• Title/Summary/Keyword: Security Knowledge

Search Result 770, Processing Time 0.023 seconds

A Study on the Curriculum of Department of Information Security in Domestic Universities and Graduate Schools and Comparison with the Needs of Industry Knowledge (국내 대학 및 대학원 정보보호 교육과정 분석 및 산업체 필요 지식과의 관련성 비교)

  • Kim, Min-Jeong;Lee, Haeni;Song, Shin-Jeong;Yoo, Jinho
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.24 no.1
    • /
    • pp.195-205
    • /
    • 2014
  • These days cyber attacks are increasing all over the world, and the national critical infrastructure and information network protection has become important. For this reason, the concentrated investment in information security and development of professional human resource are essential, but there is a shortage of information security workforce in Korea. Currently, departments of information security in domestic universities make efforts to develop human resource of information security and have a increasing interest in the curriculum design. So this paper investigates the curriculums of information security in domestic universities and graduate schools. And then, it compares with the needs of industry knowledge and skills by using SPSS. Through this analysis, we will get implications about curriculum design of Information security.

Intention to Use of Personal Cloud Services: Focusing on the Security Factors (보안요인을 중심으로 한 개인용 클라우드 서비스 사용의도)

  • Lee, Jae Seok;Kim, Kyoung-jae
    • Knowledge Management Research
    • /
    • v.18 no.4
    • /
    • pp.237-260
    • /
    • 2017
  • Recently, with the proliferation of smart phones and mobile devices and the increase in the speed of mobile Internet, IT services are increasingly used in smart phones and mobile devices in a different way from the past. That is, a cloud service that downloads and uses data stored in the server in real time is expanding, and as a result, the security due to the continuous Internet connection of the user becomes a problem. In this study, we analyzed the relationship between factors affecting the continuous use of personal cloud service by using technology acceptance model. In addition to the technology acceptance model, confidentiality, privacy, accessibility, innovation, and self-efficacy were extracted from the existing research with emphasis on the characteristics of the cloud service and security factors. Moreover, the difference of intention to use among genders was verified through structural equation modeling with survey data from 262 personal cloud service users.

Business Process Reengineering of an Information Exchange Management System for a Nationwide Cyber Threat Intelligence

  • Pramadi, Yogha Restu;Rosmansyah, Yousep;Kim, Myonghee;Park, Man-Gon
    • Journal of Korea Multimedia Society
    • /
    • v.20 no.2
    • /
    • pp.279-288
    • /
    • 2017
  • Nowadays, nations cyber security capabilities play an important role in a nation's defense. Security-critical infrastructures such as national defenses, public services, and financial services are now exposed to Advanced Persistent Threats (APT) and their resistance to such attacks effects the nations stability. Currently Cyber Threat Intelligence (CTI) is widely used by organizations to mitigate and deter APT for its ability to proactively protect their assets by using evidence-based knowledge. The evidence-based knowledge information can be exchanged among organizations and used by the receiving party to strengthen their cyber security management. This paper will discuss on the business process reengineering of the CTI information exchange management for a nationwide scaled control and governance by the government to better protect their national information security assets.

On the Length of Hash-values for Digital Signature Schemes

  • Lim, Chae-Hoon;Lee, Pil-Joong-
    • Proceedings of the Korea Institutes of Information Security and Cryptology Conference
    • /
    • 1994.11a
    • /
    • pp.29-31
    • /
    • 1994
  • In digital signature schemes derived from the zero-knowledge proof techniques, some authors often claims that the length of hash-values for their schemes could be as short as 64 or 72 bits for the security level of 2$^{-64}$ or 2$^{-72}$ . This letter shows that signature schemes with such short hash values cannot achieve the security levels as stated, due to the birthday attack by the signer.

  • PDF

Knowledge Assessment of Teachers of Students with Autism Spectrum Disorder from Applied Behaviour Analysis Perspective

  • Saigh, Budor H.;Bagadood, Nizar H.
    • International Journal of Computer Science & Network Security
    • /
    • v.22 no.1
    • /
    • pp.288-294
    • /
    • 2022
  • This study aims to assess the knowledge of teachers working with students with autism spectrum disorder (ASD) regarding applied behaviour analysis (ABA). The study was concerned with teachers' knowledge of ABA, its application in the classroom, barriers to its use and desired training opportunities and/or resources to enhance teacher application of ABA strategies in the classroom. Data were collected via an online survey completed by 190 teachers with students diagnosed with ASD in British schools. The results revealed overall knowledge of ABA strategies for classrooms, with only some teachers uninformed about the broad use and some key elements, and general familiarity with skills crucial for applying ABA. Actual knowledge of ABA was found to be high. In terms of application of ABA, the majority of the teachers employed a wide range of known strategies. A number of barrier to the application of ABA were noted including a lack of knowledge and training, a lack of administrative support and a lack of time and physical resources. Theoretical knowledge is crucial for practical applications; however, practical training was found to be important to ensure intervention efficacy.

Faculty Members' Knowledge and willingness to Implement the Universal Design for Learning for Students with Disabilities in Saudi Universities

  • Alzahrani, Hassan M
    • International Journal of Computer Science & Network Security
    • /
    • v.22 no.10
    • /
    • pp.315-321
    • /
    • 2022
  • Many students with disabilities and special needs are enrolled in higher education, which substantiated the need for research regarding faculty members' knowledge and willingness to implement supportive strategies in higher education in Saudi Arabia. This study explored Saudi university faculty members' knowledge and willingness to apply UDL (Universal Design for Learning) principles in their teaching practice. Surveys were used for data collection for this descriptive research. The findings indicated faculty members felt that they were knowledgeable regarding UDL and were willing to use UDL principles in teaching their students. Furthermore, there were no statistically significant differences between faculty members' knowledge levels regarding UDL based on their current position and years of experience. The findings indicated there was a significant relationship between gender and knowledge, with males having a significantly higher mean knowledge, although further analyses revealed it was a small effect. Finally, the results suggest more years of experience are related to greater willingness to use UDL principles, and this is particularly true for those in a lecturing position. These findings could be helpful, particularly for the Ministry of Education in Saudi Arabia to shed light on faculty members' UDL knowledge. Further research is needed to substantiate the findings.

Cloud Security and Privacy: SAAS, PAAS, and IAAS

  • Bokhari Nabil;Jose Javier Martinez Herraiz
    • International Journal of Computer Science & Network Security
    • /
    • v.24 no.3
    • /
    • pp.23-28
    • /
    • 2024
  • The multi-tenancy and high scalability of the cloud have inspired businesses and organizations across various sectors to adopt and deploy cloud computing. Cloud computing provides cost-effective, reliable, and convenient access to pooled resources, including storage, servers, and networking. Cloud service models, SaaS, PaaS, and IaaS, enable organizations, developers, and end users to access resources, develop and deploy applications, and provide access to pooled computing infrastructure. Despite the benefits, cloud service models are vulnerable to multiple security and privacy attacks and threats. The SaaS layer is on top of the PaaS, and the IaaS is the bottom layer of the model. The software is hosted by a platform offered as a service through an infrastructure provided by a cloud computing provider. The Hypertext Transfer Protocol (HTTP) delivers cloud-based apps through a web browser. The stateless nature of HTTP facilitates session hijacking and related attacks. The Open Web Applications Security Project identifies web apps' most critical security risks as SQL injections, cross-site scripting, sensitive data leakage, lack of functional access control, and broken authentication. The systematic literature review reveals that data security, application-level security, and authentication are the primary security threats in the SaaS model. The recommended solutions to enhance security in SaaS include Elliptic-curve cryptography and Identity-based encryption. Integration and security challenges in PaaS and IaaS can be effectively addressed using well-defined APIs, implementing Service Level Agreements (SLAs), and standard syntax for cloud provisioning.

A Better Prediction for Higher Education Performance using the Decision Tree

  • Hilal, Anwar;Zamani, Abu Sarwar;Ahmad, Sultan;Rizwanullah, Mohammad
    • International Journal of Computer Science & Network Security
    • /
    • v.21 no.4
    • /
    • pp.209-213
    • /
    • 2021
  • Data mining is the application of specific algorithms for extracting patterns from data and KDD is the automated or convenient extraction of patterns representing knowledge implicitly stored or captured in large databases, data warehouses, the Web, other massive information repositories or data streams. Data mining can be used for decision making in educational system. But educational institution does not use any knowledge discovery process approach on these data; this knowledge can be used to increase the quality of education. The problem was happening in the educational management system, but to make education system more flexible and discover knowledge from it huge data, we will use data mining techniques to solve problem.

Pre-service Special Education Teachers' Knowledge and Perceptions of Using Computer Technology in Teaching from PST Perspectives

  • Alhwaiti, Mohammed M.
    • International Journal of Computer Science & Network Security
    • /
    • v.22 no.4
    • /
    • pp.169-174
    • /
    • 2022
  • The study aims to discover the scope of pre-service special education teachers' knowledge and perceptions of using computer technology in teaching students with disabilities from a pre-service teacher (PST) perspective in light of the gender and sub-major variables. The sample consisted of 84 MEd students/pre-service teachers at the Department of Special Education, Faculty of Education, Umm Al-Qura University. The descriptive analytical approach is used due to its relevance to the study. A survey consisting of the participant's basic information section and 12 statements was sent to a set of pre-service teachers. Findings showed that pre-service special education teachers had an overall high knowledge of using computer technology (M=3.93). Findings also indicated that there were no gender- or major-related statistically significant differences (α = 0.05), in pre-service special education students' knowledge and perceptions of using computer technology.

Digital Identity Interchange Gateway Technology for Mobile Services (모바일 서비스를 위한 ID 공유 게이트웨이 기술)

  • Cho, S.R.;Jin, S.H.
    • Electronics and Telecommunications Trends
    • /
    • v.24 no.5
    • /
    • pp.133-142
    • /
    • 2009
  • 본 고에서는 사용자가 모바일 환경에서 자신의 ID 정보를 효율적으로 공유하기 위한 ID 공유 게이트웨이 기술에 대해 기술하고 있다. ID 공유 게이트웨이는 모바일 환경에서 ID 정보 공유시 문제가 될 수 있는 프로토콜 변환 및 메시지 보안 기능을 전담하여 처리하는 것이 목적이다. 이러한 게이트웨이 기술은 향후 ID 공유 기술을 이용한 다양한 음복함 서비스를 모바일 웹 응용서비스에서도 가능하게 한다는 의미를 가지고 있다.