• Title/Summary/Keyword: Defense Issues

Search Result 191, Processing Time 0.023 seconds

Taint Inference for Cross-Site Scripting in Context of URL Rewriting and HTML Sanitization

  • Pan, Jinkun;Mao, Xiaoguang;Li, Weishi
    • ETRI Journal
    • /
    • v.38 no.2
    • /
    • pp.376-386
    • /
    • 2016
  • Currently, web applications are gaining in prevalence. In a web application, an input may not be appropriately validated, making the web application susceptible to cross-site scripting (XSS), which poses serious security problems for Internet users and websites to whom such trusted web pages belong. A taint inference is a type of information flow analysis technique that is useful in detecting XSS on the client side. However, in existing techniques, two current practical issues have yet to be handled properly. One is URL rewriting, which transforms a standard URL into a clearer and more manageable form. Another is HTML sanitization, which filters an input against blacklists or whitelists of HTML tags or attributes. In this paper, we make an analogy between the taint inference problem and the molecule sequence alignment problem in bioinformatics, and transfer two techniques related to the latter over to the former to solve the aforementioned yet-to-be-handled-properly practical issues. In particular, in our method, URL rewriting is addressed using local sequence alignment and HTML sanitization is modeled by introducing a removal gap penalty. Empirical results demonstrate the effectiveness and efficiency of our method.

Current Issues for ROK Defense Modeling & Simulation Scheme under the Transition of New HLA Simulation Architecture (HLA 모의구조전환에 따른 한국군 DM&S 발전방안)

  • 이상헌
    • Journal of the military operations research society of Korea
    • /
    • v.26 no.2
    • /
    • pp.101-119
    • /
    • 2000
  • US DoD designated the High LEvel Architecture (HLA) as the standard technical architecture for all military simulation since 1996. HLA will supercede the current Distributed Interactive Simulation(DIS) and Aggregated LEvel Simulation Protocol(ALSP) methods by no funds for developing/modifying non-HLA compliant simulations. The new architecture specifies Rules which define relationships among federation components, an Objects Model Template which species the form which simulation elements are described, and an Interface Specification which describes the way simulations interact during operations. HLA is named as standard architecture in NATO, Australia and many other militaries. Also, it will be IEEE standard in the near future. It goes without saying that ROK military whose simulation models are almost from US must be prepared in areas such as ROK-US combined exercise, training, weapon system acquisition, interface models with C4I system, OPLAN analysis, operations, and os on. In this paper, we propose several effective alternatives and issues for ROK Defense Modeling and Simulation under the transition of new HLA architecture. Those include secure the kernel of new simulation technology and develop our own conceptual model, RTI software, prototype federation for each service and aggregated one. In order to challenge the new simulation architecture effectively, we should innovate our current defense modeling and simulation infrastructure such s manpower, organization, budget, research environment, relationships among academia and industry, and many others.

  • PDF

Suggestion for the Enhancement of Military Supplies via Segregation of Defense Quality Management System (국방 분야 품질경영시스템 세분화를 통한 군수품 품질향상 방안)

  • Ju, Jin-Chun;Kim, Sung-kon;Lee, Jong-chan;Ahn, Nam-Su
    • Journal of the Korea Academia-Industrial cooperation Society
    • /
    • v.17 no.8
    • /
    • pp.251-261
    • /
    • 2016
  • Recently, many weapon related quality issues have arisen in the armed forces, such as failures of K-21 Infantry Fighting Vehicles, K-9 self-propelled mounts, and grenade explosion during boot training. Since all of the issues are repetitive phenomena, we examined the defense quality management system and identified the possible solutions for it. Since the government quality assurance agency performs their quality assurance activity using the system evaluation technique, we first reviewed the regulations related to the defense quality management system. Then, we benchmarked some other advanced quality management systems. We suggested two types of defense quality management system, one for small (in terms of the amount of the contract) competitive contracts and the other for large private contracts. For the first one, we adopted the framework of MIL-I-45208 (Inspection System Requirement), while for the second one, we adopted the framework of NATO AQAP 2310 (Quality Management System Requirements for Aviation, Space and Defense Suppliers).

Determinants of Middle Managers' Leadership in the Vietnamese Economic-Defense Enterprises

  • HOANG, Cuong Van;NGUYEN, Ngoc Huu;NGUYEN, Loan Quynh Thi;TRAN, Manh Dung
    • The Journal of Asian Finance, Economics and Business
    • /
    • v.7 no.8
    • /
    • pp.543-553
    • /
    • 2020
  • The purpose of this study is to investigate factors affecting the leadership capacity of middle managers and then evaluate the corresponding effect on the performance of subordinates in Vietnamese economic and defense enterprises. Data for the study was collected from questionnaire survey of 15 economic and defense enterprises, preceded by in-depth interviews with respondents who are subordinates of the departments/divisions of these enterprises. The research used logistic regression estimator to address econometric issues and to improve the accuracy of the regression coefficients. Our results show that the determinants of the leadership capacity of mid-level managers in defense and economic enterprises include: (i) personal qualities and qualities of managerial officials (understanding, courage), fairness, assertiveness and compliance), and leadership behaviors of two leadership styles - (ii) a transforming leadership style (influenced by ideals, inspirations, concerns) subordinates, stimulating intellect) and (iii) transactional leadership style (rewarding, detecting and handling problems for subordinates). Based on these results, our study suggests that middle managers should possess superior knowledge, care more about subordinates, understand the strengths and weaknesses of each subordinate, always be creative, assertive and courageous people as well as have high standards of competency and morality in order to become outstanding leaders in Vietnamese economic and defense enterprises.

The Optimal Deployment Problem of Air Defense Artillery for Missile Defense (미사일 방어를 위한 방공포대 최적 배치 문제)

  • Kim, Jae-Kwon;Seol, Hyeonju
    • Journal of Korean Society of Industrial and Systems Engineering
    • /
    • v.39 no.1
    • /
    • pp.98-104
    • /
    • 2016
  • With the development of modern science and technology, weapon systems such as tanks, submarines, combat planes, radar are also dramatically advanced. Among these weapon systems, the ballistic missile, one of the asymmetric forces, could be considered as a very economical means to attack the core facilities of the other country in order to achieve the strategic goals of the country during the war. Because of the current ballistic missile threat from the North Korea, establishing a missile defense (MD) system becomes one of the major national defense issues. This study focused on the optimization of air defense artillery units' deployment for effective ballistic missile defense. To optimize the deployment of the units, firstly this study examined the possibility of defense, according to the presence of orbital coordinates of ballistic missiles in the limited defense range of air defense artillery units. This constraint on the defense range is originated from the characteristics of anti-ballistic missiles (ABMs) such as PATRIOT. Secondly, this study proposed the optimized mathematical model considering the total covering problem of binary integer programming, as an optimal deployment of air defense artillery units for defending every core defense facility with the least number of such units. Finally, numerical experiments were conducted to show how the suggested approach works. Assuming the current state of the Korean peninsula, the study arbitrarily set ballistic missile bases of the North Korea and core defense facilities of the South Korea. Under these conditions, numerical experiments were executed by utilizing MATLAB R2010a of the MathWorks, Inc.

A Study on the Relationship of Human Factors Integration In the Defense

  • Ko, NamKyung;Kwon, YongSoo
    • Journal of the Korean Society of Systems Engineering
    • /
    • v.7 no.2
    • /
    • pp.45-50
    • /
    • 2011
  • This work presents the relationship between the domains of Human Factors Integration(HFI) to develop the weapon systems through integrating human factors into the defense acquisition program. The HFI is a systematic process for identifying, tracking and resolving human related issues ensuring a balanced development of both technologies and human aspects of capability. In this point of view, this paper identifies and analyzes the HFI domains. Based on the results, this paper presents the relationships between the domains of the HFI.

Technical Issues on Implementation of GPS Signal Authentication System

  • So, Hyoungmin;Jang, Jaegyu;Lee, Kihoon;Park, Junpyo
    • Journal of Positioning, Navigation, and Timing
    • /
    • v.7 no.3
    • /
    • pp.139-146
    • /
    • 2018
  • In recent years, a satellite navigation signal authentication technique has been introduced to determine the spoofing of commercial C/A code using the cross-correlation mode of GPS P(Y) code received at two receivers. This paper discusses the technical considerations in the implementation and application of authentication system simulator hardware to achieve the above technique. The configuration of the simulator consists of authentication system and user receiver. The synchronization of GPS signals received at two devices, data transmission and reception, and codeless correlation of P(Y) code were implemented. The simulation test result verified that spoofing detection using P(Y) codeless correlation could be achieved.

Research and Development Status of Dog-Horse Robot (견마형로봇 연구개발 현황)

  • Park, Yong-Woon;Chae, Jeong-Sook
    • Proceedings of the IEEK Conference
    • /
    • 2008.06a
    • /
    • pp.127-128
    • /
    • 2008
  • Research and development status of Dog-Horse robot is presented based on the critical technology issues which generates severe problems or hard trade-offs to meet the general requirement of system and new technologies. This paper covers from architectural problems to specific technology to overcome the operational requirement. Technology development based on operation requirement derived new research challenges as well as advanced development for system adaptation.

  • PDF

Improvement of ITSM IT Service Efficiency in Military Electronic Service

  • Woo, Hanchul;Jeong, Suk-Jae;Huh, Jun-Ho
    • Journal of Information Processing Systems
    • /
    • v.16 no.2
    • /
    • pp.246-260
    • /
    • 2020
  • IT Service Management (ITSM) achieves consolidated management for the IT services supporting the acquisition system, and no outside connections can be established with such ITSM. Issues pertaining to the D2B can be addressed to System Q&A or a Call Center for problem-solving. In other words, internal staff can take the necessary measures for problems by directly connecting with ITSM. Currently, diverse innovative technologies are being used in electronics and ubiquitous computing environments. This allows us to create a better world by providing the backbone for remarkable development in our human society in the fields of electronics, devices, computer science, and engineering. Following the expansion of IT services in the military acquisition sector such as Defense Electronic Procurement, military export/import support system, etc., customers' dependence on IT for conducting business with the military or related companies is increasing, including the military's dependence on the same technology for services to the public. Nonetheless, issues pertaining to the simplified/integrated management of complex IT service management systems, including slow system recovery, lack of integrated customer service window, and insufficient information sharing, have become the priority problems that IT managers are required to solve. Therefore, this study conducted research on the integrated management of IT services provided by Korea's national defense acquisition system, which was developed based on the existing system IT Infrastructure Library (ITIL) v2, and investigated the level of satisfaction with services with focus on ensuring that it can be used for understanding the necessity of the system and its advancement in the future.