• Title/Summary/Keyword: 웹 2.0/3.0

Search Result 253, Processing Time 0.028 seconds

Countermeasure of an Application Attack Scenario Using Spring Server Remote Code Execution Vulnerability (CVE-2018-1270) (스프링 서버 원격코드 실행 취약점(CVE-2018-1270)을 이용한 응용 공격 시나리오의 대응 방안)

  • Jung, Byeong-Mun;Jang, Jae-Youl;Choi, Chul-Jae
    • The Journal of the Korea institute of electronic communication sciences
    • /
    • v.14 no.2
    • /
    • pp.303-308
    • /
    • 2019
  • Spring framework is widely used as a base technology for e-government frameworks and to the extent it is a standard for web service development tools of Korean public institutions. However, recently, a remote code execution vulnerability(CVE-2018-1270) was found in an application using a spring framework. This paper proposes a method of analyzing the vulnerability experiment using a hacking scenario, Proof Of Concept(POC), in which the spring framework is a hazard to the server. We propose the patch to version 4.3.16 and version 5.0.5 or later as an ultimate response. It is also expected that the proposed experiment analysis on vulnerability of hacking scenario will be used as a data for improving performance of security programs and establishing a new authentication system.

A Performance Evaluation of the e-Gov Standard Framework on PaaS Cloud Computing Environment: A Geo-based Image Processing Case (PaaS 클라우드 컴퓨팅 환경에서 전자정부 표준프레임워크 성능평가: 공간영상 정보처리 사례)

  • KIM, Kwang-Seob;LEE, Ki-Won
    • Journal of the Korean Association of Geographic Information Studies
    • /
    • v.21 no.4
    • /
    • pp.1-13
    • /
    • 2018
  • Both Platform as a Service (PaaS) as one of the cloud computing service models and the e-government (e-Gov) standard framework from the Ministry of the Interior and Safety (MOIS) provide developers with practical computing environments to build their applications in every web-based services. Web application developers in the geo-spatial information field can utilize and deploy many middleware software or common functions provided by either the cloud-based service or the e-Gov standard framework. However, there are few studies for their applicability and performance in the field of actual geo-spatial information application yet. Therefore, the motivation of this study was to investigate the relevance of these technologies or platform. The applicability of these computing environments and the performance evaluation were performed after a test application deployment of the spatial image processing case service using Web Processing Service (WPS) 2.0 on the e-Gov standard framework. This system was a test service supported by a cloud environment of Cloud Foundry, one of open source PaaS cloud platforms. Using these components, the performance of the test system in two cases of 300 and 500 threads was assessed through a comparison test with two kinds of service: a service case for only the PaaS and that on the e-Gov on the PaaS. The performance measurements were based on the recording of response time with respect to users' requests during 3,600 seconds. According to the experimental results, all the test cases of the e-Gov on PaaS considered showed a greater performance. It is expected that the e-Gov standard framework on the PaaS cloud would be important factors to build the web-based spatial information service, especially in public sectors.

A Personalized Product Recommendation Agent on Mobile Internet (무선인터넷 환경에서의 개인화상품추천에이전트)

  • 이승화;이은석
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2004.04b
    • /
    • pp.145-147
    • /
    • 2004
  • 본 논문에서는 무선인터넷 환경에 적합한 개인화된 상품추천에이전트를 제안한다. 기존에 유선인터넷상의 많은 개인화 추천시스템에서는 초기 사용자 모델링을 위해 사용자에게 수많은 질의를 하고 응답을 요구하였다. 그러나 이러한 방식은 무선인터넷 환경에서 정보 전송량에 따른 높은 사용요금을 고려할 때 적용하기 힘든 방식이다. 본 제안 시스템은 사용자의 Social data률 이용하여 사용자를 비슷한 연령과 성별 그룹으로 나누고, 해당 그룹에서 구매율이 높은 상품을 우선 제시한 후, 사용자 행동을 모니터링 하여 암시적(Implicit)피드백을 통해 프로파일을 생성함으로써, 번거로운 질의-응답 과정 없이도 초기 사용자 모델링을 수행할 수 있다. 프로파일 생성 이후에는 이를 기반으로 하여 사용자몰 유사한 취향을 가진 그룹으로 다시 군집화한 후 협력적 추천을 하게 되며, 프로파일에는 해당 상품의 최종 카테고리명과 키워드를 수집함으로써, 상품의 브랜드와 규격정보를 반영한 추천이 가능하다. 또한 추천 상품과 사용자의 구매데이터와의 비교를 수행하여 사용자가 해당상품을 구매하였을 경우, 상품에 대한 취향정보는 그대로 유지하고 관련 상품을 추천하되, 구매한 상품이 중복 추천되지 않도록 하였다. 시스템 평가를 위해 프로토타입을 구현하여, 다수의 사용자에게 시스템을 이용하며 관심품목을 체크하도록 하였고. 추천횟수가 반복되며 히트율이 증가하는 결과를 통해 시스템의 학습속도와 성능을 평가하였다. 그리고 쇼핌몰에서 구매경험이 있는 사용자의 기존 구매데이터와 Social data를 이용한 초기 제시상품을 역으로 비교하여 오랜 시간과 비용 발생 없이도 초기 프로파일 생성의 유효성을 증명하였다. 포함하는 XML 질의에 대해서도 웹에서 캐쉬를 이용한 처리가 효율적임을 확인하였다.키는데 목적이 있다.RED에 비해 향상된 성능을 보여주었다.웍스 네트워크상의 다양한 디바이스들간의 네트워크 다양화와 분산화 기능을 얻을 수 있었고, 기존의 고가의 해외 솔루션인 Echelon사의 LonMaker 소프트웨어를 사용하지 않고도 국내의 순수 솔루션인 리눅스 기반의 LonWare 3.0 다중 바인딩 기능을 통해 저 비용으로 홈 네트워크 구성 관리 서버 시스템 개발에 대한 비용을 줄일 수 있다. 기대된다.e 함량이 대체로 높게 나타났다. 점미가 수가용성분에서 goucose대비 용출함량이 고르게 나타나는 경향을 보였고 흑미는 알칼리가용분에서 glucose가 상당량(0.68%) 포함되고 있음을 보여주었고 arabinose(0.68%), xylose(0.05%)도 다른 종류에 비해서 다량 함유한 것으로 나타났다. 흑미는 총식이섬유 함량이 높고 pectic substances, hemicellulose, uronic acid 함량이 높아서 콜레스테롤 저하 등의 효과가 기대되며 고섬유식품으로서 조리 특성 연구가 필요한 것으로 사료된다.리하였다. 얻어진 소견(所見)은 다음과 같았다. 1. 모년령(母年齡), 임신회수(姙娠回數), 임신기간(姙娠其間), 출산시체중등(出産時體重等)의 제요인(諸要因)은 주산기사망(周産基死亡)에 대(對)하여 통계적(統計的)으로 유의(有意)한 영향을 미치고 있어 $25{\sim}29$세(歲)의 연령군에서, 2번째 임신과 2번째의 출산에서 그리고 만삭의 임신 기간에, 출산시체중(出産時體重) $3.50{\sim}3.99kg$사이의 아

  • PDF

A Study About User Pattern of Social Bookmarking System (소셜 북마킹 시스템의 이용자 행위 패턴에 관한 연구)

  • Jo, Hyeon;Choeh, Joon-Yeon;Kim, Soung-Hie
    • Journal of Internet Computing and Services
    • /
    • v.12 no.5
    • /
    • pp.29-37
    • /
    • 2011
  • Recently, many user-participating web services have been used widely as the evolution of internet web technology has rapidly been developed. Users share various content and opinion on line using a site like ‘Social bookmarking.’ Users can share others’ bookmarking history and create tags while bookmarking web sites; we call it collaborative tagging. In this paper, we studied empirical analysis for widely used social bookmarking and collaborative tagging which the result shows minority of users is actively using the bookmarking and a few sites and tags are used by majority of the users. 24% users tagged 80%, 75% sites and 81% tags were tagged below than 3 times. Types of bookmarking activities were found different by users and early appointed tags get more frequency by majority. We also identified relative proportions of tags on certain sites are becoming convergence gradually. We expect the result of this paper will give opportunities to help further developing social bookmarking system.

A Study on User's Requirement Analysis for Improvement of OASIS (한의학술논문검색시스템 기능개선을 위한 사용자 요구 분석에 관한 연구)

  • Han, Jeong-Min;Bae, Sun-Hee;Song, Mi-Young
    • Journal of Information Management
    • /
    • v.40 no.3
    • /
    • pp.79-97
    • /
    • 2009
  • Thanks to current development of many search engines and web technologies, a new semantic searching technology appears, featuring giving a relevant meaning to the keyword beyond the previous keyword search service. On the wave of advance of various search engines, the enhancement of OASIS offered by KIOM is needed as well. To do this, KIOM examined demographic and sociological analysis on their position, status, and career, the convenience of OASIS, and the value of papers offered in OASIS from members who have ever used it. Furthermore, the importance of each area involved in oriental medicine is also examined in terms of a new direction for OASIS improvement. Based on the result of the user survey, it turned out that not only an automatic search system that can find meaning of chinese character-centered key words but also a Authority-system which can distinguish homonym beyond simple keyword search system should be introduced quickly. Also, we reached the conclusion that it is necessary to interconnect a citation index information on references with laboratory information of the agencies concerned and interconnect major web sites around the world by using Open API. OASIS is the only domestic web site for offering papers that cover oriental medicine. Therefore, if requirements about the site in oriental medical circles are analyzed sufficiently and the problems of its information search system are improved, OASIS is expected to play a critical role in the development of oriental medicine.

A Study on the receptivity to Social Computing in International Trade (국제무역의 소셜 컴퓨팅 수용 가능성에 관한 연구)

  • Lim, Jae-Wook
    • International Commerce and Information Review
    • /
    • v.13 no.3
    • /
    • pp.55-74
    • /
    • 2011
  • Web Service applications based on the social relation such as Social Network Service(SNS), Social Medias are making strong blast. Social Computing which is widely spreading to worldwide is affecting to our life including policies, economies, societies and culture. Based on Web 2.0, various services like as Social Collaboration, Social Publishing, Social Feedback are supplied, more evolved social computing services, Social Connection, Augmented Reality, will be served for the next days from now. These network based services, Social Network Service or Social Media frequently used terms, are not defined exactly and their characteristics are not gotten to the bottom yet. Theoretical and systematic studies on these themes are not made also. Applications to business area, especially the receptivity to social computing in international trade is barely made to these days. This study focuses on the concepts, characteristics and sorts of social computing and purposes to consider its possibilities of application of social computing to international trade. Considering the advantage of Social network service, it can be used in international trade, a kind of B2B transaction, while existing social network is mainly applied to B2e transaction.

  • PDF

A Study on Developing Web based Logistic Information System(KT-Logis) (웹 기반 통합물류정보시스템(KT-Logis) 개발에 관한 연구)

  • 오상호;김태준
    • Proceedings of the Korean DIstribution Association Conference
    • /
    • 2001.11b
    • /
    • pp.125-141
    • /
    • 2001
  • In this paper, the current problems of logistics industry in Korea and their possible solutions were discussed. With Korea Telecoms KT-Logis, the supplier and demander of logistics service would not have to invest large sum of money into their computer system. All they need is just a computer with internet connected. What KT-Logis influence on the logistics industry are the following; 1. Many logistics service supplier and demander can do the business on the web with one computer system. 2. This web based computer system does not only work on the office but also apply on the field worker such as delivery personnel or even the forwarder with mobile phone. 3. KT-Logis is an integrated system which cover the broad arrange of logistics management from truck management to customer relations management. 4. Finally, KT-Logis is web based systems which suits for current e-business and mobile environment. In future, more studies should be done to develop more progressive integrated logistics information systems with enterprise resource planning(ERP) and supply chain management(SCM).

  • PDF

Development of Network-Based Online GPS Baseline Processing System (네트워크 기반 온라인 GPS 기선해석 시스템 개발)

  • Kim, Su-Kyung;Bae, Tae-Suk
    • Journal of the Korean Association of Geographic Information Studies
    • /
    • v.14 no.2
    • /
    • pp.138-146
    • /
    • 2011
  • With the increased use of GPS in the field of various applications including surveying, the request for fast and precise positional information has increased. Several countries such as USA, Canada, and Australia have already been operating Internet-based automatic GPS data analysis system using e-mail and FTP. Expanding GPS market, it is necessary to establish automatic GPS baseline processing system that is accessible via Internet. The system developed in this study is operating on the web, and it allows the users to access easily regardless of time and place. The main processing engines are Bernese V5.0 and PAGES. They process user data with three GPS CORS(Continuously Operating Reference Station), and then send the report to the users through e-mail. This system allows users to process high accurate GPS data easily. It is expected that this system will be used for various GPS applications such as monitoring large-scale structures and providing spatial information services in private sector.

A Survey of Korean Consumers' Awareness on Animal Welfare of Laying Hens (산란계 동물복지에 대한 국내 소비자의 인지도 조사)

  • Hong, Eui-Chul;Kang, Hwan-Ku;Park, Ki-Tae;Jeon, Jin-Joo;Kim, Hyun-Soo;Kim, Chan-Ho;Kim, Sang-Ho
    • Korean Journal of Poultry Science
    • /
    • v.45 no.3
    • /
    • pp.219-228
    • /
    • 2018
  • This study was conducted twice to investigate egg purchase behavior and perception on animal welfare of Korean consumers. This study included women, who were the main decision makers and caretakers in the household, and men with one-person household. This survey was conducted with by the Computer Assisted Web Interview and Gang Survey methods. On the key considerations factor, the highest response rate was considered to be 'price', and the response rate of considering 'packing date' increased in the second survey. At a reasonable price based on 10 eggs, the response rate was the highest at 53.8% and 42.9% in both the first and second surveys and the appropriate price averages were 2,482 won and 2,132 won, respectively. The highest rate of purchase of egg consumers from 'Large Mart' followed by 'Medium sized supermarket' and 'Chain supermarket'. As for the awareness about animal welfare, the recognition ratio (73.5%) was higher in the result of the second survey than the first. The cognitive period of animal welfare was 59.0% before the insecticide egg crisis and 41.0% thereafter. Regarding whether or not they have ever seen an animal welfare certification mark and an animal welfare animal farm certification mark, 59.6% of respondents said that they saw it for the first time and 37.6% answered that they knew the animal welfare certification mark. On the animal welfare system, the 'free-range' response rate was the highest at 85.8%. The 'free-range' fit response decreased by 34.2%p, while the 'barn' and 'European type' fit response increased by 13.2%p and 24.1%p, respectively. The number of 'I have never seen' and 'I have ever eaten' responses to the recognition and eating experience of animal welfare certified eggs decreased while the number of those who answered 'Have ever seen' and 'Have eaten' increased. The answer of purchasing animal welfare certified eggs at department stores, organic farming cooperatives, and internet shopping malls was higher than that of buying conventional eggs. Of the total respondents, 92.0% were willing to purchase an animal welfare egg before the price was offered, but after offering the prices of animal welfare eggs, the intention to purchase was 62.7%, which was about 30%p lower than before. The reason for purchasing an animal welfare certified egg was the highest score of 71.0% for 'I think it is likely to be high in food safety', and 38.1% for 'I think the price is high' for lack of intention to purchase. In the sensory evaluation of animal welfare eggs, egg color and skin texture of conventional eggs were significantly higher than those of certified welfare eggs (P<0.05), and boiled eggs showed that egg whites of animal welfare certified eggs were more (P<0.05). As a result, the results of this study will contribute to the activation of the animal welfare certification system for laying hens by providing basic data on consumer awareness to animal welfare certified farmers.

A Conceptual Framework for Knowledge Enhanced E-government Portal (지식강화 전자정부포털의 개념적 프레임워크)

  • Kim, Sun-Kyung
    • Informatization Policy
    • /
    • v.20 no.2
    • /
    • pp.39-59
    • /
    • 2013
  • Majority of knowledge management(KM) studies in e-government have been confined to facilitate KM within an organization. But due to citizen-centric(citizen-driven) paradigm shift and advance of web 2.0 communication in recent years, KM between governments and citizen in e-government portals is becoming an important consideration. So a series of studies on knowledge enhanced e-government portal get under way by considering that it is necessary to enhance knowledge of e-government portal and assuming it improves the usability of portal. While the topics of knowledge enhancement and e-government(portal) are widely discussed in their own domains there is a paucity of studies that address these constructs in a joint context. This paper aims to propose conceptual framework of knowledge enhanced e-government portal through structuralization of theoretical discussion with holistic approach. This framework presents an evolutional path of knowledge enhanced e-government portal that consists of three phases and it will be used for realizing the knowledge enhanced portal project as a basic reference model.

  • PDF