A Study on The Instant Messaging Security Policy in The Organizations

조직 내부에서의 인스턴트 메시징 보안 정책에 대한 연구

  • Sattarova, Feruza (Department of Multimedia Engineering, Hannam University) ;
  • Kim, Seok-Soo (Department of Multimedia Engineering, Hannam University) ;
  • Choi, Min-Kyu (Department of Multimedia Engineering, Hannam University) ;
  • Cho, Eun-Suk (Department of Multimedia Engineering, Hannam University) ;
  • Kim, Tai-Hoon (Department of Multimedia Engineering, Hannam University)
  • Received : 2009.03.22
  • Accepted : 2009.04.30
  • Published : 2009.04.30

Abstract

A policy of instant messaging usage is offered in this article. First, a brief introduction of instant messaging system structure is described. The main threats and vulnerabilities of Instant messenger (IM) are described in the second part of the paper. Instant messaging applications offer so many advantages in so many different fields that they're fast becoming the preferred communication tool for a number of different professional scenarios. When properly implemented, instant messaging can be a true asset to the business by making communications easier throughout the organization. If instant messaging is carelessly implemented, though, it can cause problems with privacy and may expose the organization to various forms of malware. The solution offered in this paper is one of the effective ways against threats of IM. However, the system cannot be secured entirely. All we can do is reducing the risks.

현재 인스턴트 메시징은 다양한 분야에서 많은 장점을 제공하고 있기 때문에, 여러 조직 내부에서 여러 상황에 맞추어 새로운 의사소통수단으로 빠르게 변모하고 있다. 긴급한 메시지의 전파, 파일의 전송 등, 인스턴트 메시징은 한 조직의 의사소통체계를 훨씬 용이하게 만들어 주는 귀중한 자산으로 자리매김 할 수도 있으나, 만약 부주의하게 사용된다면, 개인의 사생활을 침해할 수 있을 뿐만 아니라 조직 전체에 악성 프로그램을 유포하는 데 악용될 수도 있다. 본 논문에서는 인스턴트 메시징이 사용되는 방식을 분류하고, 인스턴트 메시징으로 야기될 수 있는 위협요소에 효율적으로 대처할 수 있는 보안 정책을 연구하고 제안하였다.

Keywords

References

  1. Semantyc Enterprize Security "Securing Instant Messaging" white paper. www.semantyc.com
  2. "Security Threats of Instant Messaging" Camsoft Solutions, Johannesburg, 18 May 2005, http://www.camsoft.co.za
  3. Alexey Dolya, "Instant Messenger: making business friendlier but less secure", August 20, 2007. http://www.viruslist.com/en/analysis?pubid=204791959#i3
  4. Gunter Ollmann "Instant Messenger Security: Securing Against the Threat of Instant Messengers" Aug 16, 2006, http://www.windowsecurity.com/whitepapers/Instant-Messenger-Security.html
  5. Ricky M. Magalhaes "Instant Messaging: Friend or Foe?" Nov 05, 2008, http://www.windowsecurity.com/articles/Instant-Messaging-Friend-Foe.html?printversion