Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 22
No
1

5,400원

The overall feeling of security decreases depression negatively and increases subjective well-being positively. As artificial intelligence (AI) advances, significant changes in information technology (IT) give rise to various health-related concerns among individuals, such as the overall feeling of security, due to the radical impact. To address this concern, the Protection Motivation Theory is applied. Data from 185 valid respondents were gathered and analyzed using PLS analysis. The results indicate that job stability, optimism towards AI, and innovativeness of AI significantly and positively influence individuals’ overall feeling of security. However, the impact of job displacement by AI, fear of AI, and self-efficacy of AI on this sense of security was found insignificant. Notably, having a background in information technology negatively impacted individuals’ overall feeling of security. Finally, the protection motivation and psychological health present partially different patterns across genders. The results show that people tend to feel secure when they perceive job stability. However, the impact of being optimistic and innovative of AI differs across genders. These findings underscore the vital importance of AI implementation in the transformation of gender-technology relations. This offers valuable insights for governments’ managing people's psychological health and balancing gender-technology relations amidst profound changes driven by AI.

2

6,400원

이 연구의 목적은 국가위기관리 관점의 군사적 도발·테러·범죄 등을 통해 갈수록 심 각해지고 있는 드론 시큐리티 위협에 대한 범부처 차원의 역량강화를 위해 현행 법령 상의 주요 한계점 등 쟁점의 비판적 검토를 통한 개정 및 정비 소요를 제시하고자 한 다. 연구방법은 문헌연구 방법을 적용하여 항공안전법 등10개의 관련 법령들의 일반론 적인 주요 내용과 해당 조문 중심으로 비판적 검토를 통해 개정방향을 도출하였다. 이 러한 배경 하에 법령 개정의 중점은 3가지 측면에서 살펴보았는데, 먼저 드론 안전관리 와 관련된 등록·사용 측면, 둘째 드론 범죄 관련 개인적·사회적·군사상 법익침해 측면, 셋째 불법드론 대응 및 무력화 측면을 중심으로 검토하였다. 분석결과, 첫째로 현행법상 드론의 등록·사용 관련해서는 최대 이륙중량을 기준으로 한 등록에서 확장하여 드론 비행거리, 탑재된 카메라의 성능 등을 포함한 개정안을 제 시하였다. 둘째로 드론 범죄와 관련해서는 현행 개인정보보호법, 항공안전법, 군사기지 및 군사시설보호법 등 관련 규정 개정을 통한 불법드론 범죄 및 테러공격에 대하여 상응한 처벌과 대응에 대한 개선안을 제시하였다. 셋째로 드론 무력화 대응 관련해서는 테러방지법, 통합방위법, 전파법과 공항시설법 등 개정을 통해 드론테러의 정의, 시설 장 주도의 드론 무력화 조치, 전파차단장치 무력화 실효성 보장 개선을 제시하였다.

The purpose of this study is to propose the revision of drone-related laws and regulations by analyzing the major limitations of current laws and regulations on the threats of drones, which are becoming increasingly serious through military provocations, terrorism and crimes against the people both at home and abroad. The focus of the revision of the law was examined in three aspects: first, registration and use related to drone safety management, second, personal, social, and military legal interests related to drone crime, and third, response to and neutralization of illegal drones. As a result of the analysis, first, it is suggested that the registration and use of the drone should be extended from the registration based on the maximum take-off weight to consider the flight distance of the drone and the performance of the mounted camera. Second, in relation to drone crime, it is suggested to improve the punishment and response to illegal drone crime and terrorist attack through amendment of related regulations such as Personal Information Protection Act, Aviation Safety Act, Military Base and Military Facilities Protection Act. Third, in response to the incapacitation of the drones, the Anti-Terrorism Act, the Integrated Defense Act, and the Radio Law were revised to provide a guarantee of effectiveness, such as a radio interception device for incapacitation.

3

6,600원

이 연구는 미국 공립학교의 사례를 통해 학교 내 안전을 미치는 요인과 학교 내 안전에 효율적인 경비형태를 분석함으로서 국내 학교 내 안전을 높일 적절한 방안을 제시하는데 그 목적이 있다. 이 연구는 학교 내에서 발생하는 범죄를 종속변수로 하는 중범죄모델과 범죄의 유형에 는 포함되지 않더라도 학생들의 안전을 위협할 수 있는 비행행위 및 집단행위로 범위를 한정시켜 종속변수로 하는 학교폭력모델로 나뉜다. 첫 번째, 학교 내 안전에 영향을 미치는 요인의 분석결과, 중범죄안전 모델과 학교폭력 안전 모델의 설명력은 각각 10.3%, 12%이며, 중범죄안전 모델을 살펴보면 학생을 대상으 로 한 안전교육(t=2.521, p=0.012), 학교활동 부모참여(t=11.733, p=0.000), CPTED활동 (t=3.206, p=0.001), 학교 내 경비활동(t=2.983, p=0.003)이 통계적으로 유의미하게 중범죄 로 부터의 안전에 긍정적인 영향을 미치는 요인으로 나타났다. 학교폭력안전 모델에서도 유사하게 학교활동의 부모참여(t=10.399, p=0.000), CPTED활동(t=7.238, p=0.000), 학교 내 경비활동(t=4.018, p=0.000)이 통계적으로 유의미하게 학교폭력으로 부터의 안전에 영 향을 미치는 요인으로 나타났다. 두 번째, 어떠한 유형의 경비활동이 학교 내 안전을 높이는지 분석한 결과, 중범죄안전 모델과 학교폭력안전 모델, 두가지 모델의 설명력은 각각 4.4%, 3.9%이며, 중범죄 안전 모 델에서는 학교에서 실행하는 경비활동 중 지역경찰과의 협조(t=2.112, p=0.035), 교칙관리 (t=3.309, p=0.001), 경비순찰활동(t=2.548, p=0.011)이 통계적으로 유의미하게 중범죄로 부 터의 안전에 영향을 미치는 요인으로 나타났고, 학교폭력안전 모델에서는 경비활동 중 지 역경찰과의 협조(t=2.364, p=0.018), 교칙관리(t=4.142, p=0.000)가 통계적으로 유의미하게 중범죄로 부터의 안전에 영향을 미치는 요인으로 나타났다. 이 연구의 결과에 따라 교사에 대한 교육보다 학생에 대한 교육이 학교 내 안전에 긍정 적이고, 학교 운영에 부모참여도 교육과 마찬가지로 지속적이고 계속적인 참여가 학교안전 을 위해 필요하다. CPTED활동의 경우, 미국의 사례의 결과를 그대로 받아들여 강화하는 방안을 마련하고, 경비활동에 관하여는 가시성을 높이고 지역경찰과의 협조를 원활히 하는 방안이 학교 내 안전에 긍정적 영향 줄 것이다.

This research will incorporate cases from U.S public schools to analyze the factors which influences the security within the school and efficient security patterns to suggest an adequate suggestion to elevate domestic school security system. This study is divided into two following models: a serious criminal offense model, which considers crimes occurred on campus as subordinate variables, and a school violence model, which considers as subordinate variables after limiting an act of delinquency and an a group action that can harm the safety of students, although they are not included in the categories of crimes. First, from analyzing the factors which influences security within school, the explanation power of serious crime offense safety model and school violence safety model is measured 12% and 11.3%. In serious crime offense safety model, the safety education for students, among the safety programs provided by schools(t=2.548, p=0.011), parent participation to school management(t=10.694, p=0.000), Security activities on campus(t=3.643, p=0.000), and CPTED activity(t=6.467, p=0.000) are statistically significant, as affecting factors on the safety from serious crimes. Similarly in school violence model, the safety education for students, among the safety programs provided by schools(t=3.228, p=0.001), parent participation to school management(t=12.034, p=0.000), security activities on campus(t=2.663, p=0.000), and CPTED activity(t=3.928, p=0.000) are statistically significant, as affecting factors on the safety from school violence. Second, according to the analytic results on figuring out the optimal pattern to heighten the security activities, the serious offence modelʼs explanatory power was 4.4% and school violence safety model rated 3.9%. With the serious offense safety model, the activity factors which showed statistically significant in influencing safety from serious offenses were cooperation with local police force (t=2112, p=0.035), school policy management (t=3.309, p=0.001), security patrolling activity (t=2.548, p=0.011). In the school violence model, security activities initiated by the school which showed statistically significant from serious offenses were cooperation with local police force (t=2.364, p=0.018) and policy management (t=4.142, p=0.000). In accordance with the result of this study, education for students rather than education for teachers is more positive in terms of the safety on campus, and parent participation, like education, is consistently needed for the safety on campus. In case of CPTED activity, reinforcing plans should be prepared by intactly accepting examples in the USA. In case of security activity, plans that can increase visibility and reinforce cooperation with local police in a smooth way will provide a positive effect to the safety on campus.

4

4,500원

본 연구는 경호원의 실패요인을 규명하기 위하여 실패귀인을 추출하고, 사례통합분석을 통하여 위해패턴 요인을 도출하 였다. 실패귀인은 완전 개방형 질문지(8명)를 시작으로 반구조화 질문지(17명), 폐쇄형 설문지(179명)를 제작하여 SPSS 21.0, AMOS 21.O 통계패키지를 통하여 자료를 처리하였다. 실패귀인과 실패사례 간의 인과관계(경호 실패패턴 요인)를 분석한 결과, 박정희 암살사건에서 불성실(2), 부정적 마인드(1), 업무능력부족(1), 경험부족(2), 조직의 비체계성(2), 사명의식결여(1), 개인주의(1), 업무공유실패(2), 사명의식결여(2) 등 14개의 실패 패턴이 발견되었고, 아웅산 묘소 폭발사건은 불성실(1), 부정 적 마인드(1), 업무능력부족(2), 경험부족(2), 개인주의(1), 업무공유실패(1) 등 8개의 실패패턴이 있는 것으로 조사되었으며, 육영수여사 저격사건의 경우, 불성실(2), 부정적 마인드(1), 경험부족(2), 사명의식결여(2), 업무공유실패(1) 등 8개 실패패턴이 있는 것으로 조사 되었다. 3개 사례와 실패귀인 요인간의 관계에서 총 30건의 실패패턴이 발견되었다.

The purpose of this study is to extract the failure attributions to identify the failure factors of the security guards and to derive the risk factor factors through failure cases analysis. Failure attributions were prepared by using semi-structured questionnaires(17) and closed questionnaires(179) starting from the fully open questionnaires(8), and processed through SPSS 21.0 and AMOS 21.O statistical packages. As a result of summarizing the causal relationship between the failure attribution and the failure case (patrol failure pattern factor), In Park Jung-Hee's assassination, lack of experience(2), negative mind(1), lack of work ability(1), lack of experience(2), organizational non-system activeness(2), lack of awareness of mission(1) Failure(2), lack of consciousness(2), and 14 failure patterns were found. Aung-San National Cemetery explosion occurred in eight failure patterns including insecurity(1), negative mind(1), lack of work skills(2), lack of experience(2), individualism(1), There were eight failure patterns in the case of Mr. Yook Young-Su 's sniping, including insincerity(2), negative mind (1), lack of experience(2), lack of awareness of mission(2) and failure to share work(1).

5

5,700원

운영 기술(OT) 환경은 IT 네트워크와의 융합으로 인해 개방적 구조로 변화하고 있다. 그러나 이러한 전환은 동시에 사이버 보안 공격에 대한 취약점을 증가시키고 있다. 이에 인공지능(AI) 기반의 보안 기술이 주요한 대안으로 논의되고 있으나 현재의 논의는 특정 영역에 편중된 경향 성을 보인다. 이 연구는 2022년 1월 1일부터 2024년 12월 31일까지 국내에서 발간된 OT 보안 관 련 뉴스 기사를 수집하고, 퍼듀 모델(Purdue Model) 기반 도메인 특화 사전을 구축해 노드와 링 크를 기반으로 한 의미 연결망 분석을 수행했다. 이를 통해 OT 보안 담론 내에서 물리적 제어 계층(Level 0/1)과 AI 기술 간의 구조적 관계를 확인하고 계층 간 기술 수용의 정도를 실증적으 로 진단했다. 분석 결과, 국내 OT 보안 관련 기사에서는 기업 IT 시스템을 담당하는 Level 4 계 층이 매개 중심성 0.78을 보여 지식 확산의 중심이 되는 반면, 실제 물리적 공정이 수행되는 Level 0과 Level 1 계층은 매우 낮은 매개 중심성을 기록해 구조적으로 완전히 고립되어 있음을 확인했다. 내용적 측면에서도 상위 계층은 머신러닝, 예측 등 포괄적 AI 키워드와 강한 결합을 보인 반면, 물리 계층은 필수적인 이상 탐지 기술과의 결합이 매우 미비하게 나타났다. 시계열 분석 결과 Level 4 계층의 AI 관련 논의는 생성형 AI 등 신기술 수용에 힘입어 2년간 103.7% 증 가했으나 물리 계층은 32.0%의 상대적으로 낮은 성장세를 보였다. 특히 2022년 2.3배였던 계층 간 연결 강도 격차는 2024년 3.5배로 증가해 격차가 크게 벌어짐을 알 수 있었다. 이 연구는 이 러한 분석 결과를 바탕으로 현재의 IT와 AI 중심 보안 외에도 물리 계층의 보안 진단을 위한 정 책적 지원이 시급함을 제언한다.

Abstract Operational Technology (OT) environments are increasingly shifting toward open architectures driven by convergence with IT networks. However, this transition expands the attack surface, thereby heightening vulnerabilities to cyber threats. Consequently, AI-based security technologies are being explored as a critical countermeasure, yet current academic and practical discourse tends to be disproportionately concentrated on specific layers. This study collected domestic OT security-related news articles published between January 1, 2022, and December 31, 2024. By constructing a domain-specific dictionary based on the Purdue Model, Semantic Network Analysis (SNA) was performed to analyze the structural relationships between nodes. This approach enabled the empirical diagnosis of the asymmetry in technology adoption and the structural relationship between physical control layers (Level 0/1) and AI technologies within the OT security discourse. The analysis revealed that the Level 4 layer, responsible for corporate IT systems, exhibited a betweenness centrality of 0.78, functioning as a dominant hub for knowledge diffusion. In contrast, Levels 0 and 1, where actual physical processes occur, recorded negligible betweenness centrality, confirming their complete structural isolation. In terms of content, upper layers showed strong linkages with broad AI keywords such as machine learning and prediction, whereas physical layers demonstrated a distinct lack of integration with essential anomaly detection technologies. Time-series analysis indicated that AI-related discussions at Level 4 surged by 103.7% over two years, driven by the adoption of emerging technologies like generative AI, while physical layers saw a relatively modest growth of 32.0%. Notably, the disparity in inter-layer connection strength widened significantly from 2.3 times in 2022 to 3.5 times in 2024. Based on these findings, this study suggests that beyond the current IT-centric focus, there is an urgent need for policy support dedicated to security diagnostics at the physical layer.

6

5,700원

운영 기술(OT) 환경은 IT 네트워크와의 융합으로 인해 개방적 구조로 변화하고 있다. 그러나 이러한 전환은 동시에 사이버 보안 공격에 대한 취약점을 증가시키고 있다. 이에 인공지능(AI) 기반의 보안 기술이 주요한 대안으로 논의되고 있으나 현재의 논의는 특정 영역에 편중된 경향 성을 보인다. 이 연구는 2022년 1월 1일부터 2024년 12월 31일까지 국내에서 발간된 OT 보안 관 련 뉴스 기사를 수집하고, 퍼듀 모델(Purdue Model) 기반 도메인 특화 사전을 구축해 노드와 링 크를 기반으로 한 의미 연결망 분석을 수행했다. 이를 통해 OT 보안 담론 내에서 물리적 제어 계층(Level 0/1)과 AI 기술 간의 구조적 관계를 확인하고 계층 간 기술 수용의 정도를 실증적으 로 진단했다. 분석 결과, 국내 OT 보안 관련 기사에서는 기업 IT 시스템을 담당하는 Level 4 계 층이 매개 중심성 0.78을 보여 지식 확산의 중심이 되는 반면, 실제 물리적 공정이 수행되는 Level 0과 Level 1 계층은 매우 낮은 매개 중심성을 기록해 구조적으로 완전히 고립되어 있음을 확인했다. 내용적 측면에서도 상위 계층은 머신러닝, 예측 등 포괄적 AI 키워드와 강한 결합을 보인 반면, 물리 계층은 필수적인 이상 탐지 기술과의 결합이 매우 미비하게 나타났다. 시계열 분석 결과 Level 4 계층의 AI 관련 논의는 생성형 AI 등 신기술 수용에 힘입어 2년간 103.7% 증 가했으나 물리 계층은 32.0%의 상대적으로 낮은 성장세를 보였다. 특히 2022년 2.3배였던 계층 간 연결 강도 격차는 2024년 3.5배로 증가해 격차가 크게 벌어짐을 알 수 있었다. 이 연구는 이 러한 분석 결과를 바탕으로 현재의 IT와 AI 중심 보안 외에도 물리 계층의 보안 진단을 위한 정 책적 지원이 시급함을 제언한다.

Abstract Operational Technology (OT) environments are increasingly shifting toward open architectures driven by convergence with IT networks. However, this transition expands the attack surface, thereby heightening vulnerabilities to cyber threats. Consequently, AI-based security technologies are being explored as a critical countermeasure, yet current academic and practical discourse tends to be disproportionately concentrated on specific layers. This study collected domestic OT security-related news articles published between January 1, 2022, and December 31, 2024. By constructing a domain-specific dictionary based on the Purdue Model, Semantic Network Analysis (SNA) was performed to analyze the structural relationships between nodes. This approach enabled the empirical diagnosis of the asymmetry in technology adoption and the structural relationship between physical control layers (Level 0/1) and AI technologies within the OT security discourse. The analysis revealed that the Level 4 layer, responsible for corporate IT systems, exhibited a betweenness centrality of 0.78, functioning as a dominant hub for knowledge diffusion. In contrast, Levels 0 and 1, where actual physical processes occur, recorded negligible betweenness centrality, confirming their complete structural isolation. In terms of content, upper layers showed strong linkages with broad AI keywords such as machine learning and prediction, whereas physical layers demonstrated a distinct lack of integration with essential anomaly detection technologies. Time-series analysis indicated that AI-related discussions at Level 4 surged by 103.7% over two years, driven by the adoption of emerging technologies like generative AI, while physical layers saw a relatively modest growth of 32.0%. Notably, the disparity in inter-layer connection strength widened significantly from 2.3 times in 2022 to 3.5 times in 2024. Based on these findings, this study suggests that beyond the current IT-centric focus, there is an urgent need for policy support dedicated to security diagnostics at the physical layer.

7

6,600원

본 연구의 목적은 국가안보 강화 차원에서 효과적인 국가위기관리를 위하여 자연 및 사회재난 발생 시 민간경비 역량을 효율적으로 활용할 수 있는 방안을 도출하는 것이다. 오늘날 국가안보는 전통적인 국가안보를 포함하여 각종 재난으로부터 국민을 보호해야 하 는 포괄적 안보 개념으로 발전되어 왔다. 그러나 예측이 어려운 위기상황에서 중앙정부 및 지방자치단체의 행정만으로는 효과적인 재난대응에 한계를 드러내고 있는 실정이다. 따라서 민간경비 활동이 담당하는 분야 및 역할분석을 통해 지역사회 안전역량을 강화하 고 나아가 국가위기관리에 민간경비가 일조할 수 있는 방안을 분석하는 것이 중요하다. 이를 위한 연구방법으로 국내외 문헌연구를 통해 포괄적 국가안보와 국가위기관리, 민간경 비의 역할과 중요성을 이해하고 자연재난과 사회재난의 양상 변화와 민간경비 트렌드를 분석하여 국가위기관리 대응체제상의 민간경비 활용과 발전방향을 다음과 같이 4가지로 제시하였다. 첫째, 법적⋅제도적 발전방안으로 경비업법과 재난 및 안전관리 기본법, 근로기준법의 개정 및 구체화, 공익성에 대한 민간경비 인센티브 제공, 미국과 유사한 국가위기대응체계 (National Response Framework, NRF)상 민간경비 활용방안 도입을 제시하였다. 둘째, 지역 자치경찰제도와 민간경비의 거버넌스 강화를 통한 재난 및 범죄(테러)예방과 셋째, 해외재 난 대비 위험지역 테러 위협분석 등 재외국민보호업무에 민간경비 활용, 넷째, AI 등 ICT 기술을 접목한 민간경비 발전방안을 제시하였다. 이러한 정책적 제언과 같이 민간경비를 국가위기관리 분야에 효율적으로 활용하면 적시적인 골든타임의 초기대응을 통해 국민의 생명과 재산 보호에 중요한 역할을 할 수 있을 것이다.

This study aims to identify effective strategies for harnessing the capabilities of private security services during natural and social disasters to enhance national crisis management, thereby bolstering national security. The study proposes four key directions for utilizing and developing private security within the national crisis management response system: Legal and Institutional Reforms: This entails recommending revisions and enhancements to existing legislation such as the Security Industry Act, the Basic Act on Disaster and Safety Management, and the Labour Standards Act. Furthermore, it advocates for incentives that promote the engagement of private security for public welfare and introduces measures to integrate private security into the crisis management framework, mirroring models like the US National Response Framework (NRF) and the Overseas Security Advisory Council (OSAC). Enhancing Community Safety: The study underscores the importance of disaster prevention, crime prevention, and counterterrorism efforts by strengthening the governance of community policing systems and private security entities. Protecting Overseas Citizens: A plan is proposed to ensure the safety of citizens residing abroad during overseas disasters through the involvement of private security services. Integration of ICT Technologies: The study suggests integrating modern information and communication technologies (ICT) like Artificial Intelligence (AI) to develop private security capabilities.

8

Enforcing Security in Smart Homes using Security Patterns

Paul El Khoury, Pierre Busnel, Sylvain Giroux, Keqin Li

보안공학연구지원센터(IJSH) International Journal of Smart Home Vol.3 No.2 2009.04 pp.57-70

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Providing context-dependent security services is an important challenge in ambient intelligence. The complexity and the unbounded nature of such systems make it difficult for software developers to integrate security solutions. In order to solve this problem, in this paper we discuss and address multifold security challenges involved in the implementation of remote healthcare in smart homes using the security patterns approach. First the security challenges are derived from a real-world, industrially relevant scenario. Then it is shown how validated security techniques and mechanisms providing certain security properties can be captured and implemented in security patterns. Next security patterns are applied to satisfy security requirements in the smart home healthcare scenario. The process is exemplified thanks to a running prototype implementing the scenario.

9

Adaption of Integrated Secure Guide for Secure Software Development Lifecycle SCOPUS

Ki-Hyun Lee, Young B Park

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.10 No.6 2016.06 pp.145-154

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

As interests in security increases, several software development lifecycle considering security have been proposed. Actual results of applying software development lifecycle considering security reduced threats have been reported. But to apply software development lifecycle considering security, requires expertise and experiences. In this paper a secure software development lifecycle applying integrated secure guide is proposed. Secure Guides such as Misuse Case, Security Patterns and Secure Coding are integrated in the proposed method. And then, by applying integrated Secure Guide in each software development phase, the security becomes available in every phase of software development. Since, proposed secure guide provides more security information than available secure guides, software developer can use more security information while they are developing software. As a result, it is expected that developers could consider security more easily when developing software even though developers lacks expertise in security or experience.

10

An Improved Wu-Manber Multiple Patterns Matching Algorithm for Mobile Internet Content Security Audit in a Chinese Environment SCOPUS

Zhenjiang Zhang, Xinlei Jin, Ziqi Hao, Xiaolan Guan

보안공학연구지원센터(IJSIA) International Journal of Security and Its Applications Vol.8 No.3 2014.05 pp.339-354

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

The rapid progress of mobile Internet has brought about wide range of applications of security audit systems. As a part of security audit system, content security audit is crucial for ensuring the reliability and security for system applications. In this paper, we propose a novel multiple patterns matching algorithm WMMA based on the Chinese context (Wu-Manber Algorithm for Mobile Internet Security Audit) to realize auditing the interactive content in the mobile Internet. Our improved algorithm based on the efficient WM (Wu-Manber) multiple patterns matching algorithm, which can improve the insufficient of the WM when dealing with Chinese context. The simulation results showed that the improved algorithm is more suitable for the mobile Internet content security auditing of Chinese language environment, which has higher operation efficiency.

11

The Integrated Cyber SRM(Security Risk Monitoring) System Based on the Patterns of Cyber Security Charts

Lee, Gang-Soo, Jung, Hyun Mi

[Kisti 연계] 한국컴퓨터정보학회 Journal of the Korea society of computer and information Vol.24 No.11 2019 pp.99-107

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

사이버 보안을 위한 활동인 '위험관리(Risk management)'와 '보안관제(security monitoring)' 업무는 미래에 발생할 보안 위협에 대비하고 보안 사고를 최소화 하는 활동이라는 점에서 깊은 상관관계를 가지고 있다. 또한 위험관리와 보안관제 분야 모두 관리자에게 시각적으로 그 정보자산에 대한 위협을 보여주는 패턴 모델을 적용하는 것이 효과적이다. 검증받은 패턴모델로는 전통적인 품질관리 분야에서 오랫동안 사용되어온 '관리도'(control chart)모델이 존재하지만 정보시스템의 사이버 위험관리와 보안관제에서의 활용은 부족하다. 이에 본 논문에서는 위험관리와 보안관제 시스템을 통합한 사이버 SRM(Security Risk Monitoring)시스템을 설계하였다. SRM은 '관리도'의 패턴을 이용한 '보안대책' (security control)의 적용 전략을 제시한다. 보안대책은 기존의 표준화된 보안대책 집합인 ISMS, NIST SP 800-53, CC를 통합적으로 적용하였다. 이를 활용하여 2014~2018년 까지 4년간 우리나라사이버위기 경보동향을 분석하였고 이는 향후 보다 유연한 보안대책 수립을 가능하게 한다.

The "Risk management" and "Security monitoring" activities for cyber security are deeply correlated in that they prepare for future security threats and minimize security incidents. In addition, it is effective to apply a pattern model that visually demonstrates to an administrator the threat to that information asset in both the risk management and the security system areas. Validated pattern models have long-standing "control chart" models in the traditional quality control sector, but lack the use of information systems in cyber risk management and security systems. In this paper, a cyber Security Risk Monitoring (SRM) system that integrates risk management and a security system was designed. The SRM presents a strategy for applying 'security control' using the pattern of 'control charts'. The security measures were integrated with the existing set of standardized security measures, ISMS, NIST SP 800-53 and CC. Using this information, we analyzed the warning trends of the cyber crisis in Korea for four years from 2014 to 2018 and this enables us to establish more flexible security measures in the future.

12

Unraveling the Northeast Asian Regional Security Complex: Old Patterns and New Insights

문정인, 배종윤

[NRF 연계] 한국국방연구원 The Korean Journal of Defense Analysis Vol.17 No.2 2005.09 pp.7-34

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

The concept of the regional security complex has recently been introduced in order to elucidate a region’s security dynamics, independent of the international system. We apply the security complex concept to the Northeast Asian region, and draw several interesting observations. First, the Northeast Asian security complex is still governed by the logic of the traditional Westphalian sovereignty. Old actors such as nation-states are still dominant, whereas new non-state transnational actors are limited in power and influence. Second, profound structural reconfiguration among units has not yet taken place in the region. Uni-polycentrism, in which the United States still enjoys the hegemonic position, while other actors, China, Japan, and Russia, compete in the second-tier. Third, despite the advent of the post-Cold War era and the globalization drive, military issues still top the hierarchy of national security concerns. Countries in the region appear to be preoccupied with traditional military security issues. Fourth, realist, liberal, and constructivist visions can cohabit in the ideational terrain of security discourse. The continuing co-existence of blind power-seekers, optimistic liberal pacifists, and fervent identity protectors deepens the security dilemma of the region. Finally, the best way to manage the security dilemma and to ensure a stable peace in the region is to cultivate a community of security by going beyond the logic of deterrence, fostering liberal transition, and healing past scars and resisting the temptation of parochial nationalism.

13

한국 정치인 테러양상과 요인경호대책

유민혁, 공정식, 김대영, 이준영

[NRF 연계] 사단법인 안전문화포럼 안전문화연구 Vol.33 2024.08 pp.125-143

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

정치는 사회의 안정과 번영을 위하여 다양한 이해관계자들이 협의하고 국가가 국민들의 삶을 증진하기 위하여 나아갈 방향을 정하며, 최선의 공공정책을 결정하는 과정이다. 그래서 정치인들은 자신들의 신념을 실현하기 위하여 권력을 획득하려 하는데, 이 과정은 민주적이어야 한다. 따라서 정치인에 대한 테러는 반민주적이고 폭력적으로 반드시 엄단해야 한다. 한국의 정치인에 대한 테러양상을 보면, 해방전후부터 현재까지도 반대세력을 폭력으로 제압하려는 후진성에서 여전히 벗어나지 못했다고 할 것이다. 본 연구를 통해서 알 수 있는 것은 현재 권력집단에 저항하는 주요 정치인들에 대한 요인경호가 매우 취약하다는 것이다. 특히 국내 정치인 테러의 양상을 보면, 피해자는 특정인이 표적화되지만 가해자는 불특정 다수에 의하여 발생한다는 특징이 있다. 따라서 주요 정치인에 대한 국가의 요인경호를 강화하기 위한 ‘요인경호법’의 제정을 시급히 촉구하며, 국내 정치인에 대한 테러가 빈번하다는 점에서 경호인력의 확대와 교육강화를 제안한다. 더불어서 정치적 반대세력에 대하여 사회적으로 포용적인 사회정책 시행이 필요하고 문화적으로 선진적인 정치문화 조성을 위한 미디어와 대중문화의 기능을 강화할 것을 제안한다.

Politics is a process through which stakeholders negotiate and states determine policies to enhance citizen welfare and establish optimal public policies for societal stability and prosperity. At its core, this process involves politicians striving to attain power to realize their beliefs, and it must be democratic. Consequently, terrorism against politicians, being both undemocratic and violent, must be rigorously condemned. An examination of the terrorism patterns targeting South Korean politicians reveals a persistent inclination to suppress opposition through violence?a vestige of regressive tendencies not yet fully eradicated since the post-liberation period. This study finds that security of key personnel for major politicians opposing current power structures are significantly inadequate. Therefore, we propose the urgent establishment of a "Security of Key Personnel Law" to strengthen national security for key political figures. Additionally, given the frequency of terrorist attacks on domestic politicians, it is crucial to expand the number of security personnel and enhance their training. Moreover, adopting socially inclusive policies towards political opposition and reinforcing the roles of media and popular culture are essential for fostering a more advanced political culture.

14

보안을 위한 무아레 무늬의 키 생성 기법

강혁, 최진영

[Kisti 연계] 한국정보과학회 한국정보과학회 학술대회논문집 2003 pp.766-768

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

현대는 인터넷의 범람이라고 할 수 있을 만큼 세계의 곳곳에서 많은 사람들이 인터넷을 통해 여러 분야에서 사용하고 있다. 이처럼 인터넷을 이용하는데 있어 개인의 정보를 보호해야 하는 문제가 대두되고 있다. 기존의 암호화에 사용하는 키는 소인수 분해, 이산수학, 타원곡선등과 같이 수학적 이론에 바탕을 두어 생성되었다. 본 논문에서는 빛의 물리적인 성질 중의 하나인 간섭과 회절에 의해 생성되는 고유의 무늬인 무아레 무늬의 고유 값을 암호화를 위한 키로 사용하도록 제안하였다.

15

成人依恋:理论、安全感来源与代际传递

거궈훙

[NRF 연계] 동방문화대학원대학교 문화예술콘텐츠연구소 문화와예술연구 Vol.14 2019.12 pp.125-153

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

依恋(attachment)理论认为,个体早期与照料者(通常是母亲)的互动经验形成了相对固定的内部工作模式(Internal working mode),这种模式是一种对他人的预期,深刻地影响着人们的处世方式,还会作用于成年后的亲密关系和婚恋关系。大量的研究表明,早期亲子依恋的质量会对个体的人格和心理产生重要的影响。成人依恋(adult attachment)是依恋理论的扩展,与个体早年的亲子依恋有着根深蒂固的对应关系,且影响着成年人的人际功能和社会生活,恋人间的亲密关系研究中,不安全的依恋与特定的互动模式有关。 在过去的五十年里,依恋理论得到了众多研究者的关注,取得了一系列重要的研究成果,形成了诸多有价值的理论,本文首先对成人依恋相关的理论进行了梳理,主要对J.Bowlby、M. Ainsworth与后来的C. Hazan和P. Shaver等人的理论进行了整理。进一步探究了成人依恋的安全感来源问题,即为什么一部分人形成了安全性依恋,而另一部分人形成了不安全的依恋呢?综合分析了早期照料、内外驱动、人际互动、依恋传递和基因影响等与依恋的关系。并对成人依恋模式的代际传递进行了总结和思考,总结了依恋的代际传递假设、成人依恋与儿童依恋的测量与传递、成人依恋代际传递及其缺口现象,并从父母敏感性、儿童差别易感性等角度探究了弥补传递缺口的要素,最后提出了成人依恋研究未来发展方向。

Attachment theory holds that individuals' early interaction experience with caretakers (usually mothers) forms a relatively fixed Internal working mode, which is a kind of expectation of others and profoundly affects people's way of life, as well as their intimate and romantic relationships in adulthood. A large number of studies have shown that the quality of early parent-child attachment had an important impact on individual's personality and psychology. Adult attachment, an extension of the attachment theory, has a deep-rooted corresponding relationship with the parent-child attachment in the early years of individuals, and affects the interpersonal function and social life of adults. The studids of intimate relationship between lovers prove that insecure attachment is related to specific interaction mode. In the past 50 years, attachment theory has attracted the attention of many researchers, obtained a series of important results, and formed lots of valuable theories. This paper first sorted out the theories related to adult attachment, especially to J. Bowlby, M. Ainsworth and C. Hazan and P. Shaver. Than it further explored the source of security of adult attachment, that is, why do some people form secure attachment while others form insecure attachment? The relationships between early care, internal and external drive, interpersonal interaction, intergenerational transmission and genetic influence were comprehensively analyzed. Intergenerational transmission of adult attachment patterns are summarized in this paper. We summarized the intergenerational transfer hypothesis, the measurement and transfer of adult attachment and children attachment, adult attachment intergenerational transmission of attachment and its gap phenomenon. From the view of parents' sensitivity and children's susceptibility difference to explore the supplyment the gap for transfer. We suggested the potential direction for future study on adult attachment.

16

산재근로자들의 고용안정과 건강한 삶을 위한 데이터마이닝 기반의 규칙 도출 연구

최근호, 서용무, 유동희

[NRF 연계] 한국직업재활학회 직업재활연구 Vol.25 No.3 2015.12 pp.5-24

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

본 연구에서는 산재 후 직업복귀율 제고와 안정적 직업복귀의 중요한 요인인 건강상태의 증진을 위해 데이터 마이닝 기법 중 하나인 의사결정나무 알고리즘을 활용하여 원직장 복귀가능 여부, 취업가능여부, 산재이전 대비 건강상태를 예측하는 모델들을 구축하고 분석하였다. 그 결과, 원직장 복귀가능 여부 예측에는 최종적으로 13개의 변수가 영향력이 높은 변수로 선정되었고, 이들 중 가장 영향력이 높은변수는 요양 중 사업주 및 사업장 인사노무 관련자와의 관계 유지 여부로 나타났다. 취업가능 여부 예측에는 영향력이 높은 8개의 변수가 최종 선정되었고, 가장 영향력이 높은 변수는 요양종료 이후 받은교육 및 직업훈련 경험으로 나타났다. 마지막으로 산재이전 대비 건강상태 예측에는 최종적으로 영향력이 높은 4개의 변수가 선정되었고, 가장 영향력이 높은 변수는 치료기간의 적정 여부로 나타났다. 본연구의 결과는 산재근로자의 고용안정과 건강한 삶을 위한 맞춤형 지원서비스 제공 방안 수립에 도움을 줄 것으로 기대된다.

The Workers’ Compensation system in Korea is expanding its role from medical treatment and compensation to rehabilitation, as increasing the rate of return to the job is an important issue for a five-year plan for rehabilitation development. To this end, this study develops three prediction models for industrial disaster workers. Each predicts whether the worker can return to his/her job, whether the worker can find a new job, and whether the worker will be healthy comparing to his/her health state before the industrial disaster occurred. In the first prediction model, 12 final influential input variables were used, among which ‘whether one kept a relationship with his/her owner during medical treatment’ was the most influential. In the second prediction model, 8 final influential input variables were used, among which ‘whether one received job-related education or training after medical treatment’ was the most influential. In the third prediction model, 4 final influential input variables were used of which ‘whether the period of medical treatment was appropriate’ was the most influential. The results of this study can help establish more personalized support service for industrial disaster workers to ensure their job security and healthy lives in the future.

17

국내 정보보안 학술지 인용 패턴 분석

김병규, 류범종, 박민우, 이준

[Kisti 연계] 한국컴퓨터정보학회 한국컴퓨터정보학회 학술대회논문집 2024 pp.459-461

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

본 논문은 국내 정보보안 분야 학술 연구에서 참고문헌 인용행태를 파악하고자 해당 분야 대표 학술지의 인용문헌 현황 및 패턴을 분석하였다. 실험데이터는 "정보보호학회논문지"를 대상으로 수록된 모든 논문과 참고문헌 정보를 수집하고 개별 학술지 및 학술대회의 식별 과정을 통해 구축하였다. 이를 기반으로 참고문헌 현황, 인용나이 통계 분석 결과와 동시출현네트워크 (학술지 및 학술대회)의 생성을 통한 네트워크 중심성 및 시각화 지도를 제시하였다.

18

중국의 사이버 공격 양상 변화와 사이버안보에의 함의

김상규, 조윤영

[NRF 연계] 한국국가정보학회 국가정보연구 Vol.17 No.2 2024.12 pp.85-113

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

본 논문은 중국의 사이버 공격이 어떤 형태로 변화하고 있는지, 그것이 사이버안보에 주는 함의는 무엇인지를 고찰한다. 이를 위해 사이버 공격의 일반적 정의와 방식에 대해 살펴본 뒤, 중국의 사이버 공격 주요 주체와 방식, 목표 등 관련 사례를 분석하였다. 연구 결과, 중국은 초기 부족한 기술력과 제도적 미비점을 마련하기 위한 전략을 수립하고 이에 따라 관련 정보 탈취와 기술 축적을 위한 공격을 진행하였으며, 이후 국가 차원에서 사이버공간에 관한 인식과 목표, 전략을 천명하고 정보 수집, 군사 기밀 획득, 정치적 영향력 확장, 경제적 이익 추구 등 다양한 형태의 사이버 공작을 진행하는 것을 확인하였다. 공격의 주체는 국가기관을 비롯한 민간 사이버 해킹 단체 등을 망라하고 있으며 대상 역시 중국에 반하는 행동을 하는 국가와 민간 단체, 개인 등을 포괄해 전방위적으로 행동 범위를 넓히고 있다. 중국은 전통적인 수법을 포괄해 공격하는 것뿐만 아니라 AI 등 고도화된 기술력을 활용하여 소프트웨어 공급망까지 침투하는 방식을 활용하고 있다. 더욱이 평시에는 가짜 뉴스를 생성하고 사회 인프라 곳곳에 바이러스를 침투시켜, 유사시 사회적 혼란을 초래하는 것을 넘어 군사력 동원까지 제어하려는 영향력 공작과 사이버 심리전, 인지전의 행태를 보이기도 한다. 그러나 한편으로 중국을 경유하거나 중국 내부의 사이버 공격과 범죄는 물론 북한과 러시아를 비롯한 미확인 대상의 위협 행위에 대한 방어와 통제의 협력이 필요한 상황이 있을 수 있다. 따라서 한국은 중국의 불법적이고 공격적인 행태에 대해 단호하게 대응하고 조치를 취하되, 양자 간, 혹은 다자 간 공통 의제를 찾는 노력을 병행한다면 사이버공간의 안보와 국가의 이익을 실현할 기회가 될 것임을 주장하였다.

This dissertation examines the evolving nature of China's cyber attacks and their implications for cyber-security. To this end, it first reviews the general definitions and methods of cyber attacks, followed by an analysis of relevant cases concerning the primary actors, methods, and targets of China's cyber operations. The study finds that in its early stages, China developed strategies to address its lack of technological capabilities and institutional shortcomings, conducting attacks aimed at information theft and the accumulation of technical expertise. Subsequently, China articulated national-level objectives and strategies regarding cyberspace, engaging in a wide range of cyber operations, including information gathering, the acquisition of military secrets, the expansion of political influence, and the pursuit of economic benefits. The actors involved in these attacks include state institutions as well as private hacking groups, with targets encompassing not only nations and organizations opposed to China's interests but also individuals, thereby expanding the scope of their operations across all fronts. China's methods include not only traditional attack techniques but also the use of advanced technologies such as artificial intelligence to penetrate software supply chains. Moreover, during peacetime, China has been known to generate fake news, infiltrate viruses into critical social infrastructure, and engage in influence operations, cyber psychological warfare, and cognitive warfare aimed at causing societal chaos and even controlling military mobilization in times of crisis. Nevertheless, there may be situations where cooperation in defense and control is necessary to address cyber attacks and crimes originating from or passing through China, as well as threats from unidentified actors, including North Korea and Russia. Therefore, the dissertation argues that while South Korea should respond firmly to China's illegal and aggressive actions and take appropriate measures, it should also seek common agendas in bilateral or multilateral frameworks. Such efforts could provide opportunities to enhance cyber-security and safeguard national interests in cyberspace.

19

노인가구의 소비패턴 유형: 공적연금소득, 사회보장급여, 사적이전소득의 영향과 주관적 복지의 차이

송시영, 전미애

[NRF 연계] 한국노년학회 한국노년학 Vol.44 No.4 2024.08 pp.435-454

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

본 연구는 다른 세대와 동거하지 않는 노인1인가구와 노인부부가구를 대상으로 노인가구의 소비패턴을 알아보고, 그러한 소비패턴이 소득원천별로 어떠한 관계가 있는지, 그리고 그러한 소비패턴 유형이 주관적 복지(삶의 만족도와 우울감)에 차이를 보이는지 살펴보고자 하였다. 이를 위해 고령화연구패널조사(KLoSA)의 8차년도(2020년) 자료 중 65세 이상 1,496명을 분석하였다. 잠재프로파일분석과 3단계 접근법에는 Mplus 7.3을 활용하였으며, 연구대상의 일반적 특성을 확인하기 위한 기술통계와 빈도분석에는 SPSS Statistics 28을 사용하였다. 잠재프로파일분석(Latent Profile Analysis)과 3단계 접근법(Three-step approach)을 활용하여 소비유형을 분석한 결과, 노인가구의 소비유형은 모형 적합도 지수 등을 고려하여 4개 집단으로 구분하였으며 집단의 특성을 바탕으로 기초생활중심형, 중간지출형, 무보험 중간지출형, 고지출형으로 명명하였다. 공적연금소득, 사회보장급여, 사적이전소득이 노인가구의 소비패턴 유형에 미치는 영향을 검증하기 위해서 소비패턴 유형을 종속변수로 한 다항 로지스틱 회귀분석을 실시하였다. 또한 잠재집단에 따라 삶의 만족도와 우울감에 차이가 있는지 검증하기 위해 3단계 접근법의 차이분석 결과, 집단 간에 삶의 만족도와 우울감 간의 차이가 있는 것으로 나타났다. 연구결과를 바탕으로 노인가구에 대한 정책적 논의 및 제언을 제시하였다.

This study investigates the consumption patterns of elderly households targeting single-person households and couple households, which do not live with other generations, and how such consumption patterns are related to each source of income. Furthermore, we sought to examine whether consumption patterns showed differences in subjective well-being (life satisfaction and depression). For this purpose, 1,496 people aged 65 or older were analyzed among the data from the 8th wave (2020) of the Korean Longitudinal Study of Ageing (KLoSA). Mplus 7.3 was used for latent profile analysis and a three-step approach, and SPSS Statistics 28 was used for descriptive statistics and frequency analysis to distinct the general characteristics of the study subjects. As a result, the consumption patterns of the elderly were divided into four groups considering the model fit index and the characteristics of the groups. Based on this, they were named basic life-oriented type, middle expenditure type, no private insurance and middle expenditure type, and high expenditure type. In order to verify the impact of public pension income, social security benefits, and private transfer income on the consumption pattern type of elderly households, a multinomial logistic regression analysis was conducted with the consumption pattern type as the dependent variable. A difference test using a three-step approach was used to verify whether there were differences in life satisfaction and depression depending on the types of consumption patterns. It was found that there were differences between life satisfaction and depression between groups. Discussions and suggestions based on the research results were included.

20

한·중 온라인 주식투자자의 투자특성에 대한 분석

최창열, 이주영, 함형범

[NRF 연계] 국제e-비즈니스학회 e-비즈니스연구 Vol.11 No.1 2010.03 pp.245-265

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

본 연구는 한국과 중국의 온라인 주식투자자의 투자특성을 분석하였다. 분석결과를 살펴보면 먼저 투자자에 대한 재무적 특성에 대한 부분을 살펴보면 한국과 중국 주식투자자는 자녀양육 또는 노후대비의 비중이 높았으며, 수익률에 대해서는 한국의 투자자가 더 만족하는 것으로 나타났다. 한편 중국의 투자자는 평균 1천만원을 주식에 투자하고 있었으며, 양국 온라인 투자자들은 편리성을 꼽았다. 정보이용측면에서 한국과 중국 모두 정확성, 신성성, 신뢰성, 경제성을 고르게 고려하는 것으로 나타났다.온라인 투자자와 인구통계학적 특성과의 영향력 분석을 위해 stepwise 방식에 의한 중회귀분석을 실시하였다. 투기지향 행동에 유의한 영향을 미치는 변수는 연령 변수로 나타나 연령이 낮을수록 투기지향행동이 높은 것으로 나타났다. 연평에 의한 투기지향 행동의 설명력은 1.8%이다. 가계특성에 의한 투자자의 투자행동 분석을 보면 안전지향 행동에 유의한 영향을 미치는 변인은 연령( β= .137)이 정적인 영향을 미치는 것으로 나타나 연령이 높을수록 안전지향 행동이 높은 것으로 나타났다. 연령에 의한 안전지향 행동의 설명력은 1.9%로 나타났다. 분산투자 행보에 유의한 영향을 미치는 변인은 정보 수용정도( β= 0.173), 정보탐색 적극성( β= 0.214)의 순으로 나타나, 정보 수용정도가 높을수록, 정보탐색 적극성이 높을수록, 매매프로그램 신호를 이용하여 매매는 본인이 직접하는 부분의존형이 높을수록 분산투자 행동이 높은 것으로 나타났다.

Recently, the number of investors who participate in a stock exchange market is increasing. This study aims to research the investment patterns and behaviors of Cyber stock investors. Therefore, it analysed that the difference of patterns and behaviors between the general stock investors and cyber stock innovestors. This study used the questionaries that consist of demographic characteristics, household characteristics, informational utility characteristics and some types of variable investment. The questionary method required some sample surveys. The data of the practical analysis was carried out with the on-line researching method. The researching time was from the 28th of June. 2009 to the 7th of July. 2009. And the copies of questionaries were 400(both country). This study used statistical methods such as frequency, percentile, mean, standard deviation, multiple regression analysis, one-way ANOVA, and Ducan's multiple range test utilizing SPSS WIN 10.0 Program.

 
1 2
페이지 저장