• Title/Summary/Keyword: Information disclosure

Search Result 638, Processing Time 0.027 seconds

Design of Real-time Vital-Sign Encryption Module for Wearable Personal Healthcare Device (착용형 개인 건강관리 장치를 위한 실시간 생체신호 암호화 모듈의 설계)

  • Kim, Jungchae;Yoo, Sun Kook
    • Journal of the Institute of Electronics and Information Engineers
    • /
    • v.50 no.2
    • /
    • pp.221-231
    • /
    • 2013
  • Exchanging personal health information(PHI) is an essential process of healthcare services using information and communication technology. But the process have the inherent risk of information disclosure, so the PHI should be protected to ensure the reliability of healthcare services. In this paper, we designed encryption module for wearable personal health devices(PHD). A main goal is to guarantee that the real-time encoded and transmitted PHI cannot be allowed to be read, revised and utilized without user's permission. To achieve this, encryption algorithms as DES and 3DES were implemented in modules operating in Telos Rev B(16bit RISC, 8Mhz). And the experiments were performed in order to evaluate the performance of encryption and decryption using vital-sign measured by PHD. As experimental results, an block encryption was measured the followings: DES required 1.802 ms and 3DES required 6.683 ms. Also, we verified the interoperability among heterogeneous devices by testing that the encrypted data in Telos could be decoded in other machines without errors. In conclusion, the encryption module is the method that a PHD user is given the powerful right to decide for authority of accessing his PHI, so it is expected to contribute the trusted healthcare service distribution.

Monitoring system for packet analysis on Wi-Fi environment (Wi-Fi 환경에서 패킷 분석을 위한 모니터링 시스템)

  • Seo, Hee-Suk;Kim, Hee-Wan;Ahn, Woo-Young
    • Journal of the Korea Society of Computer and Information
    • /
    • v.16 no.12
    • /
    • pp.227-234
    • /
    • 2011
  • Many technologies for wireless internet are increasing as more and more laptop computers, net books, smart phone and other terminals, which provide wireless network, are created. IEEE 802.11 is computer wireless network technology that used in small area, called wireless LAN or Wi-Fi. IEEE 802.11 is a set of standards for implementing wireless local area network (WLAN) computer communication in the 2.4, 3.6 and 5 GHz frequency bands. They are created and maintained by the IEEE LAN/MAN Standards Committee (IEEE 802). AP (Access Point) is installed at cafes and public places providing wireless environment. It is more convenient to use wireless internet, however, It can be seen easily around us and possible to communicate with AP. IEEE 802.11 has many vulnerability, such as packet manipulation and information disclosure, so we should pay more attention when using IEEE 802.11. Therefore this paper developing monitoring system which can find out AP and Stations that connect with it, and capturing AP's information to find out vulnerability. This paper suggests monitoring system which traffic analysis in wireless environment.

A Study on the Application of Blockchain Technology to the Record Management Model (블록체인기술을 적용한 기록관리 모델 구축 방법 연구)

  • Hong, Deok-Yong
    • Journal of Korean Society of Archives and Records Management
    • /
    • v.19 no.3
    • /
    • pp.223-245
    • /
    • 2019
  • As the foundation for the Fourth Industrial Revolution, blockchain is becoming an essential core infrastructure and technology that creates new growth engines in various industries and is rapidly spreading to the environment of businesses and institutions worldwide. In this study, the characteristics and trends of blockchain technology were investigated and arranged, its application to the records management section of public institutions was required, and the procedures and methods of construction in the records management field of public institutions were studied in literature. Finally, blockchain technology was applied to the records management to propose an archive chain model and describe possible expectations. When the transactions that record the records management process of electronic documents are loaded into the blockchain, all the step information can be checked at once in the activity of processing the records management standard tasks that were fragmentarily nonlinked. If a blockchain function is installed in the electronic records management system, the person who produces the document by acquiring and registering the document enters the metadata and information, as well as stores and classifies all contents. This would simplify the process of reporting the production status and provide real-time information through the original text information disclosure service. Archivechain is a model that applies a cloud infrastructure as a backend as a service (BaaS) by applying a hyperledger platform based on the assumption that an electronic document production system and a records management system are integrated. Creating a smart, electronic system of the records management is the solution to bringing scattered information together by placing all life cycles of public records management in a blockchain.

The Effect of Type of Largest Shareholder Change on Losses: Focusing on Firm Risk (최대주주 변경의 유형이 적자보고에 미치는 영향: 기업위험을 중심으로)

  • Kim, Hye-Ri
    • Journal of Digital Convergence
    • /
    • v.18 no.6
    • /
    • pp.237-244
    • /
    • 2020
  • The purpose of this study is to empirically analyze the effect of information related to the largest shareholder's change on the likelihood of reporting a loss for firms listed on the Korea Exchange. Specifically, this study conducts a logit regression analysis to examine the firm's loss reporting with frequent changes in the largest shareholder among the largest shareholder change types. So, it controls the impact of a firm's loss reporting, such as the previous year's loss reporting and discretionary accruals. As a result of the analysis, firms whose largest shareholder have changed more than 2 times in the accounting period are found to have higher firm risk in loss reporting than other firms. The results of this analysis confirm that frequent changes in the largest shareholder, which are disclosures of investment risks on the Korea Exchange, may result in investment risk situations such as loss reporting.

An Approach for Improving Mobile WiMAX Security - ROSMEX Architecture (안전한 모바일 와이맥스 네트워크를 위한 보안 구조 연구)

  • Shon, Tae-Shik;Koo, Bon-Hyun;Choi, Hyo-Hyun
    • Journal of the Institute of Electronics Engineers of Korea TC
    • /
    • v.47 no.1
    • /
    • pp.25-34
    • /
    • 2010
  • The IEEE 802.16-2004 standard has a security sub-layer in the MAC layer called, Privacy Key Management (PKM). However, several researches have been published to address the security vulnerabilities of IEEE 802.16-2004. After the IEEE 802.16-2004 standard, a new advanced and revised standard was released as the IEEE 802.16e-2005 amendment which is foundation of Mobile WiMAX network supporting handoffs and roaming capabilities. PKMv2 in Mobile WiMAX includes EAP authentication, AES-based authenticated encryption, and CMAC or HMAC message protection. However, Mobile WiMAX still has a problem of security architecture such as a disclosure of security context in network entry, a lack of secure communication in network domain, and a necessity of efficient handover supporting mutual authentication because Mobile WiMAX security has mainly concentrated on between SS and BS communication. Based on the investigation results, we propose a novel mobile WiMAX security architecture, called RObust and Secure MobilE WiMAX (ROSMEX), to prevent the new security vulnerabilities.

A Study on Authentication Method for Secure Payment in Fintech Environment (핀테크 환경의 안전한 결제를 위한 인증 기법에 관한 연구)

  • Park, Jung-Oh;Jin, Byung-Wook
    • The Journal of the Institute of Internet, Broadcasting and Communication
    • /
    • v.15 no.4
    • /
    • pp.25-31
    • /
    • 2015
  • FinTech(Financial Technology) is defined as the technique to create efficient financial services using IT technologies. FinTech is an innovative technology through IT platform and big data, and is expected to improve the security and problems of the conventional banking system. Domestic financial institutions has introduced the technologies and investment in order to provide safe and effective services to users. However, In the financial environment, information disclosure and security incident has occurred so they has lost the trust from their customers. Moreover new variant of the security threats and attack techniques have occurred. Therefore, in this paper, we designed a authentication scheme for secure payment system in FinTech environment. The proposed study evaluated the stability of the existing security systems with respect to attack methods occurred in the financial environment.

Design and Implementation of App Control System for Improving the Security of the Mobile Application (모바일 애플리케이션의 보안성 향상을 위한 App 제어 시스템 설계 및 구현)

  • Lee, Yu-Jun;Jang, Young-Hwan;Park, Seok-Cheon
    • The Journal of the Korea Contents Association
    • /
    • v.16 no.2
    • /
    • pp.243-250
    • /
    • 2016
  • Recently, with the rise of the mobile device, from mobile devices the user who owns the security, speed up the implementation of the guarantee management environment as businesses and individual equipment for the effcient management of the existing system, but the introduction of the MDM MDM App management features administrators to register the App until you can't prvent the security threat. Therefore, this paper addresses these issues in order to improve the security of your application for the control system. The proposed system is a function of the MDM authentication technology to design analysis, and system architecture to help prevent information disclosure within the design and implementation of Mobile-based application control system. Implementation of the control system to assess the security of the international common criteria security evaluation complete the test scenarios on the basis of the test items. An average of 40% of the test results to verify the results of this enhanced security.

The Relevance between Investor Relation and Book-Tax Difference Variability (기업설명회와 회계이익-과세소득 차이 변동성 간의 관련성)

  • Kim, Jin-Sep
    • Journal of the Korea Academia-Industrial cooperation Society
    • /
    • v.18 no.11
    • /
    • pp.637-643
    • /
    • 2017
  • This study analyzed the Quality of Accounting Earning of Investor Relations(IR). For this, we utilized Book-Tax Difference Variability as the proxy of the level of the Quality of Accounting Earning. This study used 2,106 sample data from 2011 to 2016 on the listed firm on KOSPI(Korea Composite Stock Price Index). In short, the study results are as follows. Investor Relation(IR) has a negative relevance with Book-Tax Difference Variability, which agreed with the result of additional analysis using extra sample. According to these results, we can expect that Investor Relations(IR) firms will report more faithful Accounting Earning. This study makes the following fresh contribution to the field. The study result confirms how Investor Relation(IR) affects the Quality of Accounting Earning. We hope that this study will help the development of capital market.

Preferences of Malaysian Cancer Patients in Communication of Bad News

  • Eng, Tan Chai;Yaakup, Hayati;Shah, Shamsul Azhar;Jaffar, Aida;Omar, Khairani
    • Asian Pacific Journal of Cancer Prevention
    • /
    • v.13 no.6
    • /
    • pp.2749-2752
    • /
    • 2012
  • Background: Breaking bad news to cancer patients is a delicate and challenging task for most doctors. Better understanding of patients' preferences in breaking bad news can guide doctors in performing this task. Objectives: This study aimed to describe the preferences of Malaysian cancer patients regarding the communication of bad news. Methodology: This was a cross-sectional study conducted in the Oncology clinic of a tertiary teaching hospital. Two hundred adult cancer patients were recruited via purposive quota sampling. They were required to complete the Malay language version of the Measure of Patients' Preferences (MPP-BM) with minimal researcher assistance. Their responses were analysed using descriptive statistics. Association between demographic characteristics and domain scores were tested using non-parametric statistical tests. Results: Nine items were rated by the patients as essential: "Doctor is honest about the severity of my condition", "Doctor describing my treatment options in detail", "Doctor telling me best treatment options", Doctor letting me know all of the different treatment options", "Doctor being up to date on research on my type of cancer", "Doctor telling me news directly", "Being given detailed info about results of medical tests", "Being told in person", and "Having doctor offer hope about my condition". All these items had median scores of 5/5 (IQR:4-5). The median scores for the three domains were: "Content and Facilitation" 74/85, "Emotional Support" 23/30 and "Structural and Informational Support" 31/40. Ethnicity was found to be significantly associated with scores for "Content and Facilitation" and "Emotional Support". Educational status was significantly associated with scores for "Structural and Informational Support". Conclusion: Malaysian cancer patients appreciate the ability of the doctor to provide adequate information using good communication skills during the process of breaking bad news. Provision of emotional support, structural support and informational support were also highly appreciated.

Understanding and Improvement of Best Available Techniques for Waste Incineration Facility (폐기물 소각시설 최적가용기법 (BAT) 기준서의 이해와 개선방향)

  • Shin, Sujeong;Park, Jae-Hong;Park, Sang-Ah;Lee, DaeGyun;Kim, Dai-Gon
    • Journal of Korean Society for Atmospheric Environment
    • /
    • v.33 no.6
    • /
    • pp.533-543
    • /
    • 2017
  • As the public interest in environmental issues increased, the "Act On The Integrated Control Of Pollutant-Discharging Facility" was enacted. Through the integrated environmental pollution prevention act in which 19 industries with large environmental impacts are sequentially applied, pollutants can be managed in a medium-integrated manner and integrated permission of the business unit is possible and BAT can be applied to enable a scientific and proactive environmental management system. In order to facilitate the implementation of integrated environmental pollution prevention act with these advantages, the BAT BREF should be published, modified and revised every 5 years considering the level of scientific development. This study reviewed the issues to be considered in applying BAT and the types of BAT and focused on presenting improvements and development direction when revising and supplementing the standards in the future based on these contents. For this purpose, when revising the standards, it will be necessary to reflect on the domestic situation, to expand the TWG(Technical Working Group) of small-scale workplace experts, and to exchange opinions with business places that have similar processes for each waste type through a systematic total inspection. In addition to these methods, by establishing a resident participation system through information disclosure, it is expected to be used as a guideline for environmental management of business places not subject to integrated permission of less than 3 types as well as those subject to integrated permission.