Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 26
No
1

공격키워드 사전 및 TF-IDF를 적용한 침입탐지 정탐률 향상 연구 KCI 등재

김종관, 김명수

한국융합보안학회 융합보안논문지 제22권 제2호 2022.06 pp.9-19

※ 기관로그인 시 무료 이용이 가능합니다.

4,200원

최근, 디지털전환의 확대로 사이버공격의 위협에 더욱 더 노출되고 있으며, 각 기관 및 기업은 공격이 유입되는 것 을 막기 위해 시그니처 기반의 침입차단시스템을 네트워크 가장 앞단에 운영중에 있다. 그러나, 관련된 ICT시스템에 적절한 서비스를 제공하기 위해 엄격한 차단규칙을 적용할 수 없어 많은 오이벤트가 발생되고, 운영효율이 저하되고 있다. 따라서, 공격탐지 정확도 향상을 위하여 인공지능을 이용한 많은 연구과제가 수행되고 있다. 대부분의 논문은 정 해진 연구용 데이터셋을 이용하여 수행하였지만, 실제 네트워크에서는 연구용 학습데이터셋과는 다른 로그를 이용해야 만 하기 때문에 실제 시스템에서는 사용사례는 많지 않다. 본 논문에서는 실제 시스템에서 수집한 보안이벤트 로그에 대하여 주요 공격키워드를 분류하고, 주요 키워드별로 가중치를 부과, TF-IDF를 이용하여 유사도 검사를 수행후 실제 공격여부를 판단하는 기법에 대하여 제안하고자 한다.

As the expansion of digital transformation, we are more exposed to the threat of cyber attacks, and many institution or company is operating a signature-based intrusion prevention system at the forefront of the network to prevent the inflow of attacks. However, in order to provide appropriate services to the related ICT system, strict blocking rules cannot be applied, causing many false events and lowering operational efficiency. Therefore, many research projects using artificial intelligence are being performed to improve attack detection accuracy. Most researches were performed using a specific research data set which cannot be seen in real network, so it was impossible to use in the actual system. In this paper, we propose a technique for classifying major attack keywords in the security event log collected from the actual system, assigning a weight to each key keyword, and then performing a similarity check using TF-IDF to determine whether an actual attack has occurred.

3

스케줄링 기법을 이용한 능동형 통합 보안관리 시스템 개발 KCI 등재후보

김점구

한국융합보안학회 융합보안논문지 제9권 제1호 2009.03 pp.121-127

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

시스템과 네트워크의 기술 발전으로 인하여 네트워크 공격은 더욱 다양화되고 정교해지고 있 다. 최근 네트워크 공격을 탐지하고 예방하기 위해서 여러 보안 이벤트 정보를 수집하고 분석하 는 기술이 연구되어 왔다. 보안 이벤트 관리 연구는 보안 이벤트 연관성 분석 방법과 보안 이벤 트 시각적 분석 방법으로 나눌 수 있는데, 이런 분석 방법을 통하여 네트워크 위협 상황을 보다 신속하고 정확하게 분석할 수 있게 되었다. 하지만, 이런 분석 방법은 여러 공격이 동시 다발적 으로 발생했을 경우 우선적으로 처리해야 할 이벤트들을 선정하지 못하는 문제점과 네트워크 위 협 상황을 반영하지 못한다는 단점이 있다. 따라서 본 연구는 네트워크 위협 상황과 보안 이벤 트의 위험성을 고려한 보안 이벤트 우선순위 알고리즘을 제안한다. 또한, 본 알고리즘을 이용한 능동형 통합보안관리 시스템을 개발함으로써 그 효율성을 입증하였다.

The development of computer system and network technique make network attacks more various and sophisticated. Recently, Analysis technique which collects and analysis security events has been studied to detect and prevent network attacks. Study of managing security events is divided into correlation analysis methods and visual analysis methods, which contributes to analyze more quickly and completely network threat state. However, these analysis methods have shortcomings in reflecting network states and processing event priority when multiple attacks have been occurred simultaneously. In this study, we propose priority algorithm which prioritize security events considered the network threat situation and dangerous security event. Also this algorithm’s efficiency is demonstrated through developing the active enterprise security management.

4

4,200원

본 논문에서는 사용자들이 탐색하고 싶은 공격의 진행경과, 공격의 연속성, 공격과 피해간의 연관관계, 차단 우선순위와 방 어 대책 등의 문제들을 멀티 회전축과 방사축 구조를 갖는 시각화 인터페이스를 이용하여 해결하고자 한다. 이벤트의 발생 순 서, 이벤트의 주체, 이벤트의 종류로 구조화된 멀티 회전축과 개별 이벤트 주체들의 진행경과를 나타내는 객관적 시간인 방사 축을 기반으로 시계열 이벤트를 배치함으로써 보안이벤트를 효과적으로 감시 및 추적할 수 있게 한다. 제안하는 시각화 인터 페이스는 전체 공격의 추이와 진행상황, 개별 공격들의 세부 내용과 연속성, 공격자와 피해자간의 연관관계 등을 종합적으로 제공하여 공격 차단 및 방어 대책이 적용가능한 실용적인 시각화 인터페이스이다.

In this paper, we want to solve the problems that users want to search the progress of attack, continuity of attack, ass ociation between attackers and victims, blocking priority and countermeasures by using visualization interface with multi-r otational axis and radial axis structure. It is possible to effectively monitor and track security events by arranging a time series event based on a multi-rotational axis structured by an event generation order, a subject of an event, an event typ e, and an emission axis, which is an objective time indicating progress of individual events. The proposed interface is a pr actical visualization interface that can apply attack blocking and defense measures by providing the progress and progress of the whole attack, the details and continuity of individual attacks, and the relationship between attacker and victim in on e screen.

5

5,200원

국제스포츠행사 시 시민안전관리를 위한 국가 정책적 대응방안을 마련함에 있어서 안전관리 역량을 강화하기 위한 정책적 기반으로서의 민간경비제도 정립과 더불어 민간경비업계 및 관련 정부기관들 간 상호협력체제와 국제 스포츠행사의 운영상의 특성에 적합한 안전관리시스템이 구축될 필요성이 제기된다. 이를 위해 법·제도, 조직·체계, 인력·교육, 기획·예산의 4개 영역을 중심으로 3차에 걸쳐 이루어진 델파이 조 사 결과 제1차 델파이 조사에서 도출 된 28개 요인은 2차 필요성평가와 3차 적합성 평가를 통해 평균값과 내용 타당도 비율(CVR) 검증을 거쳐 국제 스포츠행사 안전관리 정책요인이 도출되었다. 본 연구의 결과를 바탕으로 국제스포츠행사 안전 관련정책의 결정과정에 있어 하나의모델이 될 수 있는 정책 전략으로 활용할 수 있을 것으로 기대된다. 즉, 본 연구를 통해제도적 개선책을 기반으로 하여, 민간경비의 전 문성이 확보될 수 있도록 정책이 마련되고, 이를 통한 국제스포츠행사의 안전관리의 효율성과 실질적인 효과 를 가져오게 된다면,사회 전반적인 안전 시스템을 개선시킬 수 있을 것이다.

The national policy response plan for public safety during international sporting events as well as policy- based management as a private security system establishedto strengthen the safety management capacity in the provision of private securityindustry and related intergovernmental organizations mutual cooperation andinternational sporting events the need for a safety management system for theoperational characteristics to be built is raised. To this end, law and institutions, organizations, systems, human resources, training,planning and four regions around the three Delphi survey of 28 factors derived fromthe first Delphi survey made over the difference between the budget and the threesecondary needs assessment this international sporting event security managementpolicy factors were derived through the mean and content validity ratio (CVR) verifiedby the difference conformity assessment. Based on the results of the present study to determine the course of internationalsporting event safety policy is expected to serve as a policy strategy that can be amodel. In other words, based on the systematic improvement of this study, theexpertise of the private security policy is established to be ensured, if the lead tosubstantial efficiency and effectiveness of safety management in international sportingevents through it, society overall safety system will be improved.

6

6,100원

본 논문은 팬더믹(Pandemic) 상황에 대응하여 변화된 전시 행사의 패러다임에 발맞추고, 사회적 거리두기 및 비대면(또는 비접촉) 보안업무를 구현할 수 있는 행사장 보안경비업무 모델을 모색하는데 목적이 있다. 이를 위해 COVID-19 상황 하에서 최근에 진행된 2020 금속산업대전의 보안경비업무 사례를 분석하였다. 사례분석결과, 이번 전시행사에서는 비대면 보안업무 수행의 핵심요소인 발열체크, 마스크 및 비닐장갑 착용, 음식물 취식 제한, 방문객의 사회적 거리두기 등을 반영하였다. 이번 행사는 성공요소와 문제점이 동시에 도출되었다. 먼저 성공요소로는 마스크, 비닐장갑, 소독제, 발열체크기, 비표 등을 적절히 활용하여 사회적 거리두기 및 비대면 보안경비를 최대한 구현함으로써 감염환자 발생을 억제하는데 성공하였다. 이에 비해 문제점으로는 보안경비원과 방문객 간의 비대면 보안업무 수행이 이루어지지 못했고, 전시장내 사회적 거리두기 통제에 한계가 있었다. 결국, 향후 적용 가능한 비대면 행사 보안경비 모델은 다음과 같은 요소를 반영하여야 한다. 첫째 출입통제 단계의 티켓팅, 신분확인 등의 절차를 비대면 시스템화하여야 한다. 둘째, 전시장내 군집 통제에 IT기술을 적용하여 비대면성을 최대한 높여야 한다.

The purpose of this paper is to find an event security guard model that can realize physical distancing and untact work in response to a pandemic situation. To this end, I analyzed the case of security guard work conducted in the KOREA 2020 METAL WEEK under COVID-19. As a result of case analysis, this exhibition event reflected the key elements of untact(non-face-to-face) security work, such as heating checks, wearing masks and disposable gloves, limiting food intake, and keeping visitors' physical distancing. In addition, the success factor and problems were simultaneously identified. First, as a success factor, we successfully suppressed the outbreak of infectious patients by realizing physical distancing and untact security guards by properly using masks, vinyl gloves, disinfectants, thermal imaging camera, and tag. On the other hand, as a problem, it was not possible to perform untact security work between security guards and visitors. In the end, untact the security guard model that can be applied in the future should reflect the following factors. First, the procedures such as ticketing and identification at the access control stage should be systemized untact. Second, it is necessary to maximize the physical distancing by applying IT technology to the control of clusters in the exhibition hall.

7

본 연구는 2018 평창동계올림픽 안전대책을 중심으로 민간안전보안 인력운영에 따른 문제점과 개선방안을 통하여 국제행사시 민간경비와 공경비의 효율적인 안전대책 구축방 안을 제시하고자 하였으며, 이 분야의 경험적인 연구기반을 마련하고 국제행사의 안전 활 동 향상에 기여하고자 하였다. 2018 평창동계올림픽 및 패럴림픽 안전보안 관계자를 대상으로 인터뷰를 실시하여 국제 행사시 문제점을 분석하고 개선방안을 제시하였다. 첫째, 안전대책을 통한 업무 수행시 법적 통제권한 부여 및 안전 활동 범위의 기준 정립 이 필요하다. 안전통제 불응시 초동대처를 위한 즉각적인 조치가 필요하며 이를 위한 관련 법령의 법안 개정이 필요하다. 둘째, 안전요원 채용시 전문성 검증 및 체계적 교육훈련 시스템 구축과 인력의 전문성 검증절차가 필요하다. 국제행사시 민간안전보안 인력을 활용하기 위해서는 실질적인 참여 에 의한 실무보안교육을 받을 수 있는 민간경비업법 개정이 이루어져야 한다. 셋째, 민간안전보안 인력의 운영을 위한 예산을 우선적으로 확보하고 민간안전보안 인 력의 근무환경 규모에 맞는 인프라 구축이 필요하다.

The purpose of this study is to propose a plan for the establishment of effective safety measures for private and public expenses in international events through the problems and improvement plans of the private security security manpower centering on the safety measures of the 2018 PyeongChang Winter Olympic Games. And to contribute to the improvement of safety activities in international events. Interviews were conducted for the 2018 PyeongChang Winter Olympic Games and Paralympic Safety Security officials to analyze the problems during the international events and suggest ways to improve them. First, it is necessary to establish the standard of scope of granting legal control and scope of safety activities when carrying out work through safety measures. Immediate measures to cope with safety control failures should be taken immediately, and amendments to the laws of relevant laws and ordinances are necessary. Second, it is necessary to verify the professionalism in the employment of security personnel, establish a systematic education and training system, and verify the professionalism of the workforce. In order to utilize private safety security personnel at international events, the private security business law should be revised to receive practical security education through practical participation. Third, it is necessary to secure a budget for the operation of private security security personnel and build an infrastructure suitable for the size of the work environment of civil security security personnel.

8

7,300원

Recently, the industry of private security needs to cope with system for specialization improvement to security business. Especially, private security will very important in various international events such as 2002 World Cup soccer game and so on. The analyses of this study have led to the following conclusions: First, the industry of private security must advance to trait by oneself. Second, it is needed that both public and private security must know about role-sharing between them on the basis of efficiency, and try to cooperate with each other for the events security. Third, it will educate and train their officials in professional techniques to events security. In addition, it should be expand to reserve manpower and for the motivation to security officials establish as minimum pay scale.

9

이 연구는 다자간 정상회의 등 국가 대규모행사시 민간경비 인력의 활용방안에 대한 연구로 대한민국의 다자간 정상회의시 경찰력의 투입을 활용한 인력운용 사례와 그에 대 비되는 민간경비 인력 활용시의 결과에 대해 비교 분석하여 민간경비의 활용 확대에 관한 효율적인 방안 제시를 목적으로 하였다. 이를 위하여 총 7차례의 다자간 정상회의간 인력운용을 분석하였고 실제로 다자정상회 의 경호임무를 위한 유관기관 협의체인 경호안전통제단의 기획조정 업무를 맡았던 실무자 의 심층면담을 통한 분석기법과 민간경비업체의 책임자의 인터뷰를 통해 민간경비 산업의 영역확장 시도에서의 한계점과 극복방안을 제시하였다. 이 연구의 결과는 다음과 같다. 첫째, 지금까지 대규모 행사시 대통령경호처는 모든 영 역에 다수의 경찰력을 동원하는 인력운용을 행하여 왔으나 추후 민간경비업체 인력의 대 체 투입으로 보다 높은 효율성을 도모할 수 있다. 둘째, 민간경비의 영역확장을 위해서는 법규 정비, 국가 정책적 지원, 대국민 인식개선 등의 노력이 필요하다. 셋째, 무엇보다도 민간경비업체 자신의 혁신을 위한 노력이 중요한데, 이를 위해서는 수준 높은 교육시스템 개선으로 자질 향상, 영세성 탈피를 위한 전문화 구축, 일시 고용인력 활용에 따른 한계점 극복 방안 마련 등의 선결과제를 제시하였다.

This study is a study on the use of private security personnel in large-scale national events such as multilateral summits. This study compares the cases of manpower management using police forces during multilateral summits in the Republic of Korea and the results of using private security personnel in contrast to them. The purpose of this study was to analyze and propose an effective plan for the expansion of the use of private security. To this end, manpower management during a total of seven multilateral summits was analyzed, and analysis techniques through in-depth interviews with working-level staff who were in charge of planning and coordination of the security and safety control group, a consultative body of related organizations for the multilateral summit security mission, and the manager of a private security company. Through an interview with , the limits and overcoming measures in the attempt to expand the scope of the private security industry were presented. The results of this study are as follows. First, the Presidential Security Service has been manpower management by mobilizing a large number of police forces in all areas for large-scale events. Second, in order to expand the scope of private security, efforts such as regulation revision, national policy support, and public awareness improvement are required. Third, above all, it is important for private security companies to make efforts to innovate themselves. To this end, prerequisites are suggested, such as improving quality by improving the high-quality education system, establishing specialization to escape smallness, and preparing measures to overcome limitations due to the use of temporary workers.

10

4,500원

11

4,000원

글로벌 IT 시장조사기관인 IDC의 조사에 따르면 국내 융합보안 시장은 2010년 기준으로 1조 7,000 억 원 규모였으며, 이 후 매년 32%씩 성장해서 2018년에는 12조 8,000 억 원 규모가 될 것으로 전망하고 있다. 이처럼 전 세계적으로 융합보안의 중 요성은 증가하고 있다. 기존의 융합보안관제 솔루션은 다양한 솔루션시스템(방화벽, 네트워크 침임 탑지 시스템 등) 및 장비들 (CCTV, Access Control System 등)로부터 수집된 데이터를 기반 하여 이벤트를 발생시키고, 이를 보안관제 요원들이 상황을 판단 및 조치하는 방식으로 구성되어 있다. 하지만 최근 IoT 산업의 발전으로 IoT 장비들의 수가 급격히 증가하고 있고, 이러 한 장비들이 보안관제에 사용될 수 있음에 따라 발생할 수 있는 이벤트의 양 역시 증가할 것이다. 물론 많은 이벤트들을 통해 보다 더 많은 상황에 대한 판단 및 조치를 할 수 있는 이점은 있지만, 반대로 너무 많은 이벤트들을 처리해야 하는 부담감 역 시 존재한다. 따라서 본 논문에서는 융합보안관제 시스템에서 발생 할 수 있는 이벤트들을 3가지 종류로 구분 짓고, 효과적으 로 이벤트들을 분류 및 처리할 수 있는 모델을 제안하여 융합보안관제 시스템의 효율성을 향상시키고자 한다.

According to a research by global IT market research institute IDC, CSIM(Converged Security Information Management) market of Korea was estimated to be 1.7 trillion KRW in 2010, and it has grown approximately 32% every year since. IDC forcasts this size to grow to 12.8 trillion KRW by 2018. Moreover, this case study exemplifies growing importance of CSIM market worldwide. Traditional CSIM solution consists of various security solutions(e.g. firewall, network intrusion detection system, etc.) and devices(e.g. CCTV, Access Control System, etc.). With this traditional solution, the the data collected from these is used to create events, which are then used by the on-site agents to determine and handle the situation. Recent development of IoT industry, however, has come with massive growth of IoT devices, and as these can be used for security command and control, it is expected that the overall amount of event created from these devices will increase as well. While massive amount of events could help determine and handle more situations, this also creates burden of having to process excessive amount of events. Therefore, in this paper, we discuss potential events that can happen in CSIM system and classify them into 3 groups, and present a model that can categorize and process these events effectively to increase overall efficieny of CSIM system.

12

4,200원

본 연구는 스포츠 이벤트 안전요원의 감정노동이 조직헌신도 및 조직유효성에 미치는 영향을 규명하는데 목적 이 있다. 본 연구를 위하여 제 28회 광주 하계유니버시아드 대회에 참여한 민간 안전요원 264명을 편의표본 추출하였 다. 자료처리방법으로 SPSS 21.0 통계프로그램을 이용하여 다중회귀분석을 실시한 결과는 다음과 같다. 첫째, 스포츠 이벤트 안전요원의 감정노동이 조직헌신도에 미치는 영향관계를 살펴보면, 감정노동의 빈도는 조직헌신도의 가치수용 및 충성심 요인에 부(-)적 영향을 미쳤으며, 주의정도와 내면행위는 조직헌신도의 가치수용, 헌신자발성 및 충성심 요 인에 정(+)적 영향을 미쳤다. 둘째, 스포츠 이벤트 안전요원의 감정노동이 조직유효성에 미치는 영향관계를 살펴보면, 감정노동의 빈도는 조직유효성의 감정적 몰입, 유지적 몰입 및 조직만족 요인에 부(-)적 영향을 미쳤다. 또한 감정적부 조화는 유지적 몰입 요인에 정(+)적 영향을 미쳤으며, 주의정도와 내면행위는 조직유효성의 모든 요인에 정(+)적 영 향을 미쳤다. 본 연구결과를 토대로 볼 때, 안전요원의 감정노동이 가중되지 않도록 직무환경의 개선과 더불어 직무특성 을 고려한 인사 및 조직관리 정책을 수립해야 할 것이다. 또한 민간 안전요원으로서의 서비스 관련된 품질교육과 예방적 심리지원 프로그램이 마련되어야 할 것이다.

The purpose of this study is to examine the consequences of sports event Security worker's awareness of emotional labor and their effects upon organizational devotions and organizational effectiveness. For this purpose, subject were engaged in safety management at the 28th Summer Universiade and were selected 264 deemed effective by convenience sampling. The methods of data analysis were including multiple regression analysis by means of SPSS win 21.0. Following conclusions could be drawn from the analyses : First, the influence of emotional labor on the organizational commitment of sport event security personnel has a negative effect on the value acceptance and loyalty of organizational commitment, The positive impact of organizational commitment, acceptance, voluntary and loyalty factors. Second, emotional labor affects emotional labor, organizational effectiveness, emotional labor, affective commitment, organizational commitment, and organizational satisfaction. In addition, emotional incongruence had a positive effect on the persistent commitment factor, and the degree of attention and internal behavior had a positive effect on all factors of organizational effectiveness. Based on the results of this study, it is necessary to establish a personnel management and organizational management policy considering job characteristics in addition to improvement of job environment so that the emotional labor of safety personnel is not increased. In addition, a quality education and preventive psychological support program related to the service as a civil security officer should be prepared.

13

국제 스포츠 이벤트 민간 안전요원의 직무전문성, 조직유효성 및 직무성과간의 관계 KCI 등재

김명호, 이명찬, 최덕환

한국스포츠학회 한국스포츠학회지 제14권 제3호 2016.09 pp.221-232

※ 기관로그인 시 무료 이용이 가능합니다.

4,300원

본 연구는 국제 스포츠 이벤트 민간 안전요원의 직무전문성, 조직유효성 및 직무성과 간의 관계를 규명하는데 목적이 있다. 본 연구를 위하여 제 28회 광주 하계유니버시아드 대회 민간 안전요원 264명을 편의표본 추출하였다. 자료 처리방법으로 SPSS 21.0과 AMOS 21.0 통계프로그램을 이용하여 구조방정식 모형 분석을 실시한 결과는 다음과 같 다. 첫째, 국제 스포츠 이벤트 민간 안전요원의 직무전문성 인식이 조직유효성에 정(+)적인 영향을 미치는 것으로 나타 났다. 둘째, 국제 스포츠 이벤트 민간 안전요원의 직무전문성 인식이 직무성과에 정(+)적인 영향을 미치는 것으로 나타 났다. 셋째, 국제 스포츠 이벤트 민간 안전요원의 조직유효성은 직무성과에 정(+)적인 영향을 미치는 것으로 나타났다. 본 연구결과를 토대로 볼 때, 민간 안전요원으로서의 전문성을 발휘하기 위해서는 다양하고 지속적인 기술과 직무능력을 향상 시킬 수 있는 직무능력프로그램의 개발과 운영이 필요하며, 합리적이고 선진적인 인적자원관리가 요구된다. 이러 한 연구결과는 향후에 개최되는 국제 스포츠 이벤트에 있어서 안전관리 직종에서의 문제점 및 정책적 대안을 마련하여 조직관리 및 인사정책, 교육훈련 프로그램 등에 다각적으로 활용할 수 있는 유용한 기초자료가 될 수 있을 것이다.

The purpose of this study is to examine the consequences of sports event security worker's awareness of job expertise and their effects upon organizational effectiveness and job performance. For this purpose, subject were engaged in safety management at the 28th Summer Universiade and were selected 264 deemed effective by convenience sampling. The methods of data analysis were including structure equation modeling analysis by means of SPSS win 21.0 and AMOS 21.0. Following conclusions could be drawn from the analyses : First, sports event security worker's awareness of job expertise was found to have positive (+) effect upon organizational effectiveness. Second, sports event security worker's awareness of job expertise turned out to exercise positive (+) influence upon job performance. Third, organizational effectiveness of sports event security worker's appeared to exercise positive (+) influence upon their job performance. It was learned from the study that it is needed to introduce the programs to enable security worker's to develop job performance and technology continuously in order for them to display their expertise and find their ego. To this end, it is also necessary to manage human resources in a reasonable and advanced manner. The results of this study, it is thought, could be used as basis for working out political alternatives to solve various problems in safety management at the sports events likely to be held in the future. Such alternatives could then serve as useful data for various fields like organization administration, personnel management as well as training and educational programs.

14

Improving Mobile Device Classification using Security Events for Preventing Wireless Intrusion SCOPUS

Hyeokchan Kwon, Sin-Hyo Kim

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.7 No.6 2013.11 pp.181-190

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

In current wireless intrusion prevention system (WIPS), the mobile devices are classified into one of three or four categories by classification algorithm for preventing wireless intrusion. But such a classification mechanism has difficulty to delicate control the wireless access of mobile device to an access point because of its simple classification. And it cannot estimate potential security threats arising from security vulnerability of mobile device itself. In this paper we improve mobile device classification for preventing wireless intrusion. In the proposed algorithm, the mobile devices are classified into nine categories. To do this we utilize the security related events of the device from the mobile device management (MDM) and authorization server.

15

보안이벤트 연관관계분석 기반의 효율적인 보안관제체계 연구

이행곤, 최상수, 송중석, 조기환

[NRF 연계] 한국지식정보기술학회 (사)한국지식정보기술학회논문지 Vol.7 No.2 2012.04 pp.49-58

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

사이버 해킹 공격이 지속적으로 증가함에 따라 보안관제를 효율적으로 수행하기 위해서는 대량의 보안이벤트 중에서 가장 핵심적인 보안이벤트들에 대해서만 집중적으로 관제해야 할 필요가 있다. 본 논문에서는 백본 네트워크에 대한 보안관제를 기반으로 기 구축・운영 중인 각종 정보보호시스템들이 제공하는 보안이벤트를 수집하고 분류하여 상호 연관관계 분석을 수행하여 실제 보안관제요원들이 모니터링해야 하는 보안이벤트의 양을 최소화할 수 있는 보안관제 체계를 제안한다. 제안된 보안관제 체계는 각급 보안관제센터 구축 시 참고자료로 활용할 수 있을 것이다.

In order to cope with recent cyber attacks more effectively, it is needed to focus on only the significant security events from a large number of the original security events triggered by the security products such as IDS, TMS, etc. In this paper, we propose an effective security monitoring scheme which is able to collect and classify the security events provided by diverse types of the security products that are already deployed on the backbone network. In addition, the proposed scheme can contribute to the reduction of the security events that the security operators have to inspect. We expect that the proposed scheme can be used for reference model of the security centers to carry out incident response.

16

터키 사회, 정치, 안보분야 사건이 주식시장에 미치는 영향과 정치적 모멘텀: 사건연구

양오석

[NRF 연계] 한국외국어대학교 중동연구소 중동연구 Vol.36 No.2 2017.10 pp.57-90

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

2016년 7월 15일 헌정 사상 다섯 번째 쿠데타를 맞이한 터키는 최근연이은 폭탄테러와 국내외 정치적 불안으로 사회 전반적인 불확실성이높아졌다는 평가를 받고 있다. 이에 터키 리라화가 달러대비 4.8%(2016 년 7월 16일 현재) 폭락하였고, 국가 신용도를 반영하는 대표적 지표인신용부도스왑(credit default swap: CDS) 스프레드가 201.42bp(7월 15 일)에서 225.05bp(7월 18일), 243.04bp(7월 19일), 256.46bp(7월 20 일)로 상승하였다.1) 그런데 흥미롭게도 2000년대 들어 계속되는 테러와3백만 명이 넘는 시리아 난민, 이라크 문제, 이슬람준거 정당들의 위상변화, 러시아 및 이스라엘과의 갈등, 쿠르드 사태, 무장세력 이슬람국가(IS)의 위협, 쿠데타 등 대내외 안보 위협에도 불구하고 터키 경제는 남유럽 재정위기 국가들과 같은 심각한 경제위기가 없고, 여전히 성장동력(모멘텀)을 지닌 것으로 평가된다(양오석, 김태중 2016a, 2017). 동일한맥락에서 이스탄불 Kadir Has 대학교 국제관계학과 교수 Unver(2016) 는 Harvard Business Review의 기고문을 통해 테러가 터키 경제에 대한심각한 위협이 되지 않는다는 자신의 견해를 강하게 피력한 바 있다. 이상과 같이 한 사회 내에서 발생하는 일련의 사건들은 금융시장에 미치는 긍정적 또는 부정적 효과가 고정된 양상을 보이지 않는다. 그 만큼해당 경제의 불확실성을 자극하는 정도도 다르다. 그렇다면 최근 터키에서 발생한 일련의 분야별 사건들은 터키 경제의 불확실성을 얼마나 설명해 줄 수 있는가? 터키 경제의 불확실성을 야기한 주요 사건은 무엇인가? 이에 대한 답을 얻고자 이 글은 최근 터키 경제의 불확실성 발생요인으로주목받고 있는 주요 사회, 정치, 안보(테러 및 외교·군사) 분야별 사건들이 터키 주식시장에 미치는 정보 효과를 고찰하고자 한다. 구체적으로는사건연구(event study) 기법을 통해 2016년을 전후로 터키에서 발생한일련의 사건들이 터키 사회의 존속이나 성장 동력 차원에서 갖는 의미를되짚어보고자 한다. 상기한 목적에 따라 본 논문은 다음과 같은 구성을 따른다. 서론에 이어 2장에서는 사건연구를 비롯하여 이론적 배경이 되는 방법론과 주요개념을 소개하였다. 이어지는 3장에서는 터키 사건연구를 위한 자료수집및 연구방법, 그리고 실증분석 결과를 제시하였다. 분석결과에서 발견된주요 사실들을 중심으로 4장에서는 터키 사회에 대한 토론 주제를 서술하였고, 마지막 5장(결론)에서는 터키 지역연구에 대한 함의와 이 글이다루지 못한 미래연구주제를 소개하였다.

This study focused on the events that cause the economic uncertainty in Turkey. Aiming at discovering the causality, this study examines the information effect of social, political, and security events on the stock market in Turkey. In practice, this study discovers whether a specific event results in the change in the cumulative average abnormal return of listed companies during January 2000 ~ July 2016 by applying the event study. The main events refer to the political events(break-up conduct of islamic parties, the victory of AKP in the general election in 2002, 2011, and 2015, enterance to Parliament of a pro-Kurdish left wing party, HDP), foreign security events(the Russian fighter’s shootdown incident in Turkey), Terrors(wild shooting in the Turkey High Court, PKK rebels near Iraq’s borders, a series of bomb terrors in Istanbul and Ankara), and military coup, etc. The research objectives are the listed companies in the stock market in Turkey, which are capable of realizing the output of the cumulative average abnormal return. The main findings are as follows. First, the political events such as the victory of AKP in the general election(the year 2002)(+) and the entrance to Parliament of a pro-Kurdish left wing party, HDP(the year 2015)(-) exert the information effect on the stock market. In contrast, the victory of AKP in the general election of the year 2011 and 2015 does not exert an effect on the stock market. In the meantime, civil terrors(-) such as wild shooting in the Turkey High Court in 2006 exert the information effect on the stock market, whilst a recent series of terrors in Istanbul and Ankara do not exert an information effect on it. Unlike this, the military coup in 15. July, 2016 exerts a negative effect on the market investors’ expectation resulting in the decrease in the cumulative average abnormal return.

17

한·터키 경제 불확실성의 영향력 분석: 충격-반응 모형

양오석

[NRF 연계] 한국이슬람학회 한국이슬람학회논총 Vol.27 No.3 2017.10 pp.111-138

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

This study focused on the events that cause the economic uncertainty in Turkey. Aiming at discovering the causality, this study examines the information effect of social, political, and security events on the stock market in Turkey. In practice, this study discovers whether a specific event results in the change in the cumulative average abnormal return of listed companies during January 2000 ~ July 2016 by applying the event study. The main events refer to the political events(break-up conduct of islamic parties, the victory of AKP in the general election in 2002, 2011, and 2015, enterance to Parliament of a pro-Kurdish left wing party, HDP), foreign security events(the Russian fighter’s shootdown incident in Turkey), Terrors(wild shooting in the Turkey High Court, PKK rebels near Iraq’s borders, a series of bomb terrors in Istanbul and Ankara), and military coup, etc. The research objectives are the listed companies in the stock market in Turkey, which are capable of realizing the output of the cumulative average abnormal return. The main findings are as follows. First, the political events such as the victory of AKP in the general election(the year 2002)(+) and the entrance to Parliament of a pro-Kurdish left wing party, HDP(the year 2015)(-) exert the information effect on the stock market. In contrast, the victory of AKP in the general election of the year 2011 and 2015 does not exert an effect on the stock market. In the meantime, civil terrors(-) such as wild shooting in the Turkey High Court in 2006 exert the information effect on the stock market, whilst a recent series of terrors in Istanbul and Ankara do not exert an information effect on it. Unlike this, the military coup in 15. July, 2016 exerts a negative effect on the market investors’ expectation resulting in the decrease in the cumulative average abnormal return.

18

빅데이터 보안이벤트 처리를 위한 NoSQL 기반 분산 처리 시스템

한효준, 강지원, 정용환, 김양우

[Kisti 연계] 한국정보처리학회 한국정보처리학회 학술대회논문집 2017 pp.90-93

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

인터넷과 클라우드 서비스 사용이 증가하면서 패킷의 양과 사이버 위협이 증가하였다. 본 논문에서는 빅데이터를 처리하기 위해 사용되는 NoSQL을 보안이벤트의 신속한 처리를 위한 침입탐지시스템에 적용하였다. 다양한 데이터 모델 유형의 NoSQL 데이터베이스 중에서 빅데이터 보안이벤트를 처리하는데 가장 적합한 시스템을 찾기 위해 세 가지 유형의 Snort 룰 기반 보안이벤트 분산 처리 프로토타입 시스템들을 구축하였고 각 시스템의 성능을 평가하였다. 그 결과로 MongoDB 기반의 보안이벤트 분산 처리 시스템이 가장 속도가 빠른 것을 확인하였다.

19

빅데이터 보안이벤트 처리를 위한 NoSQL 기반 분산 처리 시스템

한효준, 강지원, 정용환, 김양우

[Kisti 연계] 한국정보처리학회 한국정보처리학회 학술대회논문집 2017 pp.90-93

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

인터넷과 클라우드 서비스 사용이 증가하면서 패킷의 양과 사이버 위협이 증가하였다. 본 논문에서는 빅데이터를 처리하기 위해 사용되는 NoSQL을 보안이벤트의 신속한 처리를 위한 침입탐지시스템에 적용하였다. 다양한 데이터 모델 유형의 NoSQL 데이터베이스 중에서 빅데이터 보안이벤트를 처리하는데 가장 적합한 시스템을 찾기 위해 세 가지 유형의 Snort 룰 기반 보안이벤트 분산 처리 프로토타입 시스템들을 구축하였고 각 시스템의 성능을 평가하였다. 그 결과로 MongoDB 기반의 보안이벤트 분산 처리 시스템이 가장 속도가 빠른 것을 확인하였다.

20

통계적 보안이벤트 분석 기반의 글로벌 사이버위협 동향 분석

이윤수, 김미경

[NRF 연계] 한국지식정보기술학회 (사)한국지식정보기술학회논문지 Vol.7 No.2 2012.04 pp.101-111

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

사이버 해킹 공격이 지속적으로 지능화・다양화 되는 경향을 보임에 따라 효과적인 침해대응 기술 및 정보보호시스템 연구・개발을 위해서는 정확한 사이버위협 상황에 대한 분석 데이터가 반드시 필요하다. 본 논문에서는 보안관제센터를 통해 실제 네트워크 상에서 수집된 대량의 보안이벤트 정보를 활용하여 최신 글로벌 사이버위협 동향을 분석한 결과를 제시하였다. 제시한 결과는 정보보안 분야 연구자, 개발자 및 개별기관 보안담당자들이 침해대응기술 연구・개발 및 보안정책 수립 등을 위한 기초자료로 유용하게 활용될 수 있을 것이다.

Accurately analyzed data about cyber threat situation are required to research and develop of effective incident response technique and information security system, because hacking attacks are becoming more intelligent and diverse. In this paper, we analyzed global cyber threat trend by using large amounts of information security events which are collected by actual cyber security center. Analyzed results are useful to researchers, developer and security officer who develop and enhance the incident response technique or establish a security policy as a basic dataset.

 
1 2
페이지 저장