• Title/Summary/Keyword: Security Program

Search Result 1,213, Processing Time 0.03 seconds

Problems and Solutions of the Korean Bug Bounty Program (한국 버그 바운티 프로그램의 제도적인 문제점과 해결방안)

  • Park, Hye Sung;Kwon, Hun Yeong
    • Journal of Information Technology Services
    • /
    • v.18 no.5
    • /
    • pp.53-70
    • /
    • 2019
  • As information security becomes more important as the fourth industrial revolution gradually emerges, an efficient and effective way to find vulnerabilities in information systems is becoming an essential requirement of information security. As the point of the protection of current information and the protection of the future industry, the Korean government has paid attention to the bug bounty, which has been recognized for its efficiency and effectiveness and has implemented through the Korea Internet Security Agency's S/W vulnerability bug bounty program. However, there are growing problems about the S/W vulnerability bug bounty program of the Korea Internet Security Agency, which has been operating for about 7 years. The purpose of this study is to identify the problems in Korean bug bounty policies through the characteristics of the bug bounty program, and to suggest the direction of the government's policy to activate the bug bounty like changes in the government's approach utilizing the market.

Efficient Script-File based Profiling for Web Attack Detection (스크립트 파일 기반의 효율적인 웹 공격 탐지 프로파일링)

  • Im, Jong-Hyuk;Park, Jae-Chul;Kim, Dong-Kook;Noh, Bong-Nam
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2006.10c
    • /
    • pp.511-514
    • /
    • 2006
  • 비정상행위 탐지를 위한 프로파일 기술은 침임탐지시스템의 성능 향상을 위한 핵심기술로서, 높은 공격 탐지율과 침입탐지시스템의 수행 시간 단축을 위해 반드시 요구되는 기술이다. 최근 인터넷의 보급과 활성화로 웹 어플리케이션 보안을 위한 연구가 활발히 진행되고 있으나, 웹 애플리케이션의 개발 언어와 공격 특성을 반영하지 못해 그 효율성이 저하되고 있다. 본 논문에서는 웹 공격 탐지를 위해 연구 되었던 서열정렬 알고리즘을 이용한 웹 공격 탐지의 성능 개선을 위하여 웹 애플리케이션 개발에 주로 사용되는 스크립트파일을 기반으로 한 프로파일 방법을 제안하고 실험 결과를 기술하였다.

  • PDF

Development and Evaluation of Physical Fitness Program for Special Security Guards in Nuclear Power Plant (원자력발전소 특수경비원을 위한 체력훈련 프로그램의 개발 및 효과검증)

  • Jeong, Ho-won;Lee, Suk-ho
    • Korean Security Journal
    • /
    • no.62
    • /
    • pp.87-111
    • /
    • 2020
  • Special security guards working at nuclear power plants, one of the country's major facilities, serve as human protection to safeguard from threats to nuclear facilities and nuclear materials. The purpose of this study was to develop a physical fitness program for fitness management that is essential for the completion of missions of special guards. This program was designed to prepare the physical fitness test proposed by Jeong et al. (2019). Researchers conducted literature analysis, research meetings, expert meetings and pretests, and developed a 90-minute physical fitness program for 6 weeks, 3 times a week. In order to verify the effectiveness of the developed physical fitness program, the experiment was conducted on 29 subjects(control group: 15, exercise group:14). Specifically, a six-week physical fitness program was conducted for exercise groups, and the fitness test for a special security guard was conducted for all subjects before and after the experiment. As a result, it was found that the physical fitness program was effective in improving the performance of 20m shuttle run, leg tuck, 20m sprint & carry, and medicine ball back throw. Until recently, problems of neglecting fitness management of security guards have been pointed out. It is expected that the physical fitness program proposed by this study will be a practical alternative for security guards' fitness management.

Security Policy Issue in Application Software Development Process of Smart Phone Environment (스마트폰 환경의 응용 소프트웨어 개발과정에서 보안정책 이슈)

  • Hong, Jin-Keun
    • Journal of Digital Convergence
    • /
    • v.10 no.10
    • /
    • pp.319-324
    • /
    • 2012
  • The application software, which is developed on smart phone environment, is applied to according to system development methodology. This paper presents security consideration, that is required to major application program, which is developed in smart phone environment. First it reviews security issues in application program, and the next it considered to security policy for secure application program.

The Development of PV-Batttery Driven LED Security Lighting (태양광 배터리 하이브리드 시스템 기반 LED 보안등 개발)

  • Go, Seok-Il;Ahn, Seon-Ju;Park, Byeong-Ha;Choi, Joon-Ho
    • 한국태양에너지학회:학술대회논문집
    • /
    • 2012.03a
    • /
    • pp.433-438
    • /
    • 2012
  • LED is expected as an environmentally friendly next generation light source with its good reliability and long lifetime. In this paper, we propose the PV-Battery Driven LED Security Lighting using the LabVIEW program. The remote monitoring is a program for monitoring the voltage and current that made from PV-Battery Driven LED security lighting in remote area. The main subject of this paper is about making the more useful monitoring program to get and save the data from LED Security Lighting. We develop a prototype of the proposed system.

  • PDF

A Study on Developing the Educational Program for the Emergency Response with a Railroad Fire Accident (철도화재사고 비상대응 교육프로그램 개발에 관한 연구)

  • Roh, Sam-Kew;Park, Sang-Gyu;Ham, Eun-Gu;Kim, Si-Gon
    • Proceedings of the KSR Conference
    • /
    • 2008.06a
    • /
    • pp.1511-1517
    • /
    • 2008
  • In January, 2005, "railroad security law" was presented, preparing the systematic equipment that allows several railroad operators to consider the railroad security issue, and each of railroad operative institutions accepted such situation that construct the integral railroad security system, resulting in constructing the emergent system coping with the railroad fire accident through the relevant study business to improve the railroad security efficiency against fire. This study tried to present the studying direction on developing the emergent educational program coping with the railroad fire accident, which is distributed to the spot, about the railroad worker for improving the railroad security efficiency against fire through the education of systematic and efficient emergent countermeasure procedure of emergent system against the railroad fire accident.

  • PDF

A Study on the Establishment of a Security and Customs Cooperation System for Reinforcement of the International Air Cargo Supply Chain Security (국제항공화물 공급망 보안 강화를 위한 보안과 세관의 협조체계 구축방안에 관한 연구)

  • Park, Man-Hui;Hwang, Ho-Won
    • Journal of the Korean Society for Aviation and Aeronautics
    • /
    • v.29 no.4
    • /
    • pp.142-152
    • /
    • 2021
  • The International Civil Aviation Organization (ICAO) and the World Customs Organization (WCO) emphasize securing supply chain security through mutual cooperation between aviation security and customs by establishing a standardized security system by regulations, procedures and practices of international air cargo. Accordingly, in accordance with the Aviation Security Act, the known consignors system aims to secure cargo security before loading air cargo into the aircraft, while the customs AEO system is a public-private cooperation program that focuses on simplification of customs clearance procedures. These systems basically have the same purpose of effectively identifying high-risk cargo through a risk-based approach in international air cargo transportation and preventing risks in advance, and the content that a common basic standard for cargo security must be established is also similar. Therefore, it is necessary to establish a cooperation system by simplifying problems such as cumbersome and redundant authentication procedures and on-site verification through coordination of security requirements for mutual recognition between the two systems. As a result, it is necessary to establish a process for coordinating security and customs' supply chain security program and maximize the effect of harmonizing supply chain security by strengthening the linkage between known consignors and AEO.

Effect of Physical Activity Program on Body Composition and Cardiovascular Risk Factors in Security Guards (민간경비원의 신체활동 참여가 신체조성과 심혈관계 인자에 미치는 영향)

  • Kim, Kyong Tae;Kim, Jong Gul
    • Convergence Security Journal
    • /
    • v.13 no.2
    • /
    • pp.25-32
    • /
    • 2013
  • The purpose of this investigation was to determine the effect of physical activity program on body composition and cardiovascular risk factors in security guards. The subjects consisted of twenty security guards who are working to the security company in Seoul, physical activity group of 10 people and control group of 10 people in 2012. The results were as following. For body composition, there were significant decreases in body fat, also significant increases in fat free mass(p<.05). There were significant decreases in TG, elevated HDL-C was observed with physical activity group(p<.05). It is concluded that physical activity program might make beneficial effect such as increasing fat free mass, it also produces lower incidence of cardiovascular disease during 12 weeks in security guards.

Personal information security measures against mobile office security threats in BYOD environment (BYOD 환경의 모바일 오피스 보안 위협에 대한 개인정보 보안 방안)

  • Park, Byoung-Woo;Jang, Seok-eun;Lee, Eun-kyung;Lee, Sang-Joon
    • Proceedings of the Korean Society of Computer Information Conference
    • /
    • 2018.01a
    • /
    • pp.167-170
    • /
    • 2018
  • 모바일 오피스 확산과 함께 개인 소유의 스마트 폰, 태블릿PC 등을 업무 환경에 사용하는 BYOD 시대에 도래했다. BYOD 등장으로 기업 내부 인프라가 폐쇄적 환경에서 개방적 환경으로 전환했고 언제 어디서나 개인 스마트 기기가 기업 인프라 접근 허용이 가능해 졌다. 모바일 오피스는 휴대성이라는 편리함 이면에 일반 PC환경보다 더 많은 다양한 보안 위협과 취약점이 존재하고 스마트폰 분실 및 정보 유출, 악성코드 등의 위협이 존재하므로 더 높은 수준의 근본적인 보안대책 강구가 필요하다. 본 논문에서는 모바일 개인정보와 BYOD 환경의 모바일 오피스에 대한 보안 위협을 연구하고 모바일 오피스 개인정보 보안 방안을 제시함으로써 모바일 오피스 서비스를 제공하는 기업에게 개인정보 보안 전략을 수립하는 가이드라인을 제공하고자 한다.

  • PDF

Development of Document Security System for KSLV-I Program (KSLV-I 문서보안시스템 개발)

  • Lee, Hyo-Young;Joh, Mi-Ok;Hong, Il-Hee
    • Aerospace Engineering and Technology
    • /
    • v.7 no.1
    • /
    • pp.210-215
    • /
    • 2008
  • Most of technology information obtained from KSLV-I program have been managed by Program Life-Cycle Management System(PLMS). As involving technologies in the program require high level of confidentiality as those may be dealt with entities in international cooperation, the enforcement of strict security policy is inevitable. Therefore, a document security system has been developed to enhance protection in document management. This paper describes the overview and development status of the security system, integrated with PLMS, which aims at preventing illegal access and inadvertant leakage of the technology information.

  • PDF