• Title/Summary/Keyword: Security Area

Search Result 1,688, Processing Time 0.024 seconds

Security Enhanced Authentication Protocol in LTE With Preserving User Location Privacy (LTE에서 사용자 위치 정보 보호를 위한 보안 향상 인증 프로토콜)

  • Hahn, Changhee;Kwon, Hyunsoo;Hur, Junbeom
    • Journal of KIISE
    • /
    • v.41 no.9
    • /
    • pp.715-727
    • /
    • 2014
  • The number of subscribers in 4th generation mobile system has been increased rapidly. Along with that, preserving subscribers' privacy has become a hot issue. To prevent users' location from being revealed publicly is important more than ever. In this paper, we first show that the privacy-related problem exists in user authentication procedure in 4th generation mobile system, especially LTE. Then, we suggest an attack model which allows an adversary to trace a user, i.e. he has an ability to determine whether the user is in his observation area. Such collecting subscribers' location by an unauthorized third party may yield severe privacy problem. To keep users' privacy intact, we propose a modified authentication protocol in LTE. Our scheme has low computational overhead and strong secrecy so that both the security and efficiency are achieved. Finally, we prove that our scheme is secure by using the automatic verification tool ProVerif.

A Study of Quality-based Software Architecture Design Model under Web Application Development Environment (품질기반 웹 애플리케이션 개발을 위한 소프트웨어아키텍쳐 설계절차 예제 정립)

  • Moon, Song Chul;Noh, Si Choon
    • Convergence Security Journal
    • /
    • v.12 no.4
    • /
    • pp.115-122
    • /
    • 2012
  • As the most common application development of software development time, error-free quality, adaptability to frequent maintenance, such as the need for large and complex software challenges have been raised. When developing web applications to respond to software reusability, reliability, scalability, simplicity, these quality issues do not take into account such aspects traditionally. In this situation, the traditional development methodology to solve the same quality because it has limited development of new methodologies is needed. Quality of applications the application logic, data, and architecture in the entire area as a separate methodology can achieve your goals if you do not respond. In this study secure coding, the big issue, web application factors to deal with security vulnerabilities, web application architecture, design procedure is proposed. This proposal is based on a series of ISO/IEC9000, a web application architecture design process.

A Study on the Domestic Model for Cyber Threat Information Sharing by Analyzing the Relevant Systems of Major Advacnced Countries (주요국의 사이버위협정보 공유체계 분석을 통한 국내 적용모델 연구)

  • Yoon, Oh Jun;Cho, Chang Seob;Park, Jeong Keun;Bae, Sun Ha;Shin, Yong Tae
    • Convergence Security Journal
    • /
    • v.16 no.7
    • /
    • pp.101-111
    • /
    • 2016
  • The recent cyber threats are becoming real threats to our lives. This gloomy situation from cyber threats necessarily demands the establishment of the cyber threat information sharing system between the public and private area. Key countries, like the US, Japan and the UK, are stabilizing the cyber threat information sharing systems by founding exclusive organizations for sharing information and setting up and implementing relevant measures. In this thesis, I would like to propose the model for cyber threat information sharing in order to cope efficiently with the ever-intensifying cyber threats. My model would include key elements for the efficient information sharing, such as the clear designation of main operator of information sharing system, the management of collaboration system between the public and private sector, the build-up of the integrated and automated system and the supplementation of legal system including the grant of privilege, and so on.

A Study on the Avoidance of Typhoon 'Maemi' - Mainly on the training ship KAYA - (태풍 매미의 피항에 관한 연구 -가야호를 중심으로 -)

  • Kim, Min-Seok;Kang, Il-Kwon;Kim, Hyeong-Seok;Jeong, Sun-Beom
    • Journal of the Korean Society of Fisheries and Ocean Technology
    • /
    • v.40 no.3
    • /
    • pp.225-231
    • /
    • 2004
  • The power and scale of 950 hPa typhoon "Maemi" which struck the shore of Gosung in Kyungnam Province was same as that of 951 hPa typhoon "Saraho" in 1959. For the purpose of getting the safety of training ship "KAYA", we anchored at Jinhae Bay with riding at two anchors paid out 8 shackles of cable respectively. By the way when wind force being over 30m/s, we could not keep the safety of the ship "KAYA" by means of the holding power of an anchor only. Just by using the main engine moderately, we were able to maintain the security of the ship. The holding the main engine moderately, we were able to maintain the security of the ship. The holding power of an anchor according to the way of anchoring, the quality of sea bottom, the direction and speed of wind and current, and the length of an anchor cable were analyzed. The obtained results are summarized as follows : 1. When riding at two anchors rather than lying at single anchor we could get a good holding power. 2. There was a big difference in holding power according to the quality of the bottom. 3. It would be best anchoring in a soft mud area than in any other place as possible. 4. It would also be desirable to set anchor shackles much more than equipment number prescribed in regulation in order to get safety of a ship providing against typhoon.

Design of MCC Security System in Physical Layer (물리 계층 보안시스템 MCC부호기 설계)

  • Kim, Gun-Seok;Kong, Hyung-Yun
    • The Journal of the Institute of Internet, Broadcasting and Communication
    • /
    • v.8 no.5
    • /
    • pp.181-186
    • /
    • 2008
  • Wireless data transmission is vulnerable to attackers and hackers. Recently, the fast development of wireless communication systems seamlessly increase the demand for security in this area. Moreover, error correction is especially important because various kinds of interferences among wireless devices. In order to solve two above problems, we propose to apply MCC (M-sequence Convolutional Code) in the system which is able to protect information and correct errors. The proposed system can obtain higher secure property by randomly changing the output connections by the proposed M-sequence. Performance of the system is analyzed according to BER (Bit Error Rate) and secure levels. The simulation results revealed that we can get the coding gain of 0.1 dB over conventional convolution coding technique. The proposed algorithm is installed in physical layer and easily implemented. Another advantage of our proposed (M-sequence and convolutional code) is that it can be applied to CDMA (Code Division Multiple Access) communication system.

  • PDF

Implementation of smart security CCTV system based on wireless sensor networks and GPS data (무선 센서 네트워크와 GPS정보를 이용한 스마트 보안 CCTV 시스템 구현)

  • Yoon, Kyung-Hyo;Park, Jin-Hong;Kim, Jungjoon;Seo, Dae-Hwa
    • Journal of Advanced Marine Engineering and Technology
    • /
    • v.37 no.8
    • /
    • pp.918-931
    • /
    • 2013
  • The conventional object tracking techniques using PTZ camera detects object movements by analyzing acquired image. However, this technique requires expensive hardware devices to perform a complex image processing. And it is occasionally hard to detect object movements, if an acquired image is low quality or image acquisition is impossible. In this paper, we proposes a smart security CCTV system applying to wireless sensor network technique based on IEEE 802.15.4 standard to overcome the problems of conventional object tracking technique, which enables to track suspicious objects by detecting object movements and GPS data in sensor node. This system enables an efficient control of PTZ camera to observe a wide area, decreasing image processing complexity. Also, wireless sensor network is implemented using mesh networks to increase the efficiency of installing sensor node.

A Study on Safety of e-Business (e-비즈니스의 안전성에 관한 연구)

  • Sung, Tae-Kyung
    • Management & Information Systems Review
    • /
    • v.29 no.3
    • /
    • pp.1-21
    • /
    • 2010
  • The two main purposes of this paper are to (1) identify factors that influence the safety of e-Business and (2) investigate the explanatory power of these factors on firm performance. Through an extensive literature review and expert panel reviews, a list of 9 factors consisting of 36 items was compiled. In the second stage, questionnaires were administered to managers of e-Business companies in the metropolitan area of Seoul, Korea. Respondents rate 'Information Management,' as the most influencing factor, and then in the order of 'Payment,' 'Security Programs,' and 'Intrusion.' And survey results show that factors have very significant explanatory power for firm performance. While 'Information Management,' 'Delivery,' 'Intrusion,' and 'Security Programs' are the most explanatory factors for Tobin's q, 'Government Policy,' 'Delivery,' 'Intrusion,' 'Awareness,' and 'Security Programs' show most explanatory power for ROA.

  • PDF

A Study for Key Generation and Access Control Protocol in BYOD Environments (BYOD환경에서 키 생성 및 접근 제어 프로토콜에 관한 연구)

  • Min, So-Yeon;Jin, Byung-Wook;Lee, Kwang-Hyoung;Lee, Keun-Wang
    • The Journal of the Korea Contents Association
    • /
    • v.15 no.5
    • /
    • pp.27-35
    • /
    • 2015
  • Depending on the smart device user growth and development of communication technology, the area about working environment was extended without constraints of time and places. It is introducing to work using user's devices and this environment is called 'BYOD(Bring Your On Device)'. But it is vulnerable to security threat that happened in existing wireless environment and its security threat issue which is caused by inside information leak by an inside job and lost or stolen terminal which is caused by careless user is getting heated. So we studied about access control protocol by user rights under the BYOD situation make a session key based on the user information. We make a session key based on the user information and user device information, after that we design an access control protocol. The protocol we suggest can protect from attack under the BYOD situation and wireless communication situation and also safety and security requirement from inside information leak because it controls user rights.

Legal Problems of Crimes against Aircraft Safety in Korean Law (항공안전 관련 형사특별법에 대한 연구)

  • Song, Seong-Ryong;Kim, Dong-Uk
    • The Korean Journal of Air & Space Law and Policy
    • /
    • v.26 no.2
    • /
    • pp.69-100
    • /
    • 2011
  • The penalty clauses of 'Aviation Act' and 'Aviation Safety and Security Act' going into effect now were legislated because the aviation safety is being more influenced by the aviation safety system compared to the ground or maritime transportation and it is possible the aircraft can harm to people and wealth located in the ground as well as threaten the safety of the passengers and crew on board when it is the target of crimes. However, analyzing the current acts, applicable objects and behavioral requirements of some provisions are too general, and they are providing severely high penalties in many clauses without separating applicable objects and behavioral requirements. In addition, there are some critical legislative defects and there is a problem in terms of law-applicable area in the legal system. It is inferred that these legislative problems of the criminal special-law related to the aviation were caused by following reasons; first, aviation security experts or policy-makers than criminal law experts attended more actively in the enactment process, second, the communication among specialist groups were not accomplished well enough.

  • PDF

Analyzing Effects on Firms' Market Value of Personal Information Security Breaches (개인정보 유출이 기업의 주가에 미치는 영향)

  • Kim, JeongYeon
    • The Journal of Society for e-Business Studies
    • /
    • v.18 no.1
    • /
    • pp.1-12
    • /
    • 2013
  • With the increases of requirement for user identification in Internet services, we should let the service companies know my personal information. If the shared personal information with them are used in not-allowed area or delivered to un-authorized persons, we may have practical harms in several fields such as financial related operations. Korean Government has introduced new management method for personal information, but it is not hard to find the personal information management issues from Korean news papers. The proper measurement should be delivered to related companies to help them to decide investment for security. This paper review the indirect measurement method of demages by check the stock prices of related company for personal information management issue. We check the relationship between change of stock price and the information management issue. The result shows there are no changes in stock market. Korean government added strong regulations for personal information management though. To prevent further personal information issues, we should recognize the indirect damages properly and let the company pay higher reparations for any personal information abuse.