년 - 년
4,000원
운영체제 및 응용프로그램들은 프로그램 개발 과정의 특성상 보안 취약성을 가지고 있다. 최근 이러한 취약성을 악용하는 침해사례가 증가하고 있으며, 그 피해의 파급효과가 더욱 커지고 있다. 패치의 분배 및 설치는 취약성을 이용하는 침해사고를 예방하기 위한 가장 중요한 요소 중의 하나이다. 특정 기관이나 조직은 다양한 운영체제 및 응용프로그램을 사용하기 때문에 관리자가 매번 신속하게 모든 시스템들에 대하여 패치를 설치하기는 어려움이 있다. 본 논문에서는 중앙의 관리자가 패치관리서버를 이용하여 Windows, Linux, Solaris 클라이언트 시스템들에 대하여 안전하게 패치를 자동분배하고 설치하는 패치관리시스템을 설계 및 구현하였다 또한, 대규모 네트워크를 지원하기 위하여 확장성을 고려한 계층적인 패치 분배 구조로 설계 및 구현하였다.
Operating systems and application programs have security vulnerabilities derived from the software development process. Recently, incident cases related with the abuses of these vulnerabilities are increasing and the damages caused by them are becoming very important security issues all over the nations. Patch management is one of the most important processes to fix vulnerabilities of softwares and to ensure a security of systems. Since an institute or a company has distributed hierarchical and heterogeneous systems, it is not easy to update patches promptly. In this paper, we propose patch management framework to safely distribute and install the patches on Windows, Linux, and Solaris client systems. Besides, we considered extensibility and hierarchical structure for our patch management framework to support large scaled network environment.
국가 안보 및 데이터 주권 관점에서의 드론 공급망 보안 정책 연구 KCI 등재
한국보안관리학회(구 한국경호경비학회) 시큐리티 연구 제87호 2026.06 pp.181-206
※ 기관로그인 시 무료 이용이 가능합니다.
6,400원
본 연구는 드론이 국가 핵심 인프라로 확산되는 환경에서, 드론 부품 공급망의 구조적 취약성과 시스템 보안의 결함이 국가 데이터 주권에 미치는 복합적 위협을 분석하고 정책적 개선 방향을 도출하는 데 목적이 있다. 연구 방법으로는 문헌분석과 비교 법제 분석을 병행하였다. 선행 연구를 통해 공급망 내 신뢰되지 않은 부품이 데이터 유출로 이어지는 경로를 분석하고, 미국(NDAA・Blue UAS)과 유럽(EASA・CRA)의 보안인증 체계를 국내 법제와 비교해 분석하였다. 분석 결과, 국내 드론 보안 정책은 하드웨어 기반 신뢰점(RoT) 검증 부재, 공급망 투명성 결여, 분산된 거버넌스 체계라는 세 가지 한계를 지닌다. 개선방안으로 드론 특화 보안인증 제도의 법제화, SBOM 기반 공급망 관리 체계 도입, 데이터 국외 이전 통제 강화, 범정부 통합 거버넌스 구축을 제안하였다. 본 연구는 드론 보안 담론을 공급망・시스템의 신뢰 구축을 통한 국가 데이터 주권 수호라는 안보 정책 과제로 재구성하였다는 점에서 정책적 의의를 가진다.
This study analyzes the complex threats that drone supply chain vulnerabilities and system security deficiencies pose to national data sovereignty, as drone operations become essential national infrastructure. Rather than treating drone security as a purely technical issue, this research examines it from policy, institutional, and governance perspectives. The study employs content analysis to trace the pathways by which untrusted supply chain components lead to unauthorized data exfiltration, and comparative legal analysis to assess the security certification frameworks of the United States (NDAA, Blue UAS) and the European Union (EASA, CRA) against South Korea's current legal framework. The analysis identifies three critical gaps in South Korea's drone security policy: the absence of hardware-based Root of Trust (RoT) verification, a lack of supply chain transparency, and a fragmented governance structure. In response, the study proposes legislating a drone security certification system, mandating SBOM-based supply chain management, strengthening controls over cross-border data transfers, and establishing an integrated government-wide governance body. This research holds policy significance by reframing drone security as a national security governance challenge centered on safeguarding data sovereignty through trusted supply chains and system integrity.
Derivation of Blueprint for an IoT Device Protection Design through Analysis of MTD Research
한국차세대컴퓨팅학회 한국차세대컴퓨팅학회 학술대회 The 8th International Conference on Next Generation Computing 2022 2022.10 pp.310-313
To increase the convenience in daily life activities, the Internet of Things (IoT) technology has been developed and used; it can achieve a hyper-connected society by connecting various devices and systems through the Internet. In building an IoT environment, the moving target defense (MTD) strategy is used as a method to construct an active defense strategy for a mission-critical system. However, there is a lack of indicators that can easily identify the various properties of the MTD strategy and enable in constructing and establishing a new MTD strategy-based protection plan. To solve this problem, in this paper, we survey various MTD strategy research results and analyze the research that has been conducted to derive the various properties of the three perspectives in the MTD strategy (When to move, What to move, How to move). In addition, based on the various derived properties, we propose a graph that can easily identify the various research results that appear. Additionally, it shows that the combination of various properties can be used as an indicator to understand the research direction of a new protection strategy research based on the software-defined MTD strategy for IoT device protection.
한국정부의 기능주의 대북정책 한계성 및 대안 모색 : 최근 국제정세 및 남북 상호인식변화를 중심으로
한국국가안보국민안전학회 한국국가안보국민안전학회지 제12호 2021.06 pp.7-36
과거 이명박 박근혜 등 보수정부 시절에 금강산 관광 중지 및 개성공단 폐쇄 등 대표적 이고 상징적인 남북교류사업이 수포로 돌아간 사례가 여러 차례 있었다. 진보성향 문재인 정부는 김정은과 긴밀 관계를 유지하면서 미북정상회담을 2차례 이상 성사시켰고, ‘한반도 신경제지도’ 구상과 북한의 특구 전략을 연계해 남북한 모두가 경제적 이익 증대 및 군사 안보적 안정화 유도 등 남북 공동번영을 모색하고 있다는 점에서 남북관계의 질적 전환이 기대되었으나 하노이 미북정상회담 이후 모든 미북 대화채널은 물론 기본적인 남북교류마 저도 일체 중지된 상태이다. 이를 두고 일부 국내외 학자들은 한반도를 둘러싼 핵 이슈 등 현실적 정치안보 환경 요인이 남북간 기능주의적 경제통합 동력을 저해했다는 분석을 내놓고 있다. 저자는 이와 같은 미북관계 등 외부요인도 고려 요소이나 보수정부의 대북 안보인식 및 최근 남북간 국력차이 확대에 의한 북한의 흡수통일 공포의식 확산 등 남북간 내부적 갈등요소도 이와 못지않게 저해요소로 작용했다는 문제의식에서 출발한다. 이 연구 에서는 우선 한국정부의 기능주의가 기초가 되는 역대 대북통합정책에 대한 이론적 배경 과 작동 원리를 다룬다. 1970년대 이후 한국정부가 지속적으로 기능주의적 대북정책을 추 진했음에도 불구하고 남북통합정책이 중단 및 축소과정을 보이며 상대적으로 소기의 성과 를 이룩하지 못한 원인을 밝힌다. 이를 위해 남북경협을 추진한 역대 정부의 대북정책을 ‘기능주의’, ‘신기능주의’, ‘신현실주의’ 이론을 통해 분석한다. 또 남북 경협의 과정을 국제 환경 요인, 남북관계에 영향을 미치는 남북 상호간 요인, 남북 개별 내부요인 등 3가지 차원에서 분석하면서 남북통합 촉진 및 저해 요인은 무엇인지를 구체적으로 분석하고, 나 아가 중단된 남북통합 진전을 위한 구체적 정책대안을 모색해 살펴본다. 남북미 간의 변화가 남북통합이라는 결실로 맺어지기 위해서는 서로 상호작용하는 3가지 요소의 통합적 접 근이 필요하고, 이러한 남북미 3자의 변화된 태도를 이끌어내는 한국 정부의 새로운 통일 전략 수립 및 주도적 실행이 필요하다는 정책대안을 제시한다.
In the past, there have been several cases where representative and symbolic inter-Korean exchange projects such as the suspension of tourism to Mt. Geumgang and the closure of the Kaesong Industrial Complex failed during the conservative administrations such as Lee Myung-bak and Park Geun-hye. The progressive Moon Jae-in administration, maintaining close ties with Kim Jong-un, has held two or more US-DPRK summits, and linked the 'New Economic Map of the Korean Peninsula' with North Korea's special zone strategy to increase economic benefits and induce military and security stabilization in both South and North Korea. A qualitative change in inter-Korean relations was expected in the sense of seeking common prosperity, but after the US-DPRK summit in Hanoi, all channels of US-DPRK dialogue and even basic inter-Korean exchanges have been halted. Regarding this, some domestic and foreign scholars are presenting an analysis that realistic political and security environmental factors such as the nuclear issue surrounding the Korean Peninsula have hindered the functionalist economic integration engine between the two Koreas. The author considers external factors such as the U.S.-North Korea relationship as a factor to consider, but internal conflicts between the two Koreas, such as the conservative government's perception of security in North Korea and the spread of fear of North Korea's absorption and unification due to the recent expansion of the gap in national power between the two Koreas, acted as detrimental factors as well. First of all, this study deals with the theoretical background and working principle of past North Korea integration policies, which are based on the functionalism of the South Korean government. Although the South Korean government has continuously pursued a functionalist policy toward North Korea since the 1970s, the inter-Korean integration policy has been halted or reduced, revealing the reasons why it has not achieved the desired results relatively. To this end, we analyze the North Korea policies of previous governments that promoted inter-Korean economic cooperation through the theories of ‘functionalism’, ‘new functionalism’ and ‘neo-realism’. In addition, by analyzing the process of inter-Korean economic cooperation in three dimensions: international environmental factors, inter-Korean factors that affect inter-Korean relations, and inter-Korean individual internal factors, the inter-Korean integration promotion and hindrance factors are analyzed in detail, and furthermore, the interrupted inter-Korean integration is analyzed. Specific policy alternatives for integration progress will be explored and reviewed. In order for the change between North and South Korea to bear fruit of inter-Korean integration, an integrated approach of three elements that interact with each other is required, and the South Korean government needs to establish a new unification strategy and lead the implementation of the changed attitudes of the three sides.
복잡한 사이버-물리시스템의 확장성, 안전성 및 보안성 연구 KCI 등재
한국산업안보학회(구 한국산업보안연구학회) 한국산업보안연구 제11권 제1호 통권 제20호 2021.04 pp.43-64
※ 기관로그인 시 무료 이용이 가능합니다.
5,800원
사이버-물리시스템이란 외부 환경과 물리적 개체가 상호작용하여 복잡한 기능을 수행하는 시 스템으로, 4차 산업혁명에서는 기반 기술로써 다양한 영역에 적용되고 있다. 이러한 환경의 흐름 속에서 사이버-물리시스템은 복잡해질 것이며, 그로 인해 현재 사이버-물리시스템의 주된 설계 방식인 컴포넌트와 다중 중요도 방식으로는 고도화되는 요구사항을 충족하기 어려울 것으로 전 망된다. 특히 현재의 사이버-물리시스템의 설계 방식은 확장성, 보안성, 안전성의 관점에서 개선 이 필요하다. 해당 관점에서 봤을 때 현재의 설계방식은 설계 대상간 융합에 따른 확장성의 부 족, 보안을 염두에 두지 않은 설계방식, 사이버-물리시스템의 적용 범위 확대에 따른 안전성 요 구사항의 증대가 문제로 분석되기 때문이다. 본 논문에서는 3가지 요구사항에 대한 해결방안으 로써 기존의 컴포넌트와 다중 중요도 설계 방식을 혼합한 설계방식을 제시하였다. 향후 본 연구 를 통해 앞으로의 사이버-물리시스템의 설계에서 확장성, 보안성, 안전성을 염두에 둘 수 있도 록 하여 보안성을 갖춘 사이버-물리시스템이 확산할 수 있도록 하고자 한다.
Cyber-physical system is a system in which physical objects interact with external environments to perform complex functions, and it is expected to be complicated by the fourth industrial revolution. Components and mixed-criticality, which are the main design methods of cyber physics systems, are expected to be difficult to meet the advanced requirements. Especially, the design method of the current cyber-physical system needs to be improved from the perspective of scalability, security and safety. The reason is the lack of scalability due to the convergence between each design object, the design method without security in mind, and the stability due to the expansion of the application range of the cyber-physical system. In this paper, we propose the design method that mixes existing components and mixed-criticality as a solution to the three requirements. In the future, this study aims to spread the cyber physics system with security by allowing scalability, security, and safety to be considered in the future design of cyber-physical system.
최근 클라우드 플랫폼을 효율적으로 사용하기 위한 컨테이너 기술들이 주목을 받고 있다. 컨테이너 가상화 기술은 기존 하이퍼바이저와 비교하였을 때 이식성이 뛰어나고 집적도가 높다는 장점을 가지고 있다. 하지만 컨테이너 가상 화 기술은 하나의 커널을 공유하여 복수개의 인스턴스를 구동하는 운영체제 레벨의 가상화 기술을 사용하기 때문에 인스턴스 간 공유 자원 요소가 많아져 취약성 또한 증가하는 보안 문제를 가지고 있다. 컨테이너는 컴퓨팅 자원의 효율적 운용을 위해 호스트 운영체제의 라이브러리를 공유하는 특성으로 인해 공격자는 커널의 취약점을 이용하여 호스트 운영체제의 루트 권한 획득 공격이 가능하다. 본 논문에서는 컨테이너가 사용하는 특정 메모리 영역의 변화 를 감지하고, 감지 시에는 해당 컨테이너의 동작을 중지시키는 메모리 트랩 기법을 사용하여 컨테이너 내부에서 발 생되는 호스트 운영체제의 루트 권한 탈취 공격을 효율적으로 탐지 및 대응하기 위한 프레임워크를 제안한다.
Recently container technologies have been receiving attention for efficient use of the cloud platform. Container virtualization technology has the advantage of a highly portable, high density when compared with the existing hypervisor. Container virtualization technology, however, uses a virtualization technology at the operating system level, which is shared by a single kernel to run multiple instances. For this reason, the feature of container is that the attacker can obtain the root privilege of the host operating system internal the container. Due to the characteristics of the container, the attacker can attack the root privilege of the host operating system in the container utilizing the vulnerability of the kernel. In this paper, we propose a framework for efficiently detecting and responding to root privilege attacks of a host operating system in a container. This framework uses a memory trap technique to detect changes in a specific memory area of a container and to suspend the operation of the container when it is detected.
온라인 플랫폼서비스 수용의도에 대한 실증연구 - 국제물류중심 KCI 등재후보
대한안전경영과학회 대한안전경영과학회지 제18권 제2호 2016.06 pp.101-107
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
This study is to find out the acceptance intention of international logistics platform which meet the needs of each other of shipper and international logistics company in the online. As you may know, the many korean traditional international logistics companies which have to compete with global logistics companies focused on economics of scale, have been in a big trouble. In this circumstances, though they should get used to the change to survive, they do not know what they try to overcome. So, I hope that this study would be helpful to them
정보보안 전문인력 양성을 위한 교육과정 분석 KCI 등재
대한경영정보학회 경영과 정보연구 제31권 제1호 2012.03 pp.149-165
※ 기관로그인 시 무료 이용이 가능합니다.
5,100원
21세기 신지식정보사회를 맞아 최근 인터넷, 이동통신의 보급이 확대됨에 따라 지식정보화 사회로의 진전이 점점 더 빨라지고 있다. 특히 B2B, B2C 전자상거래, 인터넷뱅킹 등 인터넷을 통한 다양한 정보서비스가 확대됨에 따라 사회 전반적으 로 정보시스템에 대한 의존도가 크게 증가하고 있는 현실이다. 날로 증가하는 이러한 현실과 함께 정보기술(IT)의 발달에 따라 정보시스템에 대한 해킹을 통한 개인정보는 물론 산업정보의 유출이 사회적으로 주요이슈로 부 각되고 있으며, 이에 따른 정보시스템 보안의 중요성이 증대되고 있다. 따라서 정보보호가 제대로 이루어지지 않는다면 국가나 조직이 정상적으로 운영 되기 어려울 정도로 심각한 문제를 야기할 수도 있으며, 특히, 기업 차원에서는 세 계적인 기업으로 발전하기 위한 글로벌 경쟁력을 가질 수 없는 것은 두말할 나위 가 없다. 이에 본 연구는 부산광역시에 소재하고 있는 16개 대학을 중심으로 현행 경영정 보학 교육과정의 수집, 분석을 통하여 시대가 요구하는 정보보안 및 정보보호 전문 인력 양성에 대한 문제점과 개선방안을 모색하고자 하였다. 본 연구의 결과를 제시 하면 다음과 같다. 첫째, 산업현장에서 필요로 하는 실질적인 정보보안 전문인력 교육을 위한 교과과정 개설로의 개선이 필요하다. 둘째, 산업·실무에서도 정보보안 전문인력 양성을 위한 산학연계프로그램 등에 참여하는 등 적극적인 노력을 함께 해야 한다. 셋째, 미국·일본을 비롯한 정보화 선진국에서는 정보보안 제도를 법제 화, 제도화하여 시행하고 있는 바, 우리나라에서도 적절한 법률적, 제도적 측면에서 관련규정의 제․개정이 이루어져야 할 것이다.
Nowadays due to the development of IT, hacking has become a major issue and importance of information system security is rapidly increasing. This research focuses on problems of training system security experts within Korea by analysing university's management information system curriculum and proposes an alternative way to solve this problem. The result of this research is the following. First, reformation of university's curriculum for successfully training system security experts is crucial. Second, theories that was learned in university courses need to be coherent to the actual work that the system security experts do in the field. Lastly, advanced IT countries like the US and Japan have already made standards on training system auditors and reinforced it with laws. Therefore Korea should establish a formal standard system like the other IT industry advanced countries.
MANET은 누구나 쉽게 접속할 수 있는 개방성 때문에 보안에 취약한 부분이 많다. 그리고 노드들의 이동성 때문에 유선 네트워크 환경에서 사용하던 보안 시스템을 그대로 적용하기에는 어려움이 많다. 따라서 이러한 환경에서 공격자의 악의적인 공격으로부터 시스템을 보호하고 즉각적으로 대처해야만 한다. 본 논문에서는 악의적인 공격을 탐지할 수 있도록 규칙들의 집합을 정의하고 이와 일치 여부를 판단하여 침입을 탐지하는 침입탐지시스템을 제안한 다. 또한 패킷의 감시 효율성을 높이기 위해 클러스터 헤드가 감시 노드의 역할을 수행하게 된다.
MANET has a lot of weakness to security because of opening that everybody can connect easily. It is difficult that existing security system itself is applied as mobility of nodes. Therefore, system is protected from malicious attack of intruder in this environment and it has to correspond to attack immediately. In this paper, to detect malicious attack of intruder, we propose intrusion detection system which detects intrusion after it is defined gathering of rules and judges whether it corresponds or not. Cluster head performs role of monitor node to raise monitor efficiency of packet.
[NRF 연계] 한국사회복지정책학회 사회복지정책 Vol.28 2007.04 pp.55-74
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
As though the national pension’s problem is not only limited in the financial sustainability, policy reform to achieve financial stability is necessarily required. What has to be considered is that policy to solve the financial problem inevitably brings the transformation of the entire social security system. Today the government is making a trial to transform the single-pillar system into multi-pillar system. However, it seems to fail to clarity the role and function of the public pension as a first-pillar and occupational pension as a second-pillar. Current pension reform proposal, which plans to reduce the benefit level at the same rate to the entire participants, shows the critical defect which might cause the standard of living lower than the minimum subsistence level to the low and medium income workers. In addition, proposed old-age allowance system, containing the obvious political intention, raises the poor equity problem among the poor, arbitrarily dividing them by age and income level. In order to solve these problems, this study proposes the applied model of minimum pension and maximum pension system. At the same time, all the efforts to solve the complaints, mistrust, and instability have to be made continuously.
[NRF 연계] 한국통신학회 ICT Express Vol.11 No.5 2025.10 pp.909-913
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
Non-orthogonal multiple access (NOMA) and reconfigurable intelligent surface (RIS) are critical technologies for future wireless communications that provide spectral efficiency while consuming little power. In this research, we explore the security of a downlink NOMA wireless relay network that incorporates the RIS and Fountain Codes (FCs) technique. To assess system performance and security, we compute closed-form formulas for outage probability (OP) and intercept probability (IP). Furthermore, deep neural networks (DNNs) are used in the system model to evaluate and optimize OP and IP. Monte Carlo simulations are used to validate the theoretical conclusions, yielding the following major insights: (i) The major goal of these simulations is to validate analytical expressions. (ii) This study greatly improves our understanding of RIS-NOMA systems, setting the groundwork for future research into actual implementations. (iii) The results further illustrate the better performance of RIS-NOMA by evaluating important system factors such as the number of reflecting elements, the user threshold rate and the maximum number of encoded packets.
Security methods for AI based COVID-19 analysis system : A survey
[NRF 연계] 한국통신학회 ICT Express Vol.8 No.4 2022.12 pp.555-562
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
Rapid progress and widespread outbreak of COVID-19 have caused devastating influence on the health systems all around the world. The importance of countermeasures to tackle this problem lead to widespread use of Computer Aided Diagnosis (CADs) applications using deep neural networks. The unprecedented success of machine learning techniques, especially deep learning networks in medical images, have led to their recent prominence in improving efficient diagnosis of COVID-19 with increased detection accuracy. However, recent studies in the field of security of AI-based systems revealed that these deep learning models are vulnerable to adversarial attacks. Adversarial examples generated by attack algorithms are not recognizable by the human eye and can easily deceive the state-of-the-art deep learning models, therefore they threaten security-critical learning applications. In this paper, the methodology, results and concerns of recent works on robustness of AI based COVID-19 systems are summarized and discussed. We explore important security concerns related to deep neural networks and review current state-of-the-art defense methods to prevent performance degradation.
환경설계를 통한 범죄예방(CPTED)과 시큐리티시스템(Security System) 간 연계방안 KCI 등재후보
한국보안관리학회(구 한국경호경비학회) 시큐리티 연구 제19호 2009.06 pp.165-185
※ 기관로그인 시 무료 이용이 가능합니다.
5,700원
본 연구는 우리나라의 범죄실태 분석을 통한 주거환경과 범죄발생 간의 관계를 분석하고, 국내․외 CPTED 추진사례, CPTED와 시큐리티시스템 간의 관계분석을 통하여 CPTED와 시큐리티시스템 간의 연계방안을 제시하였다.본 연구에서 도출된 연구결과는 다음과 같다.첫째, 다수의 인구가 밀집한 도시 및 주거지역 범죄예방을 위하여 CPTED 및 시큐리티시스템의 도입이 필요하다. 둘째, CPTED와 시큐리티시스템은 도시 및 주거지역 범죄예방을 위하여 상호 보완하여 활용되어야 한다. 셋째, CPTED 설계 시에는 세부설계전략과 고려사항에 맞는 시큐리티시스템 구성요소를 적재적소에 사용해야 한다. 넷째, CPTED와 시큐리티시스템 간의 연계를 위해 CPTED에 대한 국가 차원의 정책 추진, 시큐리티시스템의 지속적인 발전을 위한 관심 경주, CPTED와 시큐리티시스템에 대한 공경비와 민간경비 간의 유기적인 협력 등이 필요하다.
This research presented a plan of connection between CPTED and Security System through analyzing relation between crime occurrence and residence environment, CPTED propulsion examples on domestic-oversea, relation between CPTED and Security System.The following was the result of the study.First, we should import CPTED and Security System for city and residential area crime prevention.Second, we should know that CPTED and Security System are not each other but complementary cooperation.Third, we must use Security System components correctly in CPTED's details design plan and consideration regard when we design CPTED.forth, we must develop and keep a plan of connection between CPTED and Security System.
A Study Medium-based safe File Management Security System on the cloud Environment KCI 등재
중소기업융합학회 융합정보논문지(구 중소기업융합학회논문지) 제9권 제1호 2019.01 pp.142-150
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
본 연구는 블루투스 기반의 암호모듈을 활용하여 전산기 및 클라우드 데이터를 암․복호화 하는 파일관리 보안시스템으로 개인정보의 오남용과 사회적, 국가적 정보보호 측면에서 반드시 필 요한 솔루션이다. 클라우드 환경에서 SFMS(; Safe File Management Security) 관련 블루투스 암호 모듈에 대한 H/W와 S/W를 개발하여 펌웨어 개발과 암호키 생성 및 발급, 시스템 모바일용 Client 프 로그램, 키 관리 시스템 등을 적용하였다. 단말 내부 암․복호화는 파일별로 키값이 별도로 존재함으로 해킹 자체가 원천적으로 불가능 한 높은 안전성을 확보할 수 있는 SFMS 개발하였다.
This study is a file management security system that encrypts and decrypts computer and cloud data by using Bluetooth based cryptographic module. It is a necessary solution in terms of abuse of personal information and protection of social and national information. We developed H/W and S/W for SFMS(: Safe File Management Security) related Bluetooth module in cloud environment and implemented firmware development, encryption key generation and issuance, client program for system mobile and key management system. In the terminal internal encryption and decryption, SFMS was developed to ensure high security that the hacking itself is not possible because key values exist separately for each file.
A study on the security service system in electronic commerce based on the cssm api
한국경영정보학회 한국경영정보학회 정기 학술대회 2000 MIS/OA International Conference 2000.06 pp.527-531
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
Development of high-reliability multi-bio authentication system for strong security authentication
한국차세대컴퓨팅학회 한국차세대컴퓨팅학회 학술대회 The 7th International Conference on Next Generation Computing 2021 2021.11 pp.155-157
Recently, with the development of IT technology, interest in technology using bio-signals is increasing, and biometric authentication technology using a part of the human body or behavioral characteristics are widely used in communication, automobile, security, medical care, corporate marketing, and public fields. However, as the importance of security increases, the awareness of security is being reevaluated, and there are security problems against the vulnerability of attacks on information transmitted in all transactions and forgery and falsification of existing biometric authentication. Accordingly, recently, research on a method for authenticating a user using two or more different authentication factors has been actively conducted. In this study, we propose to develop a multi-bio authentication system that guarantees increased convenience and high reliability through the development of a security-strong system with bio-signal-based next-generation bio-authentication.
Review on Security Communication Environment in Intelligent Vehicle Transport System KCI 등재후보
중소기업융합학회 융합정보논문지(구 중소기업융합학회논문지) 제7권 제6호 2017.12 pp.97-102
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
본 논문에서는 연구목적과 관련하여, 협업 지능형교통체계와 자율주행체계에 관심을 가지고 있으며, C-ITS 특성 가운데 핵심 전달 메시지인 CAM과 DENM 특성 분석, 또한 V2X 통신의 보안 특성과 함께 CAM 및 DENM 메시지의 보안 인증서 및 헤더 구조를 중심으로 분석에 초점을 맞추고 있다. 연구방법에 대해, 우리는 CAM 메시지 인 차량의 위치와 상태를 알리는 메시지를 분석하고, DENM 메시지인 차량 사고와 같은 이벤트를 알리는 메시지를 분석하고, 이를 지원하는 보안통신 특성을 분석한다. 차량통신에 사용하는 보안헤더와 인증서 형식과 함께, 차량용 서명된 인증서 검증 절차, 그리고 차량용PKI 특성을 얻었다. 아울러, V2X 보안통신을 위해 필요로 하는 보안 동기패 턴에 대한 특성과 전송능력에 대해서도 함께 유도할 수 있었다. 그러므로 본 논문은 C-ITS 환경에서 DENM 및 CAM을 전송하는 통신 서비스를 위한 보안 특성을 고려할 때 의미 있는 결과라 할 수 있다.
In this paper, we have interested in cooperative intelligent transport system and autonomous driving system, and focused on analysis of the characteristics of Cooperative Awareness Message (CAM) and Decentralized Environmental Notification Basis Service (DENM) message, which is key delivery message among cooperative intelligent transport system (C-ITS) characteristics for research objectivity. For research method, we also described V2X communication, and also analyzed the security certificate and header structure of CAM and DENM messages. We described CAM message, which is a message informing the position and status of the vehicle. And the DENM message is presented a message informing an event such as a vehicle accident, and analysis security communication, which is supported services. According to standard analysis result, 186 bits or 275 bits are used. In addition to the security header and the certificate format used for vehicle communication, we have gained the certificate verification procedure for vehicles and PKI characteristics for vehicles. Also We derived the characteristics and transmission capability of the security synchronization pattern required for V2X secure communication. Therefore when it is considered for communication service of DENM and CAM in the C-ITS environment, this paper may be meaningful result.
위기관리 이론과 실천 한국위기관리논집 제6권 1호 2010.03 pp.261-277
※ 기관로그인 시 무료 이용이 가능합니다.
5,100원
The civil defense system in South Korea has a great contribution in deterring war threats from North Korea and protecting people's life and safety from various disasters and catastrophe accidents. Nevertheless, the global change in the post-Cold War era and the attitude change in recognizing North Korea as a national community member and a reconciliation and cooperation partner have deepened into' a national security and defense insensibility,' and neglected the general concern for civil defense including 'a sense of safety.' In other words, our national sense of security and the national needs and justification for the civil defense system are inclined to decrease, and what is worse, a skepticism on the civil defense system becomes conspicuous. Nonetheless, it is time the civil defense system should be reborn as a powerful organization to respond to unexpected disasters and security threats from North Korea, and changed resolutely into a system getting along with the citizens in life to meet the needs of the time. In this context, this study presents a direction of development for the Korean civil defense system as follows: Firstly, the current legal fabric for civil defense and disaster management in South Korea is scattered among separate laws, and the disaster management affairs are overlapped or scattered among many agencies. Thus, for efficient disaster management, the overlapped and scattered disaster management works should be readjusted. Secondly, the Korean government set up "National Emergency Management Agency" as well as "the Disaster and Safety Management Office" in the Ministry of Public Administration and Security, but still these do not equal the dedicated organizations with the comprehensive security concept, which covers all natural disasters, manmade disasters, civil defense, critical infrastructure protection, cyber terrors and biological disasters aimed by advanced countries in the field of disaster prevention. Therefore, it is required to set up a dedicated organization for civil defense, and specialize its personnel. Thirdly, the civil defense system should be reset to infuse a sense of national security into the people about unexpected provocations from North Korea, and to protect the people from globalized terrors and various disasters. Lastly, the civil defense education and training system should clearly regulate its field and mission, and it should be established as the demand-focused education and training in life. The education and training should be developed and operated in accordance with the real situation in the future.
0개의 논문이 장바구니에 담겼습니다.
선택하신 파일을 압축중입니다.
잠시만 기다려 주십시오.