Security Analysis on 'Privacy-Preserving Contact Tracing Specifications by Apple and Google' and Improvement with Verifiable Computations ('애플과 구글의 코로나 접촉 추적 사양'에 대한 보안성 평가 및 검증 가능한 연산을 이용한 개선)

  • Kim, Byeong Yeon;Kim, Huy Kang
    • Journal of the Korea Institute of Information Security & Cryptology
    • v.31 no.3
    • pp.291-307
    • 2021
  • There has been global efforts to prevent the further spread of the COVID-19 and get society back to normal. 'Contact tracing' is a crucial way to detect the infected person. However the contact tracing makes another concern about the privacy violation of the personal data of infected people, released by governments. Therefore Google and Apple are announcing a joint effort to enable the use of Bluetooth technology to help governments and health agencies reduce the spread of the virus, with user privacy and security central to the design. However, in order to provide the improved tracing application, it is necessary to identify potential security threats and investigate vulnerabilities for systematically. In this paper, we provide security analysis of Privacy-Preserving COVID-19 Contact Tracing App with STRIDE and LINDDUN threat models. Based on the analysis, we propose to adopt a verifiable computation scheme, Zero-knowledge Succinctness Non-interactive Arguments of Knowledges (zkSNARKs) and Public Key Infrastructure (PKI) to ensure both data integrity and privacy protection in a more practical way.

Design and Implementation of an Ajax based Location Tracking Service (Ajax 기반의 위치추적 서비스 설계 및 구현)

  • Lee, Ju-Rae
    • Annual Conference of KIPS
    • 2008.05a
    • pp.1013-1016
    • 2008
  • 개인용 컴퓨터와 인터넷, 그 밖의 다양한 기술의 발전으로 사람들은 일상마저 데이터화 되어 관리되고 보여지게 되었다. 그 중에서 위치 기반 서비스는 점점 일상화되어 웹 사이트를 통해 개인별 위치추적까지 서비스되고 있다. 더 많은 정보를 원하는 사람들의 욕구와 소프트웨어의 발전은 RIA(Rich Internet Application)라는 새로운 트랜드를 만들었고, 기존의 HTML 에서는 불가능 했던 동적이면서도 강력한 기능을 제공하는 기술들이 늘어가고 있다 본 논문은 Ajax를 이용하여 별도의 프로그램 설치 없이 동적이면서 풍부한 이동체의 위치추적 서비스를 설계 구현한다.

Traceable Authentication Scheme Providing User Anonymity (사용자 익명성을 제공하는 추적 가능한 인증 프로토콜)

  • Choi, Jong-Seok;Shin, Seung-Soo
    • The Journal of the Korea Contents Association
    • v.9 no.4
    • pp.95-102
    • 2009
  • Recently, remote user authentication scheme protecting user anonymity using smart card has been researched with interest increasing on user privacy. Although authentication scheme providing user anonymity using smart card had been proposed by Das et al, Chien et al. pointed out Das et al. scheme fail to provide user anonymity and proposed new scheme to overcome the problem. A remote system Kim et al. proposed a scheme which is traceable about malicious user with protecting user anonymity. In this paper, we point out that Kim et a1. scheme fail to provide user anonymity and propose a scheme for some problems Kim et al. scheme has. And then we analysis our scheme on cryptophic security and efficiency with Kim scheme.

Threats and countermeasures for strengthening personal information security in the Internet of Things (사물인터넷에서 개인 정보 보안 강화를 위한 위협 및 대응방안)

  • Jisu-Lim;Jaekyung-Park
    • Proceedings of the Korean Society of Computer Information Conference
    • 2023.07a
    • pp.599-600
    • 2023
  • 본 논문은 사물인터넷 환경에서 개인 정보 보안을 강화하기 위해 개인 정보 위협과 대응방안을 조사하는 것을 목표로 한다. 개인 정보의 위협으로는 무단 액세스, 데이터 위반, 데이터 집계 및 프로파일링, 추적 및 감시가 있다. 이에 대한 대응방안으로는 암호화, 개인 정보 보호 데이터 처리, 보안 통신 프로토콜 등을 연구되고 있다. 또한, 실증적 연구를 통해 사물인터넷 사용자의 개인 정보 보호 문제와 기존 전략의 효과를 평가하고 권장 사항을 도출한다. 본 논문은 사물인터넷 생태계에서 개인 정보 보안을 강화하기 위한 정보를 제공하며, 개인정보를 활용하는 사용자에게 도움을 줄 것으로 기대한다.

Design and Implementation of Personal Communicator based on Embedded Single Board Computer for Controlling of Remote Devices (원격 장치 제어를 위한 임베디드 기술 기반의 개인용 커뮤니케이터 설계 및 구현)

  • Jang, Seong-Sik;Byun, Tae-Young
    • Journal of Korea Society of Industrial Information Systems
    • /
    • /
    • /
  • This paper presents implementation details of home appliance control system using personal communicator based on LN2440 single board computer, which recognizes hand-gesture of user, controls remote moving device such as mobile home server, robot etc. through delivery of proper control commands. Also, this paper includes details of design and implementation of home gateway and mobile home server. The implemented prototype can be utilized to develop various remote control system including a remote exploration robot, intelligent wheelchair based on general purpose embedded system.

Evaluation of Gaze Depth Estimation using a Wearable Binocular Eye tracker and Machine Learning (착용형 양안 시선추적기와 기계학습을 이용한 시선 초점 거리 추정방법 평가)

  • Shin, Choonsung;Lee, Gun;Kim, Youngmin;Hong, Jisoo;Hong, Sung-Hee;Kang, Hoonjong;Lee, Youngho
    • Journal of the Korea Computer Graphics Society
    • /
    • /
    • /
  • In this paper, we propose a gaze depth estimation method based on a binocular eye tracker for virtual reality and augmented reality applications. The proposed gaze depth estimation method collects a wide range information of each eye from the eye tracker such as the pupil center, gaze direction, inter pupil distance. It then builds gaze estimation models using Multilayer perceptron which infers gaze depth with respect to the eye tracking information. Finally, we evaluated the gaze depth estimation method with 13 participants in two ways: the performance based on their individual models and the performance based on the generalized model. Through the evaluation, we found that the proposed estimation method recognized gaze depth with 90.1% accuracy for 13 individual participants and with 89.7% accuracy for including all participants.

Real-Time Face Tracking System Of Object Segmentation Tracking Method Applied To Motion and Color Information (움직임과 색상정보에서 객체 분할 추적 기법을 적용한 실시간 얼굴 추적 시스템)

  • Choi, Young-Kwan;Cho, Sung-Min;Choi, Chul;Hwang, Hoon;Park, Chang-Choon
    • Annual Conference of KIPS
    • /
    • /
    • /
  • 최근 멀티미디어 기술의 급속한 발달로 인해 개인의 신원 확인, 보안 시스템 등의 영역에서 얼굴과 관련된 연구가 활발히 진행 되고 있다. 기존의 연구에서는 원거리 추적이 어려우며, 연산시간, 잡음(noise), 배경과 조명등에 따라 추적 효율이 낮은 단점을 가지고 있다. 본 논문에서는 빠르고 정확한 얼굴 추적을 위한 차 영상 기법(differential image method)을 이용한 분할영역(segmentation region)에서 움직임(motion)과 피부색(skin color) 특성 기반의 객체분할추적(Tracking Of Object segmentation) 방법을 이용하였다. 객체분할추적은 얼굴을 하나의 객체(object)로 인식하고 제안한 방법으로 얼굴 부분만 분할하는 단계와 얼굴특징추출 단계를 적용하여 피부색 기반의 연구에서 나타난 입력영상(Current Frame)에서의 유동적인 피부색의 노출 대한 얼굴 추적 연구의 문제점을 해결했다. 시스템은 현재 컴퓨터에 일반적으로 사용되는 카메라를 이용하여 구현 하였고, 실시간(real-time) 영상에서 비교적 성공적인 얼굴 추적을 하였다[4].

ACMs-based Human Shape Extraction and Tracking System for Human Identification (개인 인증을 위한 활성 윤곽선 모델 기반의 사람 외형 추출 및 추적 시스템)

  • Park, Se-Hyun;Kwon, Kyung-Su;Kim, Eun-Yi;Kim, Hang-Joon
    • Journal of Korea Society of Industrial Information Systems
    • /
    • /
    • /
  • Research on human identification in ubiquitous environment has recently attracted a lot of attention. As one of those research, gait recognition is an efficient method of human identification using physical features of a walking person at a distance. In this paper, we present a human shape extraction and tracking for gait recognition using geodesic active contour models(GACMs) combined with mean shift algorithm The active contour models (ACMs) are very effective to deal with the non-rigid object because of its elastic property. However, they have the limitation that their performance is mainly dependent on the initial curve. To overcome this problem, we combine the mean shift algorithm with the traditional GACMs. The main idea is very simple. Before evolving using level set method, the initial curve in each frame is re-localized near the human region and is resized enough to include the targe region. This mechanism allows for reducing the number of iterations and for handling the large object motion. The proposed system is composed of human region detection and human shape tracking modules. In the human region detection module, the silhouette of a walking person is extracted by background subtraction and morphologic operation. Then human shape are correctly obtained by the GACMs with mean shift algorithm. In experimental results, the proposed method show that it is extracted and tracked efficiently accurate shape for gait recognition.

Key Determinants of Dissatisfaction on COVID-19 Contact Tracing and Exposure Notification Apps (COVID-19 접촉추적과 노출알림 앱사용자의 항의 및 불만요인 탐색)

  • Leem, Byung-hak;Hong, Han-Kook
    • The Journal of the Korea Contents Association
    • /
    • /
    • /
  • Digital medical technology is very effective and at the same time faces the challenge of protecting privacy. However, for contact tracking and exposure notification apps in COVID-19 environment, there is always a trade-off between privacy measures and the effectiveness of the app's use. Today, many countries have developed and used contact tracking and exposure notification apps in various forms to prevent the spread of COVID-19, but the suspicion of digital surveillance (digital panopticon) is unavoidable. Therefore, this study aims to identify the factors of personal information infringement and dissatisfaction through text mining analysis by extracting user reviews of "Self-Quarantine Safety Protection" in Korea. As a result of the text mining analysis, we derived four groups, 'Address recognition error', 'Exit warning error', 'Access error', and 'App. program error'. Since 'Address recognition error' and 'Exit warning error' can give the app users a strong perception that they are keeping under surveillanc by the app, transparent management of personal information protection and consent procedures related to personal information collection are required. In addition, if the other two groups are not corrected immediately due to an error in an app function or a program bug, the complaints of users can be maximized and a protest against the monitor can be raised.

Object-of-Interest Oriented Multi-Angle Video Acquisition Technique Using Object-Tracking based on Multi-PTZ Camera Position Control (객체 추적 연동 다중 PTZ 카메라 제어 기반 객체 중심 다각도 영상 획득 기술)

  • Kim, Y.K.;Um, G.M.;Cho, K.S.
    • Electronics and Telecommunications Trends
    • /
    • /
    • /
  • 최근 개인화된 미디어의 출현과 더불어 방송통신 미디어 분야에서 개인별 맞춤형 방송 서비스에 대한 관심과 지원이 빠르게 확산되는 추세다. 특히, 다중 카메라를 이용한 관심 인물에 대한 다각도 영상과 같은 차별화된 영상을 제공하려는 수요가 꾸준히 증가하고 있다. 객체 중심의 영상을 생성하기 위한 관련 기술의 발전 및 수요 변화에 발맞춰 본고에서는 관련 기술의 개요 및 연구동향을 살펴보고, ETRI에서 개발 중인 객체 추적 기반의 다중 Pan-Tilt-Zoom(PTZ) 카메라 제어를 통한 객체 중심 다각도 영상 획득 기술을 소개하고자 한다.

