propose cyber security measures in ICS.

9

해상 NB-IoT 서비스를 위한 ICS RF 중계기

조신호, 이성렬

[Kisti 연계] 한국항행학회 한국항행학회논문지 Vol.25 No.5 2021 pp.390-396

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

본 연구에서는 해양수산부가 2016년 실행 계획을 발표한 전자어구 실명제를 실현할 수 있는 어구 자동식별 모니터링 시스템에서 통신 거리를 늘릴 수 있는 해상 중계기 설계와 제작에 대해 보고한다. 해상 중계기는 중계기를 구성하는 서비스 안테나와 링크 안테나 사이의 되먹임 신호에 의한 발진을 제거할 수 있는 ICS (interference cancellation system) 방식의 RF 중계기로 설계 제작하였다. ICS RF 중계기 설계에 있어 링크 안테나와 서비스 안테나 간 이격을 30 dB 확보하였다. 시험을 통한 검증 결과 ICS RF 중계기의 출력 신호 일부가 입력으로 되먹임되는 신호 레벨이 중계기 이득보다 15 dB 이상 낮을 때 발진에 의해 발생하는 EVM(error vector magnitude)이 성능 기준인 6%보다 낮게 얻어지는 것을 확인하였다. 본 연구를 통해 개발된 ICS RF 중계기를 어구 자동식별 모니터링 시스템 등의 해상 IoT 네트워크에 적용하면 서비스 영역이 늘어날 것으로 기대된다.

In this research, design and fabrication of marine repeater capable to extend communication coverage in monitoring system of fishing gear automatic identification, which is one of implementation method of the real-name electric fishing gear system declared by Ministry of Oceans and Fisheries in 2016, is reported. The proposed marine repeater is fabricated in a form of RF repeater with interference cancellation system (ICS), which can cancel the oscillation due to feedback signal between service antenna and link antenna. In design process, we secure the isolation of 30 dB between service antenna and link antenna. It is confirmed that when the level of feedback signal into repeater input be lower of 15 dB than repeater gain, error vector magnitude due to oscillation can be lower than the performance criterion of 6%, from the test verification. It is expected that the service coverage will be extended by applying the developed marine ICS RF repeater into marine IoT network including monitoring system of fishing gear automatic identification.

10

Bringing 3D ICs to Aerospace: Needs for Design Tools and Methodologies

Lim, Sung Kyu

[Kisti 연계] 한국정보통신학회 Journal of information and communication convergence engineering Vol.15 No.2 2017 pp.117-122

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

Three-dimensional integrated circuits (3D ICs), starting with memory cubes, have entered the mainstream recently. The benefits many predicted in the past are indeed delivered, including higher memory bandwidth, smaller form factor, and lower energy. However, 3D ICs have yet to find their deployment in aerospace applications. In this paper we first present key design tools and methodologies for high performance, low power, and reliable 3D ICs that mainly target terrestrial applications. Next, we discuss research needs to extend their capabilities to ensure reliable operations under the harsh space environments. We first present a design methodology that performs fine-grained partitioning of functional modules in 3D ICs for power reduction. Next, we discuss our multi-physics reliability analysis tool that identifies thermal and mechanical reliability trouble spots in the given 3D IC layouts. Our tools will help aerospace electronics designers to improve the reliability of these 3D IC components while not degrading their energy benefits.

11

산업제어시스템(ICS) 암호모듈 적용방안 연구

석병진, 김역, 이창훈

[Kisti 연계] 한국디지털콘텐츠학회 디지털콘텐츠학회 논문지 Vol.18 No.5 2017 pp.1001-1008

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

산업제어시스템에 대한 사이버공격은 막대한 금전적 손실이나 인명피해로 이어질 수 있어 산업제어시스템 사이버보안에 대한 표준화 및 연구가 활발히 진행되고 있다. 이와 관련된 제도로 사회기반시설의 산업제어시스템은 전자정부법에 따라 검증필한 암호모듈을 탑재해야 하며 산업제어시스템의 보안요구사항에 맞는 적절한 보안통제가 실시되어야 한다. 그러나 운영계층, 제어계층, 현장장치 계층으로 구성되는 산업제어시스템은 보안통제 실시로 인해 각 계층별로 주요기능 수행에 문제가 발생할 수 있다. 본 논문에서는 이러한 문제 해결을 위해 산업제어시스템의 각 계층에 요구되는 보안요구사항에 대한 보안통제 수행에서 확인해야할 사항과 적절한 적용방안을 제시한다.

Because cyber attacks on industrial control systems can lead to massive financial loss or loss of lives, the standardization and the research on cyber security of industrial control systems are actively under way. As a related system, the industrial control system of social infrastructures must be equipped with the verified cryptographic module according to the e-government law and appropriate security control should be implemented in accordance with the security requirements of the industrial control system. However, the industrial control system consisting of the operation layer, the control layer, and the field device layer may cause a problem in performing the main function in each layer due to the security control implementation. In this paper, we propose things to check when performing security control in accordance with the security control requirements for each layer of the industrial control system and proper application.

12

Inductive Switching Noise Suppression Technique for Mixed-Signal ICs Using Standard CMOS Digital Technology

Im, Hyungjin, Kim, Ki Hyuk

[Kisti 연계] 한국정보통신학회 Journal of information and communication convergence engineering Vol.14 No.4 2016 pp.268-271

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

An efficient inductive switching noise suppression technique for mixed-signal integrated circuits (ICs) using standard CMOS digital technology is proposed. The proposed design technique uses a parallel RC circuit, which provides a damping path for the switching noise. The proposed design technique is used for designing a mixed-signal circuit composed of a ring oscillator, a digital output buffer, and an analog noise sensor node for $0.13-{\mu}m$ CMOS digital IC technology. Simulation results show a 47% reduction in the on-chip inductive switching noise coupling from the noisy digital to the analog blocks in the same substrate without an additional propagation delay. The increased power consumption due to the damping resistor is only 67% of that of the conventional source damping technique. This design can be widely used for any kind of analog and high frequency digital mixed-signal circuits in CMOS technology

13

Machine Learning Based Variation Modeling and Optimization for 3D ICs

Samal, Sandeep Kumar, Chen, Guoqing, Lim, Sung Kyu

[Kisti 연계] 한국정보통신학회 Journal of information and communication convergence engineering Vol.14 No.4 2016 pp.258-267

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

Three-dimensional integrated circuits (3D ICs) experience die-to-die variations in addition to the already challenging within-die variations. This adds an additional design complexity and makes variation estimation and full-chip optimization even more challenging. In this paper, we show that the industry standard on-chip variation (AOCV) tables cannot be applied directly to 3D paths that are spanning multiple dies. We develop a new machine learning-based model and methodology for an accurate variation estimation of logic paths in 3D designs. Our model makes use of key parameters extracted from existing GDSII 3D IC design and sign-off simulation database. Thus, it requires no runtime overhead when compared to AOCV analysis while achieving an average accuracy of 90% in variation evaluation. By using our model in a full-chip variation-aware 3D IC physical design flow, we obtain up to 16% improvement in critical path delay under variations, which is verified with detailed Monte Carlo simulations.

14

Design Challenges and Solutions for Ultra-High-Density Monolithic 3D ICs

Panth, Shreepad, Samal, Sandeep, Yu, Yun Seop, Lim, Sung Kyu

[Kisti 연계] 한국정보통신학회 Journal of information and communication convergence engineering Vol.12 No.3 2014 pp.186-192

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

Monolithic three-dimensional integrated chips (3D ICs) are an emerging technology that offers an integration density that is some orders of magnitude higher than the conventional through-silicon-via (TSV)-based 3D ICs. This is due to a sequential integration process that enables extremely small monolithic inter-tier vias (MIVs). For a monolithic 3D memory, we first explore the static random-access memory (SRAM) design. Next, for digital logic, we explore several design styles. The first is transistor-level, which is a design style unique to monolithic 3D ICs that are enabled by the ultra-high-density of MIVs. We also explore gate-level and block-level design styles, which are available for TSV-based 3D ICs. For each of these design styles, we present techniques to obtain the graphic database system (GDS) layouts, and perform a signoff-quality performance and power analysis. We also discuss various challenges facing monolithic 3D ICs, such as achieving 50% footprint reduction over two-dimensional (2D) ICs, routing congestion, power delivery network design, and thermal issues. Finally, we present design techniques to overcome these challenges.

15

Die-to-Die Parasitic Extraction Targeting Face-to-Face Bonded 3D ICs

Song, Taigon, Lim, Sung Kyu

[Kisti 연계] 한국정보통신학회 Journal of information and communication convergence engineering Vol.13 No.3 2015 pp.172-179

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

Face-to-face (F2F) bonding in three-dimensional integrated circuits (3D ICs), compared with other bonding styles, is closer to commercialization because of its benefits in terms of density, yield, and cost. However, despite the benefits that F2F bonding expect to provide, it's physical nature has not been studied thoroughly. In this study, we, for the first time, extract cross-die (inter-die) parasitic elements from F2F bonds on the full-chip scale and compare them with the intra-die elements. This allows us to demonstrate the significant impact of field sharing across dies in F2F bonding on full-chip noise and critical path delay values. The baseline method used is the die-by-die method, where the parasitic elements of individual dies are extracted separately and the cross-die parasitic elements are ignored. Compared with this inaccurate method, which was the only method available until now, our first-of-its-kind holistic method corrects the delay error by 25.48% and the noise error by 175%.

16

ICS에서 이상 징후 탐지를 위한 DBSCAN 기반 다중 초구 Deep SVDD KCI 등재

전원준, 기한결, 하재철

국제차세대융합기술학회 차세대융합기술학회논문지 제10권 5호 2026.05 pp.1240-1249

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

산업제어시스템(Industrial Control System, ICS)은 정보 기술과의 융합으로 운영 효율성이 향상되었으나, 공격 표면 확대라는 부작용이 발생하였다. 이에 대응하기 위해 머신러닝·딥러닝 기반 이상 탐지가 활용되고 있다. 그러나, ICS 네트워크의 정상 트래픽은 운영 조건에 따라 통계적 특성이 달라 하나의 초구(sphere)로 충분히 응집되지 않을 수 있으며, 이로 인해 특정 조건에 편향되거나 경계가 과도하게 완화되어 오탐이 증가할 수 있다. 본 논문은 이러한 문제를 완화하기 위해 정상 데이터를 밀도 기반 군집화 기법인 DBSCAN으로 군집화한 뒤, 군집별 중심과 반경으로 다중 초구(multi-sphere)를 구성하는 Deep SVDD(Support Vector Data Description) 기반 이상 징후 탐지 기법을 제안한다. 두 개의 ICS 네트워크 데이터셋을 활용하여 이상 징후 탐지를 수행한 결과, 제안 방식이 기존 단일 초구 Deep SVDD와 비교하여 F1-score 기준 5.74%∼15.17%의 성능을 향상시킬 수 있음을 확인하였다.

Industrial Control Systems (ICS) have improved operational efficiency through integration with information technology, but this integration has also increased the attack surface. Machine learning and deep learning-based anomaly detection has been widely used to address this issue. However, normal ICS network traffic varies by operating conditions and may not be sufficiently clustered into a single sphere, which can make the model biased or force the boundary to be overly relaxed, increasing false positives. In this paper, we use DBSCAN, a density-based clustering method, to cluster normal data and build a Deep SVDD (Support Vector Data Description)-based method by constructing multiple spheres from each cluster’s center and radius. Experiments on two ICS network datasets show that the proposed method improves the F1-score by about 5.74% to 15.17% compared with the single-sphere Deep SVDD.

17

ICS 중계기를 활용한 군 이동통신 간섭제거 및 통달거리 연장방안 연구 KCI 등재후보

오인복, 오혁준, 오정일, 김두현

한국방위산업학회 한국방위산업학회지 제20권 제2호 2013.12 pp.1-12

※ 기관로그인 시 무료 이용이 가능합니다.

4,300원

The tactical mobile communication system currently provides mobile communication through the MASP and SRE radio waves, but the operational areas are shaded by canyons, roads, and mountainous terrain. The ICS wireless repeater will remove most of the shaded areas by selecting the best operating frequency and providing a self-repeating solution. Finally, it will help achieve the best operation effectiveness of the tactical information communication network, and the optimal command control capability.

18

소형 모듈 원자로는 300MWe 이하의 전력을 생산하는 원자력 발전 시스템으로, 최근 전 세계 여러 국가에서 개발 중에 있다. 소형 모듈 원자로는 부품의 개수가 적고 주요기기를 모듈화하여 제작한 후 현장에서 조립할 수 있다는 특징을 가지고 있어, 부지의 제약을 최소화한다. 이러한 특성은 소형 모듈 원자로를 원격지에 설치 가능하게 하여 유연성을 높였으나, 외지에 설치된 소형 모듈 원자로의 운영 및 관리를 어렵게 만들었다. 이러한 문제를 해결하기 위해 현재 다수의 소형 모듈 원자로가 원격 접속 을 통한 원격 감시와 원격 운전이 가능하도록 설계되고 있으나, 원격 접속 취약점을 통한 사이버공격 발생 가능성도 증가시키고 있다. 따라서 본 논문에서는 원격 접속 취약점을 통한 산업제어시스템 대상 사이버공격 사례를 분석함으로써, 소형 모듈 원자로의 보안 설계 요구사항으로 네트워크 방화벽, 강화 된 인증 메커니즘, 암호화 통신, 이상 징후 탐지를 도출한다. 도출된 보안 설계 요구사항을 적용하여 소형 모듈 원자로 개발시 소형 모듈 원자로의 안전성이 향상될 것으로 기대된다.

19

4,000원

최근 산업제어시스템을 대상으로 하는 사이버 공격 사례가 증가하고 있고, 우크라이나 정전사태와 같은 직접적 피해가 발생하기도 하였다. 이러한 상황에서 다양한 보안대책이 고 려되어야 하지만 가장 기본적으로 산업제어시스템 내 통신 프 로토콜의 보안 기능에 대한 검토가 필요하다. 산업제어시스템 의 통신 프로토콜은 보안 기능이 고려되지 않고 설계되어 사 용되고 있다. 이로 인해 산업제어시스템의 네트워크 트래픽을 분석하면 손쉽게 잘못된 데이터를 주입하는 것이 가능하다. 이에 IEEE, IEC 등의 표준화 단체에서는 DNP, IEC61850, OPC UA 등의 주요 산업용 프로토콜에 대한 통신보안 규격을 개발하였다. 본 고에서는 IEEE 1815, IEC62351, IEC62443 등에서 제시되고 있는 산업용 프로토콜에 대한 통신보안 기술 의 현황에 대해서 알아보고자 한다.

 
1 2 3 4 5
페이지 저장