• 제목/요약/키워드: Composite Security

검색결과 104건 처리시간 0.02초

DEVS-based Modeling Methodology for Cybersecurity Simulations from a Security Perspective

  • Kim, Jiyeon;Kim, Hyung-Jong
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제14권5호
    • /
    • pp.2186-2203
    • /
    • 2020
  • Security administrators of companies and organizations need to come up with proper countermeasures against cyber-attacks considering infrastructures and security policies in their possession. In order to develop and verify such countermeasures, the administrators should be able to reenact both cyber-attacks and defenses. Simulations can be useful for the reenactment by overcoming its limitations including high risk and cost. If the administrators are able to design various scenarios of cyber-attacks and to develop simulation models from their viewpoints, they can simulate desired situations and observe the results more easily. It is challenging to simulate cyber-security issues, because there is lack of theoretical basis for modeling a wide range of the security field as well as pre-defined basic components used to model cyber-attacks. In this paper, we propose a modeling method for cyber-security simulations by developing a basic component and a composite model, called Abstracted Cyber-Security Unit Model (ACSUM) and Abstracted Cyber-security SIMulation model (ACSIM), respectively. The proposed models are based on DEVS(Discrete Event systems Specification) formalism, a modeling theory for discrete event simulations. We develop attack scenarios by sequencing attack behaviors using ACSUMs and then model ACSIMs by combining and abstracting the ACSUMs from a security perspective. The concepts of ACSUM and ACSIM enable the security administrators to simulate numerous cyber-security issues from their viewpoints. As a case study, we model a worm scenario using ACSUM and simulate three types of simulation models based on ACSIM from a different security perspective.

타원곡선암호시스템에서 Montgomery ladder 방법에 기반한 새로운 스칼라 곱셈 알고리즘 (New Efficient Scalar Multiplication Algorithms Based on Montgomery Ladder Method for Elliptic Curve Cryptosystems)

  • 조성민;서석충;김태현;박영호;홍석희
    • 정보보호학회논문지
    • /
    • 제19권4호
    • /
    • pp.3-19
    • /
    • 2009
  • 본 논문에서는 Montgomery ladder 방법을 확장한 효율적인 스칼라 곱셈 알고리즘을 제안한다. 제안하는 방법은 효율성을 높이기 위하여 스칼라를 ternary 또는 quaternary로 표현하고 아핀좌표계에서 Montgomery ladder 방법과 같이 x 좌표만을 이용하여 연산 가능하도록 하는 새로운 연산식을 적용한다. 그리고 단순전력분석에 안전하도록 Side-channel atomicity를 적용하였다. 또한 Montgomery trick을 사용하여 연산속도를 높였다. 재안하는 방법은 기존에 효율적으로 알려진 window method. comb method에 비해서 연산속도가 26% 이상 향상된다. 또한 이 방법들보다 저장공간을 적게 사용하는 장점도 가지고 있다.

기계경비시스템 오경보의 효율적 관리를 위한 복합형 방범센서에 관한 연구 (For the efficient management of electronic security system false alams Study on hybrid Crime sensor)

  • 김민수;이동휘
    • 융합보안논문지
    • /
    • 제12권5호
    • /
    • pp.71-77
    • /
    • 2012
  • 경비의 형태는 과거 인력 경비에서 현대에 이르러 기계경비로 점차 전환되고 있다. 이는 기계경비가 인력경비에 비해 효율적이기 때문이다. 하지만 기계경비 시스템의 운용에 있어 오경보로 인해 기계경비의 높은 기대효과에도 불구하고 발전을 저해하는 요소로 인해 기계경비의 성장을 더디게 하고 있다. 이에 본 논문은 연구는 IPA(Importance Performance Analysis)기법을 이용하여 기계경비 시스템 운용에 있어 결함성 측면의 제거가 기계경비의 발전에 있어 그 중요도가 얼마나 높은지를 살펴보고, 또한 기술적 측면에서 기계경비 시스템의 오동작을 최소화할 수 있는 복합형 방범 센서를 제시하고자 한다.

복합전력계통 신뢰도평가의 확률론적 안전도 도입 (The Implementation of Probabilistic Security Analysis in Composite Power System Reliability)

  • 차준민;권세혁;김형철
    • 대한전기학회논문지:전력기술부문A
    • /
    • 제55권5호
    • /
    • pp.185-190
    • /
    • 2006
  • The security analysis relates to the ability of the electric systems to survive sudden disturbances such as electric short circuits or unanticipated loss of system elements. It is composed of both steady state and dynamic security analyses, which are not two separate issues but should be considered together. In steady state security analysis including voltage security analysis, the analysis checks that the system is operated within security limits by OPF (optimal power flow) after the transition of a new operating point. On the other hand, dynamic security analysis deals that the transition will lead to an acceptable operating condition. Transient stability, which is the ability of power systems to maintain synchronism when subjected to a large disturbance, is a principal component in dynamic security analysis. Usually any loss of synchronism will cause additional outages. They make the present steady state analysis of the post-contingency condition inadequate for unstable cases. This is the reason of the need for dynamics of systems. Probabilistic criterion can be used to recognize the probabilistic nature of system components and shows the possibility of system security. A comprehensive conceptual framework for probabilistic static and dynamic assessment is presented in this paper. The simulation results of the Western System Coordinating Council (WSCC) system compare an analytical method with Monte-Carlo simulation (MCS). Also, a case study of the extended IEEE Reliability Test System (RTS) shows the efficiency of this approach.

안전도 제약을 고려한 복합전력계통의 확충계획에 관한 기초연구 (A Basic Method for Composite Power System Expansion Planning under Security Criteria)

  • 권중지;트란트룽틴;최재석
    • 대한전기학회:학술대회논문집
    • /
    • 대한전기학회 2005년도 제36회 하계학술대회 논문집 A
    • /
    • pp.557-559
    • /
    • 2005
  • This paper proposes a method for choosing the best composite power system expansion plan considering a contingency security criterion. The proposed method minimizes the investment budget fer constructing new transmission lines subject to contingency criterion. it models the power system expansion problem as an integer programming one. The method solves for the optimal strategy using a branch and bound method that utilizes a network flow approach and the maximum flow-minimum cut set theorem. Although the proposed method is applied to a simple sample study, the test results demonstrate that the proposed method is suitable for solving the power system expansion-planning problem subject to practical future uncertainties.

  • PDF

Fully Collusion-Resistant Trace-and-Revoke Scheme in Prime-Order Groups

  • Park, Jong-Hwan;Rhee, Hyun-Sook;Lee, Dong-Hoon
    • Journal of Communications and Networks
    • /
    • 제13권5호
    • /
    • pp.428-441
    • /
    • 2011
  • A trace-and-revoke scheme is a type of broadcast encryption scheme for content protection on various platforms such as pay-per-view TV and DVD players. In 2006, Boneh and Waters (BW) presented a fully collusion-resistant trace-and-revoke scheme. However, a decisive drawback of their scheme is to require composite-order groups. In this paper, we present a new trace-and-revoke scheme that works in prime-order groups. Our scheme is fully collusion-resistant and achieves ciphertexts and private keys of size O($\sqrt{N}$) for N users. For the same level of security, our scheme is better than the BW scheme in all aspects of efficiency. Some superior features include 8.5 times faster encryption, 12 times faster decryption, and 3.4 times shorter ciphertexts. To achieve our goal, we introduce a novel technique where, by using asymmetric bilinear maps in prime-order groups, the cancellation effect same as in composite-order groups can be obtained.

상황인지 컴퓨팅 환경에서 복합서비스를 제공하는 서비스시스템의 성능분석 (Performance Analysis of a Composite Service Providing System in a Context-Aware Computing Environment)

  • 남진규;허선;주국선;신동민
    • 대한산업공학회지
    • /
    • 제35권1호
    • /
    • pp.51-57
    • /
    • 2009
  • There are a variety of users and devices in a context-aware computing environment. In this environment, the service provided to a user may be the composition of diverse services rather than one independent service. Before user's devices provide the composite service to the user, they should perceive user's needs by gathering related information segments from other surrounding devices and/or sensors. We consider a context-aware computing environment providing composite and adapted service to users and propose an information processing model that characterizes the device where the collected data should be processed through services and/or applications. Based on this model, we provide an analytical tool to obtain some performance measures of the context-aware computing environment.

유한체의 합성체위에서의 고속 연산기 (A Fast Multiplier of Composite fields over finite fields)

  • 김용태
    • 한국전자통신학회논문지
    • /
    • 제6권3호
    • /
    • pp.389-395
    • /
    • 2011
  • 타원곡선 암호법(ECC)은 RSA나 ElGamal 암호법에 비하여 1/6정도의 열쇠(key) 크기로 동일한 안전도를 보장하므로, 메모리 용량이나 프로세서의 파워가 제한된 휴대전화기(cellular phone), 스마트카드, HPC(small-size computers) 등에 더욱 효과적인 암호법이다. 본 논문에서는 효과적인 타원곡선 암호법에 많이 사용되는 유한체위에서의 연산방법을 설명하고, Weil의 강하공격법(descent attack)에 안전하면서, 연산속도를 최대화하는 유한체의 합성체를 구축하여, 그 합성체위에서의 고속 연산기를 제안하려고 한다.

Measurement-based Estimation of the Composite Load Model Parameters

  • Kim, Byoung-Ho;Kim, Hong-Rae
    • Journal of Electrical Engineering and Technology
    • /
    • 제7권6호
    • /
    • pp.845-851
    • /
    • 2012
  • Power system loads have a significant impact on a system. Although it is difficult to precisely describe loads in a mathematical model, accurately modeling them is important for a system analysis. The traditional load modeling method is based on the load components of a bus. Recently, the load modeling method based on measurements from a system has been introduced and developed by researchers. The two major components of a load modeling problem are determining the mathematical model for the target system and estimating the parameters of the determined model. We use the composite load model, which has both static and dynamic load characteristics. The ZIP model and the induction motor model are used for the static and dynamic load models, respectively. In this work, we propose the measurement-based parameter estimation method for the composite load model. The test system and related measurements are obtained using transient security assessment tool(TSAT) simulation program and PSS/E. The parameter estimation is then verified using these measurements. Cases are tested and verified using the sample system and its related measurements.

경비분야 국가직무능력표준(NCS) 개발에 관한 연구 (Research on the Development of the National Competency Standards(NCS) for Security)

  • 김민수;김종민
    • 융합보안논문지
    • /
    • 제15권1호
    • /
    • pp.115-138
    • /
    • 2015
  • 지식정보사회의 산업현장에서 필요로 하는 인재상은 지식과 실무를 겸비한 차별화된 전문직업인을 요구하지만, 교육기관을 통해 배출되는 인력들의 직무수행능력은 산업현장 요구에 미치지 못하여, 재교육을 위한 시간과 비용을 재투자하여야 하는 문제점이 있다. 이러한 기존 교육과정에 대한 한계와 문제점을 극복하고 산업현장에서 요구하는 양질의 인력을 공급하기 위한 교육과정 개발이 시급한 실정이다. 따라서 본 연구에서는 국가차원에서 추진하고 있는 국가직무능력표준(NCS) 개발 기법을 활용하여 경비분야 교육의 현장적합성을 제고하고, 산업체가 요구하는 실질적인 교육과정 개발을 제안한다.