• Title/Summary/Keyword: Dynamic Threat

Search Result 80, Processing Time 0.032 seconds

Study on Security Measures of e-Gov with Dynamic ICT Ecosystem (동적인 ICT 생태계에 따른 전자정부 보안대책 연구)

  • Choung, Young-Chul;Bae, Yong-Guen
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.18 no.6
    • /
    • pp.1249-1254
    • /
    • 2014
  • As ICT ecosystem changes, security-related threat on individuals and corporations has increased. With the recent sophistication of hacking strategy, hacking serves commerce and its scale becomes larger than ever. Accordingly, the analysis on cyber intrusion is required. As a number one electronic government around the world, the government's role for security solution for realization of safe electronic government. This manuscript analyzes cyber intrusion cases, speculates the government's measures and suggests political recommendation for the current phenomena.

Malware Detection with Directed Cyclic Graph and Weight Merging

  • Li, Shanxi;Zhou, Qingguo;Wei, Wei
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.15 no.9
    • /
    • pp.3258-3273
    • /
    • 2021
  • Malware is a severe threat to the computing system and there's a long history of the battle between malware detection and anti-detection. Most traditional detection methods are based on static analysis with signature matching and dynamic analysis methods that are focused on sensitive behaviors. However, the usual detections have only limited effect when meeting the development of malware, so that the manual update for feature sets is essential. Besides, most of these methods match target samples with the usual feature database, which ignored the characteristics of the sample itself. In this paper, we propose a new malware detection method that could combine the features of a single sample and the general features of malware. Firstly, a structure of Directed Cyclic Graph (DCG) is adopted to extract features from samples. Then the sensitivity of each API call is computed with Markov Chain. Afterward, the graph is merged with the chain to get the final features. Finally, the detectors based on machine learning or deep learning are devised for identification. To evaluate the effect and robustness of our approach, several experiments were adopted. The results showed that the proposed method had a good performance in most tests, and the approach also had stability with the development and growth of malware.

Closed-form solution for the buckling behavior of the delaminated FRP plates with a rectangular hole using super-elastic SMA stitches

  • Soltanieh, Ghazaleh;Yam, Michael CH.;Zhang, Jing-Zhou;Ke, Ke
    • Structural Engineering and Mechanics
    • /
    • v.81 no.1
    • /
    • pp.39-50
    • /
    • 2022
  • Layer separation (delamination) is an essential threat to fiber-reinforced polymer (FRP) plates under dynamic, static, and fatigue loads. Under compressive load, the growth of delamination will lead to structural instability. The aim of this paper is to present a method using shape memory alloy (SMA) stitches to suppress the delamination growth in a FRP plate and to improve the buckling behavior of the plate with a rectangular hole. The present paper is divided into two parts. Firstly, a closed-form (CF) formulation for evaluating the buckling load of the FRP plate is presented. Secondly, the finite element method (FEM) will be employed to calculate the buckling loads of the plates which serves to validate the results obtained from the closed-form method. The novelty of this work is the development of the closed-form solution using the p-Ritz energy approach regarding the stress-dependent phase transformation of SMA to trace the equilibrium path. For the FEM, the Lagoudas constitutive model of the SMA material is implemented in FORTRAN programming language using a user material subroutines (VUMAT). The model is simulated in ABAQUS/Explicit solver due to the nature of the loading type. The cohesive zone model (CZM) is applied to simulate the delamination growth.

A study on the growth mechanism of Burger King based on dynamic models of success and failure of businesses

  • Lee, Sang-Youn
    • East Asian Journal of Business Economics (EAJBE)
    • /
    • v.5 no.4
    • /
    • pp.39-49
    • /
    • 2017
  • Purpose - This study is to propose a creative idea for constant business growth and development by examining characteristics of business outcomes by phase, which are "growth" and "erosion and stagnation," respectively. Research design, data, methodology - It is necessary to identify an occurrence of crisis and its diffusion with a dynamic model in order to identify a success and failure of businesses in an organic way, not on a binary structure. The static perspective is to understand a crisis as a simply one-time event or as a linear causation. Thus, it has a limited understanding of the overall situation and has limits to investigating a foundational cause and developing long-term countermeasures. On the contrary, the dynamic perspective is to understand the crisis as circulation process of the overall system. Thus, it divides elements of the crisis as external and internal ones to understand it as the causal relationship of each element. Results - During the growth period of Burger King, the company promoted its brand very successfully with aggressive and creative marketing activities. However, due to the founder's disposal of management rights and the following changes in the management, the company had no choice but to lose focus on its business philosophy and brand management, and eventually it had to face the big crisis (resonance) which was delisting from the stock market because of the external threat; well-being trend. However, Burger King resumed lifting on the stock exchange by making great efforts to clearly identify the current issues and seek solutions. Under the spirit of "perseverance" and its slogan "Have it your way" the company is now going head to head with McDonald's in the North American region and emerging countries. Conclusions - Then, what is the most crucial factor in the success and failure of businesses? Answers may vary, however, as learned from the case study of Burger King, corporations should inspect the present and focus on developing a long-term strategy for the future and actively fulfill the actions. McDonald's may not be able to innovate by itself in the future as it may become routinized to the growth. There will be chances of winning if we change conditions of individuals or organizations to an organic system in terms of being creative. There is a hopeful message here that an individual or small business may have more advantages in the era of the idea and innovation.

E-BLP Security Model for Secure Linux System and Its Implementation (안전한 리눅스 시스템을 위한 E-BLP 보안 모델과 구현)

  • Kang, Jung-Min;Shin, Wook;Park, Chun-Gu;Lee, Dong-Ik
    • The KIPS Transactions:PartA
    • /
    • v.8A no.4
    • /
    • pp.391-398
    • /
    • 2001
  • To design and develop secure operating systems, the BLP (Bell-La Padula) model that represents the MLP (Multi-Level Policy) has been widely adopted. However, user\`s security level in the most developed systems based on the BLP model is inherited to a process that is actual subject on behalf of the user, regardless whatever the process behavior is. So, there could be information disclosure threat or modification threat by malicious or unreliable processes even though the user is authorized in the system. These problems can be solved by defining the subject as (user, process) ordered pair and by defining the process reliability. Moreover, when the leveled programs which exist as objects in a disk are executed by a process and have different level from the process level, the security level decision problem occurs. This paper presents an extended BLP (E-BLP) model in which process reliability is considered and solves the security level decision problem. And this model is implemented into the Linux kernel 2.4.7.

  • PDF

Lessons learned from Operation Iraqi Freedom(OIF) for ROK forces (이라크전쟁의 군사적 교훈)

  • Mun, Gwang-Geon
    • Journal of National Security and Military Science
    • /
    • s.1
    • /
    • pp.71-111
    • /
    • 2003
  • The key lessons of the very complex modern war can be dangerously misleading to the outsiders. The efforts trying to draw lessons learned from the Iraq War (OIF : Operation Iraqi Freedom) may be biased by the view of point by Americans, because most of war episodes have been come from the Western media coverage. More serious bias can be committed thanks to the differences of warfighting doctrines and military technology between US forces and ROK forces. However, OIF-fought allied commanders and outside military experts said this campaign exemplified 21st-century warfare: swift, agile and decisive, employing overpowering technology to bring relentless violence to bear in many places at once. Even though the campaign evolved differently than anticipated, allied forces regrouped and regained the initiative remarkably quickly, thanks in large part to a new command flexibility, tied to new technology that made possible the more rapid sharing of data. These factors permitted "new air-land dynamic". The things that compel that are good sensors networked with good intelligence disseminated through a robust networking system, which then yields speed. Speed turns out to be a very important factor for conducting "Rapid Decisive Operations" relied on joint "Mass of Effects". ROK forces facing the heaviest ground threat in the world may learn more from Cold War era-typed US Army 3rd Infantry Division (3ID), which operating considerably beyond existing doctrine. 3ID flew its personnel into Kuwait to meet up with equipment already located in the region as pre-positioned stock. During OIF, the division conducted continuous offensive operations over 230km deep battlespace for 21 days. The lessons learned for ROK army to prepare tomorrow's war may be found from 3ID in its training, command and control, task organization, firepower and battlespace management, and logistics.

  • PDF

A Study on the Partnership of the Japanese Police and Private Security (일본 경찰과 민간의 협력에 관한 연구)

  • Ahn, Hwang Kwon;Ahn, Chung Joon
    • Convergence Security Journal
    • /
    • v.12 no.5
    • /
    • pp.61-70
    • /
    • 2012
  • The security law and security industry of Japan have a great impact on Korea. In a modern sense, there are little large disparities between the two nations in the history and development of private security. However, the way they look at private security is not the same in large part. In Japan, private security companies are highly regarded by Japanese people as organizations that guarantee their safety, owing to the efforts of private security companies themselves, the National Security Association and civic groups. Private security has especially been approved and supported since it was decided in the anticrime cabinet council in December, 2003, in line with the action plan for the realization of anticrime society to boost private security as an industry to ensure people's safety in daily routine life by curbing crimes that might pose a threat to peaceful life. Afterwards, there has been a dynamic collaboration between the Japanese police and private security in terms of education, crime prevention, disaster prevention/restoration and everyday life safety. As for Korea, the necessity of cooperation between private security and the police is increasingly stressed, and it's required to strengthen their partnership to ensure successful crime prevention in consideration of Japanese partnership cases. In Japan, the police, civic groups, the security association and security companies make every effort to satisfy Japanese people's safety needs in diverse ways and take disaster-prevention measures as well.

A Periodical Key Refreshment Scheme for Compromise-prone Sensor Nodes (오염에 취약한 센서노드들을 위한 주기적인 키갱신 방안)

  • Wang, Gi-Cheol;Kim, Ki-Young;Park, Won-Ju;Cho, Gi-Hwan
    • Journal of the Institute of Electronics Engineers of Korea TC
    • /
    • v.44 no.11
    • /
    • pp.67-77
    • /
    • 2007
  • In sensor networks, it is very important to refresh communication keys of sensors in a periodic or on-demand manner. To perform a dynamic key management efficiently, sensor networks usually employ cluster architecture and each CH (Cluster Head) is responsible for key management within its cluster. In cluster-based sensor networks, CHs are likely to be targets of capture attacks, and capture of CHs threatens the survival of network significantly. In this paper, we propose a periodical key refreshment scheme which counteracts against capture of CHs. First, the proposed scheme reduces the threat caused by compromise of CHs by forcing each CH to manage a small number of sensors and changing CH role nodes periodically. Second, the proposed scheme flings attackers into confusion by involving other nodes in a key establishment between BS (Base Station) and a CH. Our numerical analyses showed that the proposed scheme is more secure than other schemes and robust against compromise of CHs.

Efficient Detection of Android Mutant Malwares Using the DEX file (DEX 파일을 이용한 효율적인 안드로이드 변종 악성코드 탐지 기술)

  • Park, Dong-Hyeok;Myeong, Eui-Jung;Yun, Joobeom
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.26 no.4
    • /
    • pp.895-902
    • /
    • 2016
  • Smart phone distribution rate has been rising and it's security threat also has been rising. Especially Android smart phone reaches nearly 85% of domestic share. Since repackaging on android smart phone is relatively easy, the number of re-packaged malwares has shown steady increase. While many detection techniques have been proposed in order to prevent malwares, it is not easy to detect re-packaged malwares by static analysis and it is also difficult to operate dynamic analysis in android smart phone. Static analysis proposed in this paper features code reuse of repackaged malwares. We extracted DEX files from android applications and performed static analysis using class names and method names. This process doesn't not include reverse engineering, so it is possible to detect malwares efficiently.

The Nonlinear Combustion Instability Prediction of Solid Rocket Motors (고체로켓모터의 비선형 연소 불안정성 예측 기법)

  • Hong, Ji-Seok;Moon, Hee-Jang;Sung, Hong-Gye;Um, Won-Seok;Seo, Seonghyeon;Lee, Do-hyung
    • Journal of the Korean Society of Propulsion Engineers
    • /
    • v.20 no.1
    • /
    • pp.20-27
    • /
    • 2016
  • The prediction of combustion instability is important to avoid an obvious threat to the structural safety and the motor performance because it affects the apparent response function of the propellant, the burning rate, and a mean flow Mach number at the local surface. The combustion instability occurs in case acoustic waves were coupled with the combustion/flow dynamic frequency. In this paper, an acoustic instability model is derived from the nonlinear wave equation for analysing acoustic dynamics in solid rocket motors. The chamber pressure and burning rate effects on combustion instability have been investigated.