년 - 년
블록 체인 기반의 다중 그룹 요소를 이용한 사용자 프라이버시 관리 모델 KCI 등재
중소기업융합학회 융합정보논문지(구 중소기업융합학회논문지) 제8권 제5호 2018.10 pp.107-113
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
IT 기술 중 빅 데이터와 인터넷 기술이 급속하게 발달함에 따라 중요 데이터를 USB와 같은 외부 저장장치에 저장하지 않고도 인터넷이 연결되어 있는 곳이면 어디든지 클라우드 환경에 저장된 데이터를 사용할 수 있는 환경으로 바뀌어 가고 있다. 그러나, 클라우드 환경에서 처리되는 데이터가 손쉽게 일반 사용자들이 처리할 수 있는 환경으로 바꿔가면서 사용자의 프라이버시 정보에 대한 보호의 중요성이 점점 증가하고 있다. 본 논문에서는 클라우드 환경에서 사용되는 정보를 제3자에게 노출시키지 않으면서 사용자의 서비스 질을 향상시킬 수 있는 관리 모델을 제안한다. 제안 모델은 다양한 클라우드 환경에서 처리되고 있는 데이터들 중에서 사용자의 프라이버시 정보를 제3자가 악의적으로 처리하지 못하도록 사용자 그룹을 가상의 환경으로 그룹핑한 후 identity 속성과 접근제어 정책을 블록 체인으로 처리한다. 특히, 클라우드 환경에서 처리되는 데이터의 처리 효율성에 대한 성능을 향상시키기 위해서 개인 정보와 계산 집약적인 암호 정책은 오프 체인에서 실행하도록 하였다.
With the rapid development of big data and Internet technologies among IT technologies, it is being changed into an environment where data stored in the cloud environment can be used wherever the Internet is connected, without storing important data in an external storage device such as USB. However, protection of users' privacy information is becoming increasingly important as the data being processed in the cloud environment is changed into an environment that can be easily handled. In this paper, we propose a user-reserving management model that can improve the user 's service quality without exposing the information used in the cloud environment to a third party. In the proposed model, user group is grouped into virtual environment so that third party can not handle user‘s privacy information among data processed in various cloud environments, and then identity property and access control policy are processed by block chain.
클라우드 환경에서 관리자 역할을 강화한 사용자 프라이버시 보호 모델 KCI 등재
중소기업융합학회 융합정보논문지(구 중소기업융합학회논문지) 제8권 제3호 2018.06 pp.79-84
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
클라우드 서비스는 다양한 매체를 통해 손쉽게 사용할 수 있어 많은 사용자로부터 많은 각광을 받고 있다. 그러나, 클라우드 서비스를 사용하는 사용자의 프라이버시를 악용하는 다양한 보안 피해가 증가하고 있어 이를 예방할 수 있는 기술 들이 부족한 상황이다. 본 논문에서는 클라우드 환경에서 사용자의 프라이버시를 제3자가 불법적으로 악용하지 않도록 사용 자의 프라이버시를 안전하게 보호하기 위한 보호 모델을 제안한다. 제안 모델은 중간 관리자와 클라우드 서버의 역할을 강 화하기 위해서 사용자의 서명을 랜덤하게 분할 관리하고 있다. 제안 모델에서 사용자의 프라이버시 정보는 보안함수와 사용 자 서명을 통해 클라우드 서버가 사용자에게 제공하고 있기 때문에 제3자에게 불법적으로 유출되는 것을 막고 있다. 또한, 사용자의 프라이버시 보호에 곱셈군의 랜덤수와 일방행 해쉬 함수를 해쉬체인으로 묶음으로써 사용자의 서명을 안전하게 사용할 수 있다. 성능평가 결과, 제안 모델은 기존 모델보다 데이터의 처리시간이 평균 24.5% 향상된 결과를 얻었고, 사용자의 프라이버시 정보를 그룹 관리하기 때문에 기존 모델보다 효율성이 13.7% 향상되었다.
Cloud services are readily available through a variety of media, attracting a lot of attention from users. However, there are various security damages that abuse the privacy of users who use cloud services, so there is not enough technology to prevent them. In this paper, we propose a protection model to safeguard user 's privacy in a cloud environment so as not to illegally exploit user' s privacy. The proposed model randomly manages the user 's signature to strengthen the role of the middle manager and the cloud server. In the proposed model, the user's privacy information is provided illegally by the cloud server to the user through the security function and the user signature. Also, the signature of the user can be safely used by bundling the random number of the multiplication group and the one-way hash function into the hash chain to protect the user's privacy. As a result of the performance evaluation, the proposed model achieved an average improvement of data processing time of 24.5% compared to the existing model and the efficiency of the proposed model was improved by 13.7% than the existing model because the user 's privacy information was group managed.
클라우드 환경에서 이중 복제 키를 사용한 사용자 프라이버시 보호 기법 KCI 등재
한국융합학회 한국융합학회논문지 제9권 제4호 2018.04 pp.9-14
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 인터넷 속도가 빨라지면서 클라우드 환경에서는 서비스 수신 장치가 일반 PC에서 휴대폰 또는 태블릿 PC 등의 소형 장치로 변화되고 있는 추세이다. 휴대폰 또는 태브릿 PC 등과 같은 소형 장치들은 유선보다는 무선에서 사용되 는 경우가 많기 때문에 제3자로부터 악의적으로 개인 정보가 노출될 수 있는 문제점이 많다. 본 논문에서는 다양한 무선 매체를 통해서 서비스되고 있는 클라우드 서비스 중에서 사용자의 프라이버시를 제3자로부터 안전하게 보호할 수 있는 이 중 복제키 생성 과정을 통한 사용자 프라이버시 보호 기법을 제안한다. 제안 기법은 복제된 키를 서버와 중간 장치의 동기화 를 위해서 사용되며, 사용자의 프라이버시를 보호하는 인증 처리 과정의 시간을 단축하는 것을 목표로 한다. 이 때, 제안 기법은 서버와 중간 장치의 동기화에 Interleave() 함수와 랜덤수를 사용하기 때문에 제3자의 악의적인 공격을 안전하게 예방할 수 있다.
Recently, as the internet speed is getting faster, in the cloud environment, the service receiving device is changing from a general PC to a compact device such as a mobile phone or a tablet PC. Since handheld devices such as mobile phones or tablet PCs are often used in wireless rather than wired, there are many problems that personal information may be exposed maliciously from a third party. In this paper, we propose a user privacy protection scheme through a duplicate duplicate key generation process which can safely protect user 's privacy from third party among cloud services being served through various wireless media. The proposed scheme is used to synchronize the duplicated key between the server and the intermediary device, and aims at shortening the time of the authentication process protecting the user 's privacy. In this case, the proposed scheme uses Interleave() function and random number to synchronize the server and the intermediary device, so it can safely prevent the malicious attack of the third party.
SNS 환경에서 신뢰성이 강한 사용자 프라이버시 모델 설계 KCI 등재
한국디지털정책학회 디지털융복합연구 제11권 제1호 2013.01 pp.237-242
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 페이스북(Facebook)과 트위터(Twitter) 등의 폭발적인 성장에 따라 SNS는 사회적·학문적인 관심의 대상으로 부상하고 있다. 그러나, SNS는 이용자의 신상 정보와 사적인 의견 교환을 근간으로 사용자의 프라이버시가 노출될 수 있는 문제가 존재한다. 본 논문에서는 현재 SNS에서 이용자의 개인 프라이버시를 보호하기 위해 사용되고 있는 블록킹 대신 데이터 분리와 데이터 허위 정보를 이용한 SNS 사용자 프라이버시 보호 모델을 제안한다. 제안 모델은 사용자의 내용 정보를 분리하여 분리된 내용 정보에 허위 정보를 추가함으로써 제3자가 사용자의 내용 정보를 수집하여도 정확한 정보를 추출하지 못하도록 하고 있다. 또한, 제3자가 이용자의 정보를 불법적으로 악용하지 않도록 SNS 서비스 제공자가 이용자의 정보를 활용할 경우 이용자에게 사전에 동의를 구한다.
SNS is emerging as an academic and social interest, as Facebook and Twitter are developed explosively. But, SNS has a problem of exposing user's privacy because it is originated by exchanging user's personal information and opinion. This paper proposes SNS user privacy protecting model using data separation and false data information instead of blocking which is using to protect user's personal privacy. The proposed model do not let the third party extract precise information after collecting user's context information by adding false information to separated context information. Also, it gets user's agreement beforehand if SNS service provider uses user's information not to be used illegally by the third party.
모바일 리더 사용자의 프라이버시를 위한 해쉬함수 기반의 RFID 검색 프로토콜 KCI 등재후보
한국차세대컴퓨팅학회 한국차세대컴퓨팅학회 논문지 Vol.6 No.6 2010.12 pp.4-15
RFID 태그 검색 프로토콜에서는 모바일 리더가 특정 태그를 찾기 위해 무선통신이 불가능한 지역에 가게 되었을 경우, 백-엔드-데이터베이스를 대신해서 특정한 태그의 검색이 가능해야한다. 또한 RFID 검색 프로토콜에서는 사용자가 태그가 아닌 모바일 리더를 소지하기 때문에 모바일 리더 사용자의 프라이버시가 고려되어야 한다. Tan 등에 의해 최초로 제안된 RFID 검색 프로토콜들은 모바일 리더의 ID 값을 공개된 형식으로 전송하기 때문에, 모바일 리더 소지자의 프라이버시에 심각한 문제가 발생할 수 있다. 본 논문에서는 이러한 문제를 해결하여, 모바일 리더 사용자의 프라이버시를 제공함과 동시에, 통신라운드의 횟수도 함께 개선한 향상된 RFID 태그 검색 프로토콜을 제안한다.
In RFID tag search system, handheld reader should search the specific tag without help of the back-end-database even though the handheld reader cannot connect with the back-end-database because of unreliable wireless connection or remote location. In addition, in RFID tag search system, the privacy of mobile users should be considered because users hold not the tag but the mobile reader. RFID tag search protocols were firstly discussed by Tan et al. can cause serious problem to the privacy of mobile reader users because the reader identifier is openly transferred. In this paper, we proposed a improved RFID tag search protocol that provides the privacy of mobile reader user by solving this problem and at the same time, also improves the number of communication rounds.
수동 RFID태그를 위한 트리 기반 무기억성 충돌 방지 알고리즘의 도청 취약성 분석 KCI 등재
한국차세대컴퓨팅학회 한국차세대컴퓨팅학회 논문지 Vol.7 No.2 2011.04 pp.30-39
다중 태그 인식과정에서 발생하는 충돌문제는 RFID에서 핵심 과제이며, 이 문제는 충돌방지 알고리즘을 통하여 해 결할 수 있다. 하지만 충돌방지 알고리즘을 이용하여 리더가 질의하고 태그가 응답하는 과정 속에 태그의 정보가 제 3자에게 노출되어 사용자 프라이버시 침해 문제가 발생한다. 본 논문에서는 기존에 제안된 트리기반 메모래스 알고 리즘인 트리워킹 알고리즘, 쿼리트리 알고리즘, 향상된 쿼리트리 알고리즘이 스니핑 기법에 얼마나 보안에 견고한지 살펴본다. 세 가지 알고리즘 모두 도청자가 RFID 리더의 전파영역과 태그전파 영역 안에 있으면 모든 태그를 정확 히 도청하다. 하지만 도청자가 RFID 리더의 전파 영역에만 있을 경우 트리워킹 알고리즘은 보안에 매우 취약하며 쿼리 트리 알고리즘과 향상된 쿼리 트리 알고리즘의 경우 트리 워킹 알고리즘보다 보안에 견고하다. 향상된 퀴리 트 리 알고리즘의 경우 퀴리 트리 알고리즘보다 충돌방지 기능은 우수하나, 보안의 경우 쿼리트리 알고리즘이 더 우수 하다. 왜냐하면 쿼리트리의 경우 무응답 상황이 존재하기 때문에 도청자는 무응답을 인식할 수 없기 때문이다.
The collision occurs in the course of multi-tag identification process is the critical issue in RFID and can be solved by Anti-Collision Algorithms (ACA). However, while RFID reader asks and the passive tag answers using ACA, an infringement of privacy occurs, that is, the tag information is exposed to a third party. This study looks at how robust the previously proposed Tree-based Memoryless Algorithms-the tree walking algorithm, query tree algorithm, and advanced query tree algorithm–are against the sniffing method in terms of security. This study found out that, in all three algorithms, a wiretapper can precisely eavesdrop on all tags as long as he/she is within the propagation area of the RFID reader and the tag propagation area. If a wiretapper is only within the propagation area of the RFID reader, the tree walking algorithm is highly vulnerable in security while the query tree algorithm and advanced query tree algorithm show more security than the tree walking algorithm. The advanced query tree algorithm has better anti-collision function than the query tree algorithm. On the other hand, query tree algorithm has better security robustness than the advanced query tree algorithm because query tree algorithm includes non-response moments which a wiretapper is not able to tell.
A Step towards User Privacy while Using Location-Based Services
[Kisti 연계] 한국정보처리학회 Journal of information processing systems Vol.10 No.4 2014 pp.618-627
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
Nowadays mobile users are using a popular service called Location-Based Services (LBS). LBS is very helpful for a mobile user in finding various Point of Interests (POIs) in their vicinity. To get these services, users must provide their personal information, such as user identity or current location, which severely risks the location privacy of the user. Many researchers are developing schemes that enable a user to use these LBS services anonymously, but these approaches have some limitations (i.e., either the privacy prevention mechanism is weak or the cost of the solution is too much). As such, we are presenting a robust scheme for mobile users that allows them to use LBS anonymously. Our scheme involves a client side application that interacts with an untrusted LBS server to find the nearest POI for a service required by a user. The scheme is not only efficient in its approach, but is also very practical with respect to the computations that are done on a client's resource constrained device. With our scheme, not only can a client anonymously use LBS without any use of a trusted third party, but also a server's database is completely secure from the client. We performed experiments by developing and testing an Android-based client side smartphone application to support our argument.
A Critical Literature Analysis of Library and User Privacy
[Kisti 연계] 건국대학교 지식콘텐츠연구소 International journal of knowledge content development & technology Vol.7 No.2 2017 pp.53-83
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
This research aims at identifying through literature analysis the extent of past research related to the protection of personal information and privacy of library users. This study was conducted in 3 stages of literature analysis suggested by other researchers, including Powell (2005). First, I found and collected literature related to personal information and library user privacy. Second, I reviewed the collected literature and identified detailed subjects and core concepts. Third, I analyzed the core subjects, main discussion points, and related examples shown in those papers divided into 7 subgroups. I examine library privacy from various angles through literature analysis, and the results of this paper would be useful for establishing library privacy policies and developing guidelines for librarians.
[Kisti 연계] 한국정보처리학회 Journal of information processing systems Vol.19 No.6 2023 pp.767-777
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
In modern society, user privacy is emerging as an important issue as closed-circuit television (CCTV) systems increase rapidly in various public and private spaces. If CCTV cameras monitor sensitive areas or personal spaces, they can infringe on personal privacy. Someone's behavior patterns, sensitive information, residence, etc. can be exposed, and if the image data collected from CCTV is not properly protected, there can be a risk of data leakage by hackers or illegal accessors. This paper presents an innovative approach to "machine learning based reversible chaotic masking method for user privacy protection in CCTV environment." The proposed method was developed to protect an individual's identity within CCTV images while maintaining the usefulness of the data for surveillance and analysis purposes. This method utilizes a two-step process for user privacy. First, machine learning models are trained to accurately detect and locate human subjects within the CCTV frame. This model is designed to identify individuals accurately and robustly by leveraging state-of-the-art object detection techniques. When an individual is detected, reversible chaos masking technology is applied. This masking technique uses chaos maps to create complex patterns to hide individual facial features and identifiable characteristics. Above all, the generated mask can be reversibly applied and removed, allowing authorized users to access the original unmasking image.
클라우드 컴퓨팅에서 패스워드기반의 사용자 정보 가상화를 통한 사용자 프라이버시 보장 기법
중소기업융합학회 융합정보논문지(구 중소기업융합학회논문지) 제1권 제1호 2011.11 pp.29-37
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
도서관이용자프라이버시에 대한 교육전후의 이용자인식변화 분석 연구
[Kisti 연계] 한국정보관리학회 정보관리학회지 Vol.32 No.1 2015 pp.63-84
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
이용자들은 도서관을 이용하기 위해 개인정보를 도서관에 제공해야 한다. 본 연구에서는 이러한 이용자들을 대상으로 도서관 이용자 프라이버시에 대한 인식을 조사하고 프라이버시 관련 교육을 제공한 후 교육효과를 측정하고자 하였다. 그 결과, 첫째, 본인 프라이버시에 대한 관심도, 도서관 이용자 프라이버시 문제의 심각성, 프라이버시 침해 가능한 도서관 데이터요소 등에서 교육 후 인식변화가 크게 일어났다. 둘째, 이용자들은 현재 도서관에서 수집하고 있는 이용자에 대한 서비스 기록이 이용자 프라이버시를 어느 정도 침해할 것이라고 생각하고 있는지에 대해 25개 항목 모두에서 교육 후 큰 인식 변화가 있었다. 셋째, 도서관 이용자 프라이버시 보호를 위해 도서관 및 사서가 수행해야 할 노력에 대해 15개의 문항 모두 교육 후 평균값이 유의하게 올라갔음을 알 수 있었다. 넷째, 도서관 이용자는 도서관 기록의 열람 및 취급에 있어 정당한 절차가 필요하다고 인식하게 되었으며 이를 위한 절차의 필요성에 공감하고 있다는 것을 알 수 있다. 다섯째, 도서관 기록이 유출되었을 경우 이용자가 느끼는 심각성은 매우 높은 것으로 나타났다.
Library users must provide their personal information to libraries. This study surveyed these library users' perception of privacy and the effect of the education after providing library user privacy education. As a result, first, it was found that after education, users were more interested in their privacy, rated the problem of library user privacy as more severe, and rated library user data collection as more likely to be considered privacy invasion. Second, we investigated users' perception of how much user service records being collected in libraries violate users' privacy, which showed a great perception change in 25 questions after the education. Third, in the survey about library and librarians' efforts for protecting library user privacy, it was found that all 15 questions were rated as significantly more important after education. Fourth, library users have recognized that is necessary to process and handle the library record and are more sympathetic to the need for this procedure. Fifth, library users felt the possibility of a library record leak was a very serious threat.
스마트폰 사용으로 인한 사용자 프라이버시 피해 현황 분석
중소기업융합학회 융합정보논문지(구 중소기업융합학회논문지) 제4권 제4호 2014.12 pp.13-18
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
스마트폰 개발의 발전으로 인하여 사용자의 스마트폰 사용율이 PC 사용율보다 점점 높아지고 있는 실정이 다. 스마트폰 사용이 대중화되면서 스마트폰 사용자의 개인신상정보, 금융 정보와 같은 중요한 프라이버시 정보들을 보호하는 연구는 현재 미미한 상태이다. 본 논문에서는 현재까지 연구되었던 스마트폰의 다양한 취약점에 대해서 분 석하고 스마트폰 보안 공격 방법에 대한 대응방법 및 스마트포 소비자 분쟁 해결 기준들을 제시한다. 특히, 스마트 폰에서 발생하기 쉬운 보안 위협(네트워크, 악성코드, 훔쳐보기 공격 등)을 통해 사용자의 개인정보 유출이나 금전적 손실과 같은 직접적인 피해를 최소화하기 위한 방법들을 분석한다.
The usage rate of user due to advances in smartphone development is higher than the usage rate to use a PC. However, smartphone usage popularized research to protect sensitive information, such as smart phone users personal information, financial information is a small state. In this paper, we analyzed the various vulnerabilities in smartphone studies to date have been looking into the corresponding port smart consumer dispute resolution methods and criteria for smartphone security attack methods and analysis. In particular, the threat of such a network, malware, Peep attack of the security threats arising from the smartphone they can avoid or mitigate threats to minimize the smartphone security damage is done to the disclosure of personal information, such as direct damage or financial loss the analysis of that method.
소셜 네트워킹 사이트(Social Networking Site)상의 개인정보의 프라이버시에 대한 연구 - 최근 미국 판례를 중심으로 - KCI 등재
한국지식재산학회 산업재산권 제37호 2012.04 pp.337-376
※ 기관로그인 시 무료 이용이 가능합니다.
8,500원
The absolute anonymity on the Internet has gone away. Along with the emergence and the explosive growth of social networking sites, digital dossier created by aggregating personal information on social networking sites like Facebook, MySpace and Twitter has an effect on the person's real life counterpart. Unlike politicians, businessmen and celebrities, a general user utilize social networking sites to communicate with her "friends" who have been invited by the user based on the existing relationship, and the user does not expect her personal information on her profile, pictures, comments on a "wall" to be shared or disseminated to third parties or to the public. Therefore, if the user's personal information that is allowed only for the user's friends or a certain group of people to access has been disseminated, it can cause harm, especially with respect to individual privacy. In recent years, social networking sites have turned out to be a primary source of evidence in legal proceedings. It has become more important to determine who controls the user's privacy on social networking sites. It has been well settled that a user has no privacy interest in her personal information disclosed to the general public because the information is no longer a "private fact" that can be protected from public disclosure. When the user utilized the available privacy settings on Facebook and MySpace to restrict access to only those “friends” she wanted to share information with, the question arises as to whether the user can assert her privacy right against unauthorized disclosure of her personal information. On this issue, the courts in each coast of the U.S. have reached different conclusions. In Romano v. Steelcase, Inc., the New York court found that the user had no reasonable expectation of privacy in what she posted to her Facebook and MySpace pages, regardless of her individual privacy settings, and granted defendants access to the plaintiff’s current and historical Facebook and MySpace pages and accounts, including all deleted or archived content. In Crispin v. Audigier Inc., however, the California court recognized the difference between private messages and comments posted on a "wall" accessed by the user's "friends" or the public, and inferred the user's subjective expectation of privacy from her privacy setting. In denying the user's reasonable expectation of privacy, the New York state court reasoned that the user's personal information which the user restricted access by adjusting her privacy setting still can be accessed by the user's friends and social networking site operators. In addition, the court gave a significant weight to the fact that most social networking sites provided privacy policies and recognized that the user was informed that her personal information might be disseminated by her friends or third parties. On the other hand, the California court distinguished private messages from posting and personal information disclosed to the public, and potentially recognized the user's reasonable expectation of privacy for the personal information with restricted access. Furthermore, the privacy policy of social networking sites could be interpreted as a warning to avoid the subsequent legal liability. The existing concept of privacy and current privacy legislation are subject to the physical space. Privacy concerns and personal relationship in cyberspace are different from those in the real world. It might be required to reform the evolving privacy concept to reflect the nature of cyberspace having no walls, floor and ceiling and "shallow friendships" on social networking sites. This paper will examine the reasoning behind these decisions with respect to privacy issues on social networking, and propose solutions to privacy protection in cyberspace.
5G의 이질적인 환경에서 사용자 프라이버시를 효율적으로 보호하기 위한 다중 그룹 정보 관리 기법 KCI 등재
중소기업융합학회 융합정보논문지(구 중소기업융합학회논문지) 제9권 제7호 2019.07 pp.1-7
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
최근 차세대 무선통신인 5G가 일상 생활에서 실용화되면서 다양한 분야에서 많은 변화가 이루어지고 있다. 그러나, 5G의 향상된 속도와 지연 시간이 개선되었지만 여전히 사용자 보안에 대한 개선이 요구되어 지고 있다. 본 논문에서는 5G의 이질적인 환경에서 사용자의 프라이버시 정보를 효율적으로 보호하기 위한 다중 그룹의 정보 관리 기법을 제안한다. 제안 기법은 서로 다른 이기종의 장치에서 생성되는 사용자의 프라이버시 정보를 서로 다른 그룹에서 연계 처리할 수 있도 록 연계 정보를 클러스터링하여 분산 관리할 수 있도록 하는 것이 목적이다. 제안 기법은 주기적으로 사용자의 프라이버시 정보를 동기화하여 사용자별 프라이버시 정보를 가상의 공간에서 독립적으로 처리한다.
With the recent commercialization of the next generation of wireless 5G in everyday life, many changes have been made to organizations, industries and businesses of various sizes in various fields. However, although the improved speed and latency of 5G has improved, improvements in encryption, authentication and privacy are still required. In this paper, multiple groups of information management techniques are proposed to efficiently protect users' privacy in the heterogeneous environment of 5G. The proposed technique aims to allow distributed management of users' privacy links by clouding the privacy information generated by different heterogeneous devices to efficiently interface with different groups. Suggestion techniques process user-specific privacy information independently in a virtual space so that users can periodically synchronize their privacy information.
U-마켓에서의 사용자 정보보호를 위한 매장 추천방법 KCI 등재
한국경영정보학회 Asia Pacific Journal of Information Systems 제18권 제3호 2008.09 pp.123-145
※ 기관로그인 시 무료 이용이 가능합니다.
6,000원
Recently, as the information communication technology develops, the discussion regarding the ubiquitous environment is occurring in diverse perspectives. Ubiquitous environment is an environment that could transfer data through networks regardless of the physical space, virtual space, time or location. In order to realize the ubiquitous environment, the Pervasive Sensing technology that enables the recognition of users’ data without the border between physical and virtual space is required. In addition, the latest and diversified technologies such as Context-Awareness technology are necessary to construct the context around the user by sharing the data accessed through the Pervasive Sensing technology and linkage technology that is to prevent information loss through the wired, wireless networking and database. Especially, Pervasive Sensing technology is taken as an essential technology that enables user oriented services by recognizing the needs of the users even before the users inquire. There are lots of characteristics of ubiquitous environment through the technologies mentioned above such as ubiquity, abundance of data, mutuality, high information density, individualization and customization. Among them, information density directs the accessible amount and quality of the information and it is stored in bulk with ensured quality through Pervasive Sensing technology. Using this, in the companies, the personalized contents(or information) providing became possible for a target customer. Most of all, there are an increasing number of researches with respect to recommender systems that provide what customers need even when the customers do not explicitly ask something for their needs. Recommender systems are well renowned for its affirmative effect that enlarges the selling opportunities and reduces the searching cost of customers since it finds and provides information according to the customers’ traits and preference in advance, in a commerce environment. Recommender systems have proved its usability through several methodologies and experiments conducted upon many different fields from the mid-1990s. Most of the researches related with the recommender systems until now take the products or information of internet or mobile context as its object, but there is not enough research concerned with recommending adequate store to customers in a ubiquitous environment. It is possible to track customers’ behaviors in a ubiquitous environment, the same way it is implemented in an online market space even when customers are purchasing in an offline marketplace. Unlike existing internet space, in ubiquitous environment, the interest toward the stores is increasing that provides information according to the traffic line of the customers. In other words, the same product can be purchased in several different stores and the preferred store can be different from the customers by personal preference such as traffic line between stores, location, atmosphere, quality, and price. Krulwich[1997] has developed Lifestyle Finder which recommends a product and a store by using the demographical information and purchasing information generated in the internet commerce. Also, Fano[1998] has created a Shopper’s Eye which is an information proving system. The information regarding the closest store from the customers’ present location is shown when the customer has sent a to-buy list. Sadeh[2003] developed MyCampus that recommends appropriate information and a store in accordance with the schedule saved in a customers’ mobile. Moreover, Keegan and O’Hare[2004] came up with EasiShop that provides the suitable store information including price, after service, and accessibility after analyzing the to-buy list and the current location of customers. However, Krulwich[1997] does not indicate the characteristics of physical space based on the online commerce context and Keegan and O’Hare[2004] only provides information about store related to a product, while Fano[1998] does not fully consider the relationship between the preference toward the stores and the store itself. The most recent research by Sedah[2003], experimented on campus by suggesting recommender systems that reflect situation and preference information besides the characteristics of the physical space. Yet, there is a potential problem since the researches are based on location and preference information of customers which is connected to the invasion of privacy. The primary beginning point of controversy is an invasion of privacy and individual information in a ubiquitous environment according to researches conducted by Al-Muhtadi[2002], Beresford and Stajano[2003], and Ren[2006]. Additionally, individuals want to be left anonymous to protect their own personal information, mentioned in Srivastava[2000]. Therefore, in this paper, we suggest a methodology to recommend stores in U-market on the basis of ubiquitous environment not using personal information in order to protect individual information and privacy. The main idea behind our suggested methodology is based on Feature Matrices model (FM model, Shahabi and Banaei-Kashani, 2003] that uses clusters of customers’ similar transaction data, which is similar to the Collaborative Filtering. However unlike Collaborative Filtering, this methodology overcomes the problems of personal information and privacy since it is not aware of the customer, exactly who they are. The methodology is compared with single trait model(vector model) such as visitor logs, while looking at the actual improvements of the recommendation when the context information is used. It is not easy to find real U-market data, so we experimented with factual data from a real department store with context information. The recommendation procedure of U-market proposed in this paper is divided into four major phases. First phase is collecting and preprocessing data for analysis of shopping patterns of customers. The traits of shopping patterns are expressed as feature matrices of N dimension. On second phase, the similar shopping patterns are grouped into clusters and the representative pattern of each cluster is derived. The distance between shopping patterns is calculated by Projected Pure Euclidean Distance [Shahabi and Banaei-Kashani, 2003]. Third phase finds a representative pattern that is similar to a target customer, and at the same time, the shopping information of the customer is traced and saved dynamically. Fourth, the next store is recommended based on the physical distance between stores of representative patterns and the present location of target customer. In this research, we have evaluated the accuracy of recommendation method based on a factual data derived from a department store. There are technological difficulties of tracking on a real-time basis so we extracted purchasing related information and we added on context information on each transaction. As a result, recommendation based on FM model that applies purchasing and context information is more stable and accurate compared to that of vector model. Additionally, we could find more precise recommendation result as more shopping information is accumulated. Realistically, because of the limitation of ubiquitous environment realization, we were not able to reflect on all different kinds of context but more explicit analysis is expected to be attainable in the future after practical system is embodied.
[Kisti 연계] 한국문헌정보학회 한국문헌정보학회지 Vol.47 No.3 2013 pp.73-96
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
본 연구에서는 사서들을 대상으로 도서관 이용자 프라이버시에 대한 인식을 조사하고자 하였다. 이를 위해 도서관 이용자 프라이버시에 대한 설문응답자의 의견, 도서관 기록이 이용자의 프라이버시를 침해하는 정도, 도서관 이용자 프라이버시 보호를 위한 사서 및 도서관의 노력, 그리고 도서관 이용자 프라이버시 교육의 필요성 등 크게 네 개의 부분으로 나누어 조사하였다. 연구결과, 사서들은 프라이버시 침해에 대한 문제는 심각하게 인식하고 있으나 도서관 이용자 프라이버시에 대한 인식은 그다지 높지 못한 것으로 나타났다. 특히 도서관의 어떤 기록과 어떤 업무가 이용자 프라이버시 침해 가능성이 있는지에 대한 인식은 매우 낮게 나타났다. 또한 도서관 이용자 프라이버시를 보호하기 위해 어떤 노력을 어느 정도 해야 하는지에 대한 인식도 매우 낮게 나타났다. 반면에 도서관 이용자 프라이버시 관련 교육 프로그램의 필요성은 매우 높게 인지하고 있으며, 교육 프로그램에 참여할 의사도 비교적 높음을 알 수 있었다.
This study investigates how librarians view library user privacy. To this end, a four-part survey was conducted: respondents' opinions about the privacy of library users, the degree to which library records violate the users' privacy, the role libraries and librarians fulfill to ensure user privacy protection, and librarians' need for privacy education. Results showed that librarians were very aware of privacy issues, but they perceived that library users' privacy awareness was not high. In particular, they had little knowledge of what library records or which library tasks might have the potential to violate users' privacy. In addition, awareness efforts of librarians to ensure user privacy was very low. On the other hand, the need for library user privacy educational programs was shown to be very high, and the willingness to participate was also relatively high.
웹 2.0 환경에서 사용되는 디지털 컨텐츠의 사용자 프라이버시 보호를 위한 RCBAC 모델
[Kisti 연계] 한국디지털콘텐츠학회 디지털콘텐츠학회 논문지 Vol.9 No.4 2008 pp.697-705
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
최근 웹 기술은 통합화, 가상화, 사회화의 세 가지 원동력에 의해 발전해왔다. 그러나 웹 기술은 소셜 네트워킹 능력의 증가를 제공하는 반면에 개인의 디지털 컨텐츠에 대한 프라이버시의 노출을 더욱 복잡하고 해결하기 어려운 문제로 심화시키고 있다. 대표적으로 세부적인 관계의 정의나 관리가 불가능하여 컨텐츠의 수집, 요약으로부터 개인의 정보 및 관심사가 추론될 수 있고, 정보 소유자만의 소셜 네트워크 구축이 어려운 문제점이 있다. 따라서 본 논문에서는 웹 2.0 환경에서 사용자만의 디지털 컨텐츠를 보호하기 위해 기존의 접근 통제 방법에 관계(Relationship)와 컨텐트 시맨틱(Content Semantic)의 개념을 적용한 RCBAC(Relationship-Content based Access Control) 모델을 제안한다. 이 방법은 개인적인 성향 등의 프라이버시가 노출되지 않고 세부적인 관계의 정의나 관리가 가능하도록 하여 정보 소유자가 자신의 소셜 네트워크를 구축할 수 있고, 이것을 웹 컨텐츠로 적용 및 확장할 수 있다.
The recent web technology has been developed by three mainsprings which include integration, virtualization, and socialization. The web technology provides the increment of the social networking ability. However it deepens the exposure of privacy about personal information as more complicating and difficult problems. Representatively, it is impossible to define and manage the specific relation, so the personal information and interest can be inferred from collecting and summarizing the contents. Also, there are some problems that it is hard to construct the information owner's own social network. Thus this paper proposes the RCBAC(Relationship-Content based Access Control) Model which applies both the concepts of Relationship and Content Semantic to the existing access control methods to protect the user's own digital contents in web 2.0 environment. This method prevents privacy such as personal inclination from being exposed and enables to define and manage the specific relation. By doing this the information owners can construct their social network. This social network can be applied and extended to web contents.
액티브시니어의 건강관리를 위한 스마트운동 플랫폼의 사용자 중심 개인정보보호에 관한 연구 KCI 등재
한국융합보안학회 융합보안논문지 제25권 제3호 2025.09 pp.127-132
※ 기관로그인 시 무료 이용이 가능합니다.
4,000원
본 연구는 액티브시니어의 건강관리 실천을 지원하는 스마트운동 플랫폼에서 사용자 중심 개인정보보호의 필요성과 구현 방안을 고찰하였다. 초고령사회에서 액티브시니어는 디지털 기술을 활용해 자율적으로 운동과 건강관리를 수행하는 핵심 주 체로 부상하고 있다. 맞춤형 운동 피드백을 제공하는 스마트기기 활용과 함께 민감한 건강 데이터의 안전한 관리가 필수적이 며, 이를 위해 데이터 최소 수집, 익명화, 목적 기반 동의, 종단간 암호화 등의 원칙과 고령자의 이해를 돕는 직관적 인터페이 스, 세대 간 디지털 멘토링, 통합 거버넌스 모델의 도입을 제안하였다. 또한 AI·빅데이터 기반 지능형 피드백 시스템이 보안과 프라이버시를 내재화하여 운동 지속성과 데이터 주권을 강화할 수 있음을 논의하며, 스마트 헬스케어 기술·정책 개발에 기여 가능성을 제시한다. 이를 토대로 액티브시니어를 대상으로 한 스마트 헬스케어 기술 및 정책 개발에 있어 안전하고 신뢰할 수 있는 개인정보보호 전략 수립에 기여할 수 있을 것으로 기대한다.
This study explores the necessity and implementation strategies of user-centered privacy protection in smart exercise platforms that support health management among active seniors. In a super-aged society, active seniors are emerging as key agents who independently engage in exercise and health management through digital technologies. Along with the use of smart devices that provide personalized exercise feedback, the secure management of sensitive health data is essential. To address this need, the study proposes core privacy principles—data minimization, anonymization, purpose-based consent, and end-to-end encryption—together with intuitive interfaces for older adults, intergenerational digital mentoring, and an integrated governance model. It also discusses how AI·bigdata-based intelligent feedback systems can embed security and privacy to enhance exercise adherence and strengthen data sovereignty. Building on these insights, the study is expected to contribute to the establishment of safe and trustworthy privacy-protection strategies for the development of smart healthcare technologies and policies targeting active seniors.
스마트폰 이용자의 모바일 광고 수용의사에 영향을 주는 요인 : 개인화된 서비스, 개인정보보호, 광고 피로도 사이에서의 딜레마 KCI 등재
한국경영정보학회 경영정보학연구 제17권 제2호 2015.08 pp.77-100
※ 기관로그인 시 무료 이용이 가능합니다.
6,100원
본 연구에서는 스마트폰 이용자가 모바일 맞춤형 광고 서비스를 수용함에 있어서, 이들이 체감하는 개인화된 서비스의 효용 가치, 개인정보보호에 대한 우려, 그리고 광고 피로도 사이에서 어떠한 의사결정을 내리게 되는지를 실증적인 분석을 통하여 알아보았다. 개인화된 맞춤 서비스와 이를 위해 제공되어야만 하는 개인정보의 양면적 상황에서 소비자들은 다양한 요인들을 종합하여 비용-편익 분석(cost-benefit analysis)을 하게 되며 이러한 의사결정 과정을 프라이버시 계산(privacy calculus)이라 일컫는다. 본 연구에서는 모바일 광고의 피로도에 대한 관심이 높아짐에 따라 기존의 프라이버시 계산 이론에 이를 결합한 확장 연구모델을 제시하였다. 연구 모델의 검증을 위해 가상체험을 포함한 설문 조사를 실행하였으며, 이를 통해 요인 별 영향관계와 요인 간 조절효과를 5가지 가설을 통해 검증하였다. 본 연구에서는 광고수용의도에 대한 R2값은 약 60%로 매우 높은 설명력을 주었으며, 다음과 같은 사실을 밝혀낼 수 있었다. 먼저, 맞춤형 광고서비스의 효용가치가 광고수용의도에 미치는 양(+)의 영향관계는 통계적으로 유의한 결과를 보여 주었다. 재미있는 점은 평균적으로 높은 개인정보와 보안관련 우려에도 불구하고 이러한 우려가 광고 수용의사에는 미치는 음(-)의 영향관계는 유의하지 않은 결과를 보여 주었다. 효용가치와 보안에 대한 우려의 상호 관계가 이용의도에 미치는 영향도 통계적으로 유의하지 않았다. 반면에 광고 피로도가 모바일 광고의 수용의도에 미치는 음(-)의 영향관계는 통계적으로 유의한 결과를 보여주었다. 또한, 광고에 대한 피로도와 효용가치는 개별 독립 변수로서 수용의사에 영향을 미칠 뿐만 아니라 서로 상호작용 효과를 보여주었다. 따라서, 주어진 효용가치가 클수록 피로도가 광고 수용의사에 미치는 부(-)의 영향을 약화시키게 되는 결과를 가져옴을 알 수 있었다. 나날이 증가하는 스마트폰 기반 서비스와 이와 관련한 개인정보보호의 중요성을 고려할 때, 본 연구의 결과는 향후 관련 연구의 활성화에 기여할 것이며, 기업과, 소비자 모두에게 도움을 줄 수 있는 보다 효율적인 모바일 광고 시장의 활성화를 위한 전략적 시사점을 제시하고 있다.
This study examined the factors that influence the smartphone user’s decision to accept the personalized mobile advertisement. As a theoretical basis, we applied the privacy calculus model (PCM) that illustrates how consumers are engaged in a dynamic adjustment process in which privacy risks are weighted against benefits of information disclosure. In particular, we investigated how smartphone users make a risk-benefit assessment under which personalized service as benefit-side factor and information privacy risks as a risk-side factor accompanying their acceptance of advertisements. Further, we extend the current PCM by considering advertisement fatigue as a new factor that may influence the user’s acceptance. The research model with five (5) hypotheses was tested using data gathered from 215 respondents through a quasi-experimental survey method. During the survey, each participant was asked to navigate the website where the experimental simulation of a mobile advertisement service was provided. The results showed that three (3) out of five (5) hypotheses were supported. First, we found that the intention to accept advertisements is positively and significantly influenced by the perceived value of personalization. Second, perceived advertisement fatigue was also found to be a strong predictor of the intention to accept advertisements. However, we did not find any evidence of direct influence of privacy risks. Finally, we found that the significant moderating effect between the perceived value of personalization and advertisement fatigue. This suggests that the firms should provide effective tailored advertisement that can increase the perceived value of personalization to mitigate the negative impacts of advertisement fatigue.
[NRF 연계] 한국도서관·정보학회 한국도서관·정보학회지 Vol.43 No.3 2012.09 pp.353-384
※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.
본 연구는 최근에 이슈가 되고 있는 필터버블 문제와 프라이버시 침해 문제가 이용자맞춤형서비스를 제공하는 도서관과 무관하지 않다는 인식에서 수행되었다. 본 연구에서는 최첨단기술을 활용하는 위치기반서비스, 상황인식서비스, 책추천서비스, RFID기반서비스, 클라우드서비스가 어떤 측면에서 개인정보침해 및 프라이버시 침해가능성이 있는지를 고찰하였다. 또한 특정 서비스 이용을 위해 개인정보를 제공한 이용자는 개인정보를 포기한 것으로 보아야 하는지, 국내 도서관에서 도서관 이용자의 프라이버시 문제가 논의된 적이 있는지, 필터버블 문제가 도서관 이용자에게 줄 수 있는 위험성과 해결책은 무엇인지에 대해서도 간단히 논의하였다. 본 연구는 도서관 프라이버시에 대한 초기단계의 연구로서 향후 국내 프라이버시 연구의 기초자료로 활용될 수 있기를 바란다.
This study was conducted on the observation that the filter bubble and privacy violation problems are related to the personalized services provided by libraries. This study discussed whether there is the possibility for invasion of privacy when libraries provide services utilizing state-of-the-art technology, such as location-based services, context aware services, RFID-based services, Cloud Services, and book recommendation services. In addition, this study discussed the following three aspects: whether or not users give up their right to privacy when they provide personal information for online services, whether or not there are discussions about users' privacy in domestic libraries, and what kind of risks the filter bubble problem can cause library users and what are possible solutions. This study represents early-stage research on library privacy in Korea, and can be used as basic data for privacy research.
0개의 논문이 장바구니에 담겼습니다.
선택하신 파일을 압축중입니다.
잠시만 기다려 주십시오.