• 제목/요약/키워드: banking security

검색결과 286건 처리시간 0.033초

인터넷 뱅킹 서비스 보안기술의 현황과 미래 (Status and Future of Security Techniques in the Internet Banking Service)

  • 이경률;임강빈;서정택
    • 인터넷정보학회논문지
    • /
    • 제18권2호
    • /
    • pp.31-42
    • /
    • 2017
  • 인터넷 뱅킹 서비스가 보편화되면서 많은 사용자들이 온라인을 통한 재화의 교환이 가능하였다. 하지만 이러한 이점에도 불구하고 인터넷 뱅킹 서비스에서 존재하는 보안위협에 의하여 사고사례가 지속적으로 발생하는 실정이다. 이러한 문제점을 보완하기 위하여 인터넷 뱅킹 서비스의 전 구간에 걸쳐 다양한 보안기술이 적용되었으며, 본 논문에서는 금융기관 구간과 네트워크 구간에 적용된 보안기술에 대한 조사 결과를 서술한다. 본 논문의 결과를 통하여 내부자에 의하여 발생하는 피해사례와 구현과정에서의 취약점으로 인하여 발생하는 위협에 대응하기 위한 참고 자료로써 활용 가치가 있을 것으로 사료된다.

정보보호 관점에서의 오픈뱅킹 수용도에 대한 영향요인 (Factors to Affect Acceptance of Open Banking from Information Security Perspectives)

  • 고정현;이원부
    • 한국IT서비스학회지
    • /
    • 제20권6호
    • /
    • pp.63-81
    • /
    • 2021
  • Joint financial network of Korea Financial Telecommunications and Clearings Institute, which is an essential facility with a natural monopoly, maintained its closedness as monopoly/public utility model, but it has evolved in the form of open banking in order to obtain domestic fintech competitiveness in the rapidly changing digital financial ecosystem such as the acceleration of Big Blur. In accordance with digital transformation strategy of financial institutions, various ICT companies are actively participating in the financial industries, which has been exclusive to banks, through the link technology called Open API. For this reason, there has been a significant change in the financial service supply chain in which ICT companies participate as users. The level of security in the financial service supply chain is determined based on the weakest part of the individual components according to the law of minimum. In addition, there is a perceived risk of personal information and financial information leakage among the main factors that affect users' intention to accept services, and appropriate protective measures against perceived security risks can be a catalyst, which increases the acceptance of open banking. Therefore, this is a study on factors affecting the introduction of open banking to achieve financial innovation by developing an open banking security control model for financial institutions, as a protective measures to user organizations, from the perspectives of cyber financial security and customer information protection, respectively, and surveying financial security experts. It is expected, from this study, that effective information protection measures will be derived to protect the rights and interests of financial customers and will help promote open banking.

보안위험, 편리성, 사회적 영향이 인터넷 뱅킹 사용에 미치는 효과 - 계좌이체와 잔액조회 서비스의 비교 (The Effect of Security Risk, Convenience and Social Influence on Internet Banking Use)

  • 이웅규
    • 한국정보시스템학회지:정보시스템연구
    • /
    • 제14권2호
    • /
    • pp.1-23
    • /
    • 2005
  • Theoretically, both of fund transfer and balance inquiry which are typical Internet banking services are influenced by the beliefs on the use of Internet banking such as perceived risk and convenience, which have been shown as in the other studies. However, the use of fund transfer can be more sensitive than that of balance inquiry by the beliefs on Internet banking use since the former is not only more risk involved but also more complicated in using than the latter. The objective of this study is to analyze the relationship between the use of two Internet banking services-fund transfer and balance inquiry-and the beliefs on Internet banking use-security risk, convenience and social Influence. For this purpose, we provide the research model for explaining the difference between balance inquiry and fund transfer in the degree of influencing by security risk, convenience and social influence and test it empirically by collecting data from surveying for 206 internet banking users. In result, we show validity of the suggested model by Partial Least Square(PLS) approach.

  • PDF

인터넷 뱅킹 서비스에서의 보안위협 분류 및 분석 (Analysis and Classification of Security Threats based on the Internet Banking Service)

  • 이경률;이선영;임강빈
    • 정보화정책
    • /
    • 제24권2호
    • /
    • pp.20-42
    • /
    • 2017
  • 본 논문은 인터넷 뱅킹 서비스의 안전성을 평가하기 위한 보안위협을 분류하고 보안 요구사항을 제안하는데 그 목적이 있다. 분류한 보안위협은 기존에 발생하였던, 그리고 발생이 가능한 보안위협을 기반으로 분석하였으며, 이를 통하여 보안 요구사항을 제안하기 위한 기반을 다질 것으로 사료된다. 보안위협 도출을 위하여 인터넷 뱅킹 서비스의 구조를 금융기관 구간과 네트워크 구간, 사용자 구간으로 분류하였으며, 각 구간에서 발생하는 보안위협을 도출하였다. 특히, 사용자 구간이 상대적으로 취약하기 때문에 전체 서비스의 안전성을 확보하기 어려운 상황이므로 이를 중점적으로 분석하였다. 분석한 보안위협을 토대로 안전한 인터넷 뱅킹 서비스를 구성할 수 있을 것으로 예상된다.

인터넷 뱅킹 사용과 보안우려의 관계: 기술수용모형의 확장 (The Relationship between Use of Internet Banking and Security Anxiety: Extending TAM)

  • 황하진;이웅규
    • 한국정보시스템학회:학술대회논문집
    • /
    • 한국정보시스템학회 2003년도 춘계학술대회
    • /
    • pp.93-105
    • /
    • 2003
  • Although, recently, studies on Internet banking users' behavior have been frequently found in some academic journals, most of them have ignored security anxiety which may be considered as important factors influencing usages of Internet banking. We propose an research model for Internet banking users which is an extended version of the Technology Acceptance Model(TAM) by adding new variable, security anxiety. For empirical support of our model, we survey for 298 samples and analyze it by structured equation model(SEM). In result, our proposed model is proved as a valid one in which all hypotheses except one are accepted and the values of model fitness are relatively high.

  • PDF

Smartphone Banking: The Factors Influencing the Intention to Use

  • Kim, JinBaek;Kang, Sungmin;Cha, Hoon S.
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • 제7권5호
    • /
    • pp.1213-1235
    • /
    • 2013
  • In this paper, we investigated the factors affecting the intention to use smartphone banking with a research model based on the Technology Acceptance Model (TAM) extended to include security risk, trust, and self-efficacy. With analysis after controlling factors such as age, gender, and previous experience of smartphone banking that may have effects, we conclude that perceived usefulness, perceived ease of use, security risk, and trust have direct effect on the intention to use smartphone banking, and self-efficacy has indirect effect on the intention to use through mediation of perceived ease of use. We performed a study to check the validity of TAM in the context of smartphone banking, and confirmed that perceived ease of use has both direct and indirect effect on the intention to use.

Impact of Digitalization On the Banking System Transformation

  • Shcherbatykh, Denis;Shpileva, Vira;Riabokin, Maryna;Zham, Olena;Zalizniuk, Viktoriia
    • International Journal of Computer Science & Network Security
    • /
    • 제21권12spc호
    • /
    • pp.513-520
    • /
    • 2021
  • The purpose of the article is to study the impact of digitalization on the transformation of the banking system, taking into account current innovative development trends. The article analyzes the impact of key factors on the development of the digital economy. Ukraine's ranking positions in terms of digital competitiveness are shown. The necessity of using digital technologies in the sphere of banking activity is substantiated. The dynamics of changes in the number of operating banks in Ukraine is analyzed. The directions of introduction of information technologies in the sphere of banking activity are determined. An analysis of changes in the share of the population of individual EU member states that use the Internet for Internet banking. It is noted that modern transformation trends, digitalization of the economy have a significant impact on the landscape of the banking sector, in this context, the rating of Ukrainian banks in the categories of "Internet Banking" and "Mobile Banking". The advantages and disadvantages of using the capabilities of Internet banking are identified. Based on the study, the importance of expanding the boundaries of digitalization of the domestic banking system is substantiated, which will further increase the level of availability of online services in the field of banking. Prospects for further research are identified in the study of the impact of digitalization on the development of the banking system of foreign countries.

보안과 위험의 지각이 인터넷 뱅킹 재사용 의도에 미치는 영향 (The Influence of Security and Risk Perception on the Reuse of Internet Banking)

  • 이웅규
    • Asia pacific journal of information systems
    • /
    • 제17권1호
    • /
    • pp.77-93
    • /
    • 2007
  • Risk has been considered as one of very important topics in traditional consumer behavior theoretically and practically since its tendency of minimizing errors rather than maximizing utilization in addition to its intuitive appealing with very high explaining power. In addition to a traditional view of risk, importance of risk in online transactions such as Internet banking is due to technical instability in security of the Internet as well as temporal and spatial separation of transaction partners. Therefore, risk in online transactions should be analyzed by a very comprehensive way since it is very inherent in the Internet. The objective of this study is to suggest a research model for explaining the use of online transactions in some risk related variables including risk results, security result, perceived security, and social influence and show its validity by applying it to Internet banking users. In result, hypotheses suggested by our research model are shown to be valid ones.

국내 오픈뱅킹 안정성 강화 및 이용자 보호를 위한 규제 개선 방안 (Improvement of regulations to strengthen the safety and protect users of domestic Open Banking)

  • 권남훈;김인석
    • 융합보안논문지
    • /
    • 제20권2호
    • /
    • pp.37-52
    • /
    • 2020
  • 최근 우리나라를 비롯한 EU, 영국 등은 금융구조 개혁 및 금융소비자의 편의성 제고를 위하여 금융회사가 보유하고 있는 금융정보를 핀테크기업에게 개방하는 오픈뱅킹을 적극 추진하고 있다. 향후 오픈뱅킹이 점차 활성화될수록 오픈뱅킹 제공기관의 안정성 확보 및 이용자 보호의 중요성은 더욱 커질 것이다. 특히 우리나라는 전자금융거래의 안정성과 신뢰성 확보를 위하여 2007년부터 시행해 온 전자금융거래법이 있지만, 오픈뱅킹 제공기관에게 적용하기 어려운 한계가 있어 오픈뱅킹에 대한 보안사고 예방 및 이용자 보호가 취약해질 위험성이 있다. 따라서 본 논문에서는 오픈뱅킹에 관한 외국의 규제를 살펴보고, 국내 오픈뱅킹의 안정성 강화 및 이용자 보호를 위한 규제 개선 방안을 제시해 본다.

전자금융 불법이체사고 방지를 위한 실시간 이상거래탐지 및 분석 대응 모델 연구 (Study on a Real Time Based Suspicious Transaction Detection and Analysis Model to Prevent Illegal Money Transfer Through E-Banking Channels)

  • 유시완
    • 정보보호학회논문지
    • /
    • 제26권6호
    • /
    • pp.1513-1526
    • /
    • 2016
  • 금융회사가 전자금융 서비스를 제공하기 시작하면서 전자금융 서비스는 다양화 되었고 전자금융 사용은 지속적으로 증가하고 있다. 이에 금융회사는 안전한 전자금융서비스를 제공하기 위하여 금융 보안정책을 적용하고 있으나 전자금융 사고는 계속해서 지능화되고 증가하고 있는 상황이다. 금융감독기관은 최근 인터넷 전문은행 등장과 핀테크 활성화와 더불어 비대면 실명확인 제도 신설 및 전자금융 거래를 통한 자금이체 시 공인인증서 또는 일회용비밀번호 의무사용 폐지 등의 규정을 개선하여 이용자의 편리함을 추구하는 동시에 금융회사에게는 이상금융거래 탐지 시스템 고도화 및 개선을 통한 불법이체 사고 방지를 권고하고 있다. 본 논문에서는 금융회사 제반 상황에 적합한 블랙리스트기반 자동화 탐지 기법을 제안하고 블랙리스트 정보를 레벨링하여 보안레벨에 따른 블랙리스트기반과 통계모델을 연동한 실시간 이상금융거래 탐지 기법을 제안하며, 기존 전자금융 사고유형 분석을 통한 특징적 패턴에 따른 실시간 이상금융거래 탐지기법의 대응 모델을 제안하고자 한다.