DOI QR코드

DOI QR Code

온라인 교육 플랫폼 네트워크 패킷 분석

Online Training Platform Network Packet Analysis

  • 서진범 (대전대학교 정보보안학과) ;
  • 장호혁 (대전대학교 정보보안학과) ;
  • 조영복 (대전대학교 정보보안학과)
  • Seo, Jin-beom (Department of Information Security, Daejeon University) ;
  • Jang, Ho-hyuk (Department of Information Security, Daejeon University) ;
  • Cho, Young-bok (Department of Information Security, Daejeon University)
  • 투고 : 2020.12.29
  • 심사 : 2021.04.15
  • 발행 : 2021.04.30

초록

최근 코로나 19로 인해 사회적 거리두기로 교육, 회의 등의 의사소통방식이 변화하고 있다. 그러나 갑작스러운 소통 방식의 변화로 인해 안전성 부분에서 부족한 플랫폼으로 인한 개인정보 유출, 회의 및 교육자료 유출, 비정상적인 접속을 통한 수업 및 회의 방해 등의 보안 문제들이 발생하고 있다. 본 논문에서는 온라인 교육 플랫폼 중 대다수가 사용하는 ZOOM, Teams, Google Meet 환경에서 와이어샤크를 이용한 네트워크 패킷을 중심으로 분석하고 각 플랫폼의 보안성 문제를 확인하였다.

Recently, communication methods such as education and meetings are changing to keep social distance due to Corona 19. However, due to sudden changes in the communication method, security problems such as leakage of personal information due to the platform that is lacking in safety, leakage of meetings and training materials, and obstruction of classes and meetings through abnormal connections is occurring. In this paper, we focus on network packets using Wireshark to security in the ZOOM, Teams, and Google Meet environments used by most online education platforms.

키워드

과제정보

This work was supported by the National Research Foundation of Korea(NRF) grant funded by the Korea government(MSIT) (No. 2018R1C1B5083789).

참고문헌

  1. Y. B. Cho, "Diagnosis of communication security vulnerability of network printer using wireshark," Digital Contents Society, vol. 21, no. 3, pp. 601-607, March, 2020. https://doi.org/10.9728/dcs.2020.21.3.601
  2. J. B. Seo, H. H. Jang, and Y. B. Cho, "Investigate realtime video chat program security issues," in Proceeding of the KIPEE Conference, vol. 12, no. 1, pp. 383-384, November, 2020.
  3. H. C. Baek, T. G. Son, D. H. Hyun, M. A. Kim, and D. W. Chung, "Technology trends of TCP flow control," Current Industrial and Technological Trends in Aerospace, vol. 18, no. 1, pp. 105-118, July, 2020.
  4. J. H. Paik, K. H. Chung, and K. H. Choi, "Test executor and testing platform performance improvement suggestions using the UDP," in Proceedings of Symposium of the Korean Institute of Communications and Information Sciences, pp. 1532-1533, June, 2015.
  5. S. W. Cho, H. S. Choi, G. Heo, S. H. Cho, and Y. G. Kim, "A system for SSL/TLS vulnerability detection of servers", Journal of The Korea Institute of Information Security & Cryptology, vol. 28, no. 1, pp. 145-153, February, 2018. https://doi.org/10.13089/JKIISC.2018.28.1.145
  6. The Transport Layer Security (TLS) Protocol Version 1.2 [Internet]. Available:https://www.rfc-editor.org/info/rfc5246.
  7. The Transport Layer Security (TLS) Protocol Version 1.3 [Internet]. Available: https://www.rfc-editor.org/info/rfc8446.
  8. D. Stebila and N. Sullivan, "An analysis of TLS handshake proxying," in Proceedings of the 2015 IEEE Trustcom/BigDataSE/ISPA, Helsinki, 2015, pp. 279-286, doi: 10.1109/Trustcom.2015.385.
  9. S. H. Kim, D. H. Kim, and K. H. Jung, "A study on detection of information hiding through packet analysis," in Proceedings of the Institute of Electronics and Information Engineers, 2017 Summer Conference, pp. 1351-1354, June, 2017.
  10. P. Goyal and A. Goyal, "Comparative study of two most popular packet sniffing tools-tcpdump and wireshark," in Proceedings of the 2017 9th International Conference on Computational Intelligence and Communication Networks (CICN), Girne, 2017, pp. 77-81, doi: 10.1109/CICN.2017.8319360.
  11. Microsoft, Security and Microsoft Teams [Internet]. Available: https://docs.microsoft.com/ko-kr/microsoftteams/teams-security-guide.