• 제목/요약/키워드: Website Security

검색결과 105건 처리시간 0.022초

웹 취약점 점검 및 취약점별 조치 우선 순위 산정에 관한 연구 (A Study on Web Vulnerability Assessment and Prioritization of Measures by Vulnerabilities)

  • 성종혁;이후기;고인제;김귀남
    • 융합보안논문지
    • /
    • 제18권3호
    • /
    • pp.37-44
    • /
    • 2018
  • 오늘날 우리는 웹 사이트의 홍수 속에 살고 있으며, 다양한 정보를 얻기 위해서 인터넷을 통해 수많은 웹 사이트에 접속을 하고 있다. 하지만 웹 사이트의 보안성이 담보되지 않는다면, 여러 악의적인 공격들로부터 웹 사이트의 안전성을 확보할 수가 없다. 특히 금전적인 목적, 정치적인 목적 등 다양한 이유로 웹 사이트의 보안 취약점을 악용한 해킹 공격이 증가하고 있다. SQL-Injection, 크로스사이트스크립트(XSS), Drive-By-Download 등 다양한 공격기법들이 사용되고 있으며, 그 기술 또한 갈수록 발전하고 있다. 이와 같은 다양한 해킹 공격들을 방어하기 위해서는 웹 사이트의 개발단계부터 취약점을 제거하여 개발하여야 하지만, 시간 및 비용 등 여러 문제들로 인해 그러지 못하는 것이 현실이다. 이를 보완하기 위해 웹 취약점 점검을 통해 웹 사이트의 취약점을 파악하고 조치하는 것이 중요하다. 이에 본 논문에서는 웹 취약점 및 진단기법에 대해 알아보고 실제 웹 취약점 진단 사례를 통해 각 사례별 조치현황에 따른 개발단계에서의 취약점별 조치 우선 순위에 대해 알아보고자 한다.

  • PDF

금융회사 인터넷 홈페이지를 통한 개인정보 수집 및 이용 동의 정책 수립 모델 연구 (A Study on Decision Making Model for Personal Information Collection and Use Policy Establishment through Internet Homepage of Financial Companies)

  • 김성훈;이경호
    • 정보보호학회논문지
    • /
    • 제27권3호
    • /
    • pp.637-651
    • /
    • 2017
  • 금융회사가 개인정보를 수집하기 위해서는 법률에 정해진 내용을 소비자에게 명시적으로 알리고 사전 동의를 받도록 되어 있다. 그 결과 금융상품이 복잡해지고 다양해짐에 따라 '개인정보제공 동의서' 내용도 복잡해지고 분량이 많아지게 되었다. 특히 인터넷과 모바일의 경우 화면 크기의 제약으로 글씨가 더 작아지면서 더욱 이해하기가 힘들어졌다. 이것은 개인정보를 수집하는 거의 모든 기업이 비슷한 상황이어서, 서비스를 이용하는 소비자 입장에서는 동의 내용을 이해못한 채 습관적으로 동의하는 모순이 생기고 있다. 본 연구에서는 금융회사 인터넷 홈페이지를 통한 합리적인 개인정보 수집 및 이용 동의 정책 수립 모델을 제시하기 위해 국내외 법제도를 고찰하여 문제점을 도출하고 개선 방안을 제시한다. 또 연구를 통해 선정된 평가요인을 AHP(Analytic Hierarchy Process)방법을 이용하여 의사결정 모델과 공식을 제시하고 검증한다.

Impact of Social Networks Safety on Marketing Information Quality in the COVID-19 Pandemic in Saudi Arabia

  • ALNSOUR, Iyad A.;SOMILI, Hassan M.;ALLAHHAM, Mahmoud I.
    • The Journal of Asian Finance, Economics and Business
    • /
    • 제8권12호
    • /
    • pp.223-231
    • /
    • 2021
  • The study aimed to investigate the impact of social networks safety (SNS) on the marketing information quality (MIQ) during the COVID-19 pandemic in Saudi Arabia. The study examines the statistical differences in social networks safety SNS and marketing information quality MIQ according to the demographics such as age, sex, income, and education. For this study purpose, information security and privacy are two components of social networks safety. The research materials are website resources, regular books, journals, and articles. The population includes all Saudi users of social networks. The figures show that active users of the social network reached 25 Million in 2020. The snowball method was used and sample size is 500 respondents and the questionnaire is the tool for the data collection. The Structural Equation Modelling SEM technique is used. Convergent Validity, Discriminate Validity, and Multicollinearity are the main assumptions of structural equation modeling SEM. The findings show the high positive impact of SNS networks safety on MIQ and the statistical differences in such variables refer to education. Finally, the study presents a set of future suggestions to enhance the safety of social networks in Saudi Arabia.

Systematic Approach to Involving the Tools of Digital Marketing as a Guarantee of the International Business Development

  • Chernenko, Oksana;Kovalchuk, Svitlana;Perevozova, Iryna;Fayvishenko, Diana;Zaburmekha, Yevgena
    • International Journal of Computer Science & Network Security
    • /
    • 제22권2호
    • /
    • pp.311-317
    • /
    • 2022
  • The research is devoted to the substantiation of the system approach to the involvement of digital marketing tools as a guarantee of international business development. It is proved that digital marketing, as a type of marketing based on the use of digital technologies allows to make a profit, to promote the brand, as well as goods and services in the market. The digital marketing toolkit system is a set of elements with existing relationships that ensure the effectiveness of the entire digital marketing, which in total is greater than its individual components. The implementation of a systems approach involves the implementation of the philosophy of digital marketing in general, its functions in the form of systems analysis, formation of strategic development goals and entry and promotion in the international market, preparation and implementation of tactical and strategic development plans.The use of such digital marketing tools as: content marketing, social media marketing, Email-marketing, targeted advertising, contextual advertising, media advertising, Search Engine Optimization, affiliate programs and the company's website is analyzed in detail.

Blockchain-based e-Agro Intelligent System

  • Srinivas, V. Sesha;Pompapathi, M.;Rao, G. Srinivasa;Chaitanya, Smt. M.
    • International Journal of Computer Science & Network Security
    • /
    • 제22권7호
    • /
    • pp.347-351
    • /
    • 2022
  • Farmers E-Market is a website that allows agricultural workers to direct market their products to buyers without the use of a middleman. That theory is blockchain system will be used by authors to accomplish this. The system, which is built on a public blockchain system, supports sustainability, shippers, and consumers. Farmers can keep track of their farming activities. Customers can review the product's history and track its journey through carriers to delivery after making a purchase. Farmers are encouraged to get information about their interests promptly in a blockchain-enabled system like this. This functionality is being used by small-scale farmers to form groups based on their location to attract large-scale customers, renegotiate farming techniques or volumes, and enter into contracts with buyers. The analysis shows the use of blockchain technology with a farmer's portal that keeps the video of trading data of crops, taking into account the qualities of blockchain such as values and create or transaction data. The proposal merges python as a programming language with a blockchain system to benefit farmers, vendors, and individuals by preserving transactions.

Information Seeking Behaviour of Distance Learners: What has Changed During the Covid-19?

  • Alturki, Ryan
    • International Journal of Computer Science & Network Security
    • /
    • 제22권5호
    • /
    • pp.182-192
    • /
    • 2022
  • All the aspects of human life have been affected by the novel coronavirus (Covid-19). It has rapidly spread in most countries including the Kingdom of Saudi Arabia. As a result, early precautionary actions aiming to minimise the virus effect are taken by the Saudi government. One of these actions is the sudden shift to online classes and suspending the attendees to all educational institutes. Such immediate change can have a significant effect on the educational process, especially for students. One can argue that students' information-seeking behaviour within the current situation can affect their learning quality and outcomes. Therefore, this paper examines the Saudi students' information-seeking behaviour by taking a sample of students from Umm Al-Qura University. A descriptive analysis is conducted with 193 students and two approaches are used to collect data, questionnaire and semi-structured interview. The results showed that the majority of students face difficulties when searching and retrieving e-resources from the university library website. The problems range from mainly poor User Experience (UX), network connection, multiple errors and lack of subscription with academic publishers.

Opportunities for the Use of Blockchain Technology in the Tourism Industry

  • Ukhina, Tatiana Viktorovna;Otteva, Irina Vladimirovna;Plaksa, Julia Valerievna;Makushkin, Sergey Anatolyevich;Ryakhovsky, Dmitriy Ivanovich;Khromtsova, Lina Sergeevna
    • International Journal of Computer Science & Network Security
    • /
    • 제22권6호
    • /
    • pp.51-56
    • /
    • 2022
  • It is relevant and timely for the existence and prosperity of today's tourism to build up a stock of new abilities and a set of innovations. At present, the tourism industry is experiencing a new stage in its digital transformation. The newest technologies, which are now spreading en masse and one of which is rightfully considered to be blockchain technology, enable tourists to receive tourist services directly from the producers, which not only gives the consumer the opportunity to enjoy higher quality and inexpensive products but also increases the responsibility of the producer. The article analyzes research literature on the possibility of using blockchain technology in the tourism industry. Based on an expert survey, the main problems, prospects, and advantages of the implementation of blockchain technology in the tourism industry are identified. The paper proposes and analyzes an option for the use of blockchain technology on the basis of a blockchain project with a mobile app for users and a dedicated website and public API for travel service providers.

Sentiment Analysis of COVID-19 Vaccination in Saudi Arabia

  • Sawsan Alowa;Lama Alzahrani;Noura Alhakbani;Hend Alrasheed
    • International Journal of Computer Science & Network Security
    • /
    • 제23권2호
    • /
    • pp.13-30
    • /
    • 2023
  • Since the COVID-19 vaccine became available, people have been sharing their opinions on social media about getting vaccinated, causing discussions of the vaccine to trend on Twitter alongside certain events, making the website a rich data source. This paper explores people's perceptions regarding the COVID-19 vaccine during certain events and how these events influenced public opinion about the vaccine. The data consisted of tweets sent during seven important events that were gathered within 14 days of the first announcement of each event. These data represent people's reactions to these events without including irrelevant tweets. The study targeted tweets sent in Arabic from users located in Saudi Arabia. The data were classified as positive, negative, or neutral in tone. Four classifiers were used-support vector machine (SVM), naïve Bayes (NB), logistic regression (LOGR), and random forest (RF)-in addition to a deep learning model using BiLSTM. The results showed that the SVM achieved the highest accuracy, at 91%. Overall perceptions about the COVID-19 vaccine were 54% negative, 36% neutral, and 10% positive.

Web-Based Question Bank System using Artificial Intelligence and Natural Language Processing

  • Ahd, Aljarf;Eman Noor, Al-Islam;Kawther, Al-shamrani;Nada, Al-Sufyini;Shatha Tariq, Bugis;Aisha, Sharif
    • International Journal of Computer Science & Network Security
    • /
    • 제22권12호
    • /
    • pp.132-138
    • /
    • 2022
  • Due to the impacts of the current pandemic COVID-19 and the continuation of studying online. There is an urgent need for an effective and efficient education platform to help with the continuity of studying online. Therefore, the question bank system (QB) is introduced. The QB system is designed as a website to create a single platform used by faculty members in universities to generate questions and store them in a bank of questions. In addition to allowing them to add two types of questions, to help the lecturer create exams and present the results of the students to them. For the implementation, two languages were combined which are PHP and Python to generate questions by using Artificial Intelligence (AI). These questions are stored in a single database, and then these questions could be viewed and included in exams smoothly and without complexity. This paper aims to help the faculty members to reduce time and efforts by using the Question Bank System by using AI and Natural Language Processing (NLP) to extract and generate questions from given text. In addition to the tools used to create this function such as NLTK and TextBlob.

The Impact of Using Some Participatory E-learning Strategies in Developing Skills of Designing and Producing Electronic Courses for A sample of Umm Al-Qura University Students and their Innovative Thinking

  • Emad Mohammed Samra
    • International Journal of Computer Science & Network Security
    • /
    • 제23권3호
    • /
    • pp.17-30
    • /
    • 2023
  • The current research aims to reveal the impact of using some participatory e-learning strategies (participatory product - classroom web simulation) in developing cognitive achievement, electronic course design skills, and - skills list - Torrance test of innovative thinking). The tools of innovative thinking among a sample of Information Science students. To achieve the objectives of current research, the researcher designed an educational website to train students to produce electronic courses via the web, according to the two participatory e-learning strategies. The researcher used a set of tools represented in (achievement test research and experimental treatment were applied to a sample of the Faculty of Computer students at Umm Al-Qura University. The results found that both participatory product strategy and web simulation have an imact on developing learning aspects discussed in the research. As for which of the two strategies had a greater impact than the other, it turned out that the web simulation strategy had a greater impact than the participatory product strategy in developing these aspects.