• Title/Summary/Keyword: information security system

Search Result 6,599, Processing Time 0.032 seconds

RFID Mutual Authentication Protocol Using Nonfixed Symmetric Key Based on Shift Computation and Random Number (시프트 연산과 난수를 이용한 가변적 대칭키 기반의 RFID 상호인증 프로토콜)

  • Lee, Jae-Kang;Oh, Se-Jin;Chung, Kyung-Ho;Lee, Chang-Hee;Ahn, Kwang-Seon
    • The Journal of Korean Institute of Communications and Information Sciences
    • /
    • v.37 no.5B
    • /
    • pp.377-384
    • /
    • 2012
  • RFID system is a technique to obtain information of tag using radio frequency. Specificity of RFID systems using radio frequency has many problems that is eavesdropping, location tracking, spoofing attack, replay attack, denial of service attack. So, RFID protocol should be used cryptographic methods and mutual authentication for security and privacy. In this paper, we explain the problem of past protocol and propose the nonfixed symmetric key-based RFID mutual authentication protocol using shift computation and random number. Proposed protocol is secure from various attacks. Because it use shift operation and non-fixed symmetric key.

Proposed Open Source Model for Video Offline Distribution using Cinema DRM for Home Users

  • Pardeshi, Sunil;Kwon, Soon Chul;Lee, Seung Hyun;Hamacher, Alaric
    • International Journal of Internet, Broadcasting and Communication
    • /
    • v.7 no.1
    • /
    • pp.10-14
    • /
    • 2015
  • Video Content owners seek to squeeze the maximum amount of revenue from their assets via distribution into more territories. Digital Cinema Package(DCP), trusted solution to distribute protected content to theaters, caters to relatively small user base, which limits revenue. With the growth of the Internet & other digital media, the economics of media content has changed dramatically. Security remains main concern to deliver content to millions of consumers using intelligent digital display devices like Tablets, Smartphones, Smart TVs, Desktop & Laptop. By making the video content available to this segment securely, content owners will benefit from increased revenue. Through this paper we propose Open Source HomeDCP model to distribute the content to home users for offline viewing. We propose to include other open source CODEC than JPEG2000/MPEG2, which are specifically designed for theatrical performance. Final image size will be further reduced considering the display device resolution where video will be finally played. Key Delivery Message(KDM) system to be altered to suit new devices. This will be a big boost to Content Economy as content owners would be able to distribute the content securely to the wider audience & ensure more revenue.

The Design and An Implementation of Education Shooting Game for kids

  • Seo, Jeong-Man
    • Journal of the Korea Society of Computer and Information
    • /
    • v.25 no.2
    • /
    • pp.75-81
    • /
    • 2020
  • The definition of educational games, the importance of game development, and the characteristics of educational games are described. The design of the screen used in the game and the algorithm used are described. We explained the game implementation in the system environment and experiment, and the questionnaire showed whether there is nonviolence of the game, games preferred by children, game benefits, and fun elements of the game. The superiority of the game was described by comparing and analyzing the educational shooting game proposed in this paper with the existing game. The existing children's games had many shortcomings in terms of commercial and educational aspects, but the proposed games proved to be less violent and have educational effects.

A Study of the Integration of the Distributed Disaster Resources (국가 재난관리자원 통합에 관한 연구)

  • Lee, Changyeol;Kim, Taehwan;Park, Giljoo
    • Journal of the Society of Disaster Information
    • /
    • v.10 no.2
    • /
    • pp.304-311
    • /
    • 2014
  • Disaster Resources are the resources used in the disaster fields such as fire, typhoon, flood, collapse, flood damage, distress, relief, sanitary, explosion and so forth. The resources are distributed by the several institutes including governmental agencies, public institution, and private sectors. When the large scale disaster is occurred, many kinds of the disaster resources are needed. But it is not easy to know where institutes has the needed resources, because the resource management systems are all distributed in the each institute. To integrate or connect the resource data among the systems, it need the several kinds of coordinations such as terms, classification, and resource exchange protocols. In this paper, we propose the standard specifications and how to connect and exchange the data among the systems.

Design of a Kerberos Authentication Mechanism based on Password (패스워드 기반의 커버로스 인증 메커니즘 설계)

  • 조경옥;김종우;하태진;한승조
    • Proceedings of the Korean Institute of Information and Commucation Sciences Conference
    • /
    • 2004.05b
    • /
    • pp.733-738
    • /
    • 2004
  • In a distributed network system, Kerberos certification mechanism is operated by a user in local area on the premise reliability of Kerberos server in another area. But it has a demerit. If security information of certification server between Kerberos servers is released, Kerberos server can not guarantee the reliability. To solve this problem, the proposed mechanism prevents password speculating attack by increasing the random of password certifier through use of distributed password in stead of certification center and certification which was presented by existing Kerberos mechanism. Besides, it used password based certification method which uses secret distributed technique

  • PDF

Research Trends and Considerations of Security Technology of Industrial Control System (산업제어시스템의 보안 기술 연구 동향 및 고찰)

  • Lee, Young Hun;Ryu, Jung Hyun;Park, Jong Hyuk
    • Annual Conference of KIPS
    • /
    • 2018.05a
    • /
    • pp.149-152
    • /
    • 2018
  • 최근 국가기반시설을 제어하고 관리하는 산업제어시스템에 대한 사이버보안 위협이 증가함에 따라 보안의 중요성이 증가하고 있다. 산업제어시스템에서의 보안 기술은 일반적인 IT 시스템의 보안 기술과는 많은 차이가 있다. 산업제어시스템과 IT 시스템은 인간이 컴퓨터 시스템을 통해 정보를 처리하는 것은 같지만 IT 시스템은 정보 처리의 효율성을 위해 시스템을 사용하는 반면, 산업제어 시스템은 시스템의 효율성을 위해 정보를 처리하는 부분으로 이에 알맞은 새로운 보안 체계 구성이 필요하다. 초기에는 폐쇄망 위주로 구성되었던 산업제어시스템에서 ICT(Information & Communication Technology) 발전으로 외부로부터의 사이버 위협이 가중되었다. 편리성과 효율성이 증대된 만큼 ICT의 취약점 또한 산업제어시스템에서 문제가 발생하고 있지만, 현재 산업제어시스템의 보안 기술에 대해서는 국내에 널리 알려지지 않고 있다. 본 논문에서는 산업제어시스템 및 보안정책에 대해 논의한다. 관련 보안사고의 사례 및 보안 기술을 살펴봄으로써 미래 산업제어시스템의 발전과 보안 공격에 대한 충분한 보안체계를 구축하여 종합적이고, 적합한 보안 대책을 마련하는 것에 도움이 될 것이다.

An Improved RF Detection Algorithm Using EMD-based WT

  • Lv, Xue;Wang, Zekun
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.13 no.8
    • /
    • pp.3862-3879
    • /
    • 2019
  • More and more problems for public security have occurred due to the limited solutions for drone detection especially for micro-drone in long range conditions. This paper aims at dealing with drones detection using a radar system. The radio frequency (RF) signals emitted by a controller can be acquired using the radar, which are usually too weak to extract. To detect the drone successfully, the static clutters and linear trend terms are suppressed based on the background estimation algorithm and linear trend suppression. The principal component analysis technique is used to classify the noises and effective RF signals. The automatic gain control technique is used to enhance the signal to noise ratios (SNR) of RF signals. Meanwhile, the empirical mode decomposition (EMD) based wavelet transform (WT) is developed to decrease the influences of the Gaussian white noises. Then, both the azimuth information between the drone and radar and the bandwidth of the RF signals are acquired based on the statistical analysis algorithm developed in this paper. Meanwhile, the proposed accumulation algorithm can also provide the bandwidth estimation, which can be used to make a decision accurately whether there are drones or not in the detection environments based on the probability theory. The detection performance is validated with several experiments conducted outdoors with strong interferences.

System design for vehicle black box data integrity provision of cloud computing base (데이터 무결성 제공을 위한 클라우드 기반의 차량용 블랙박스 시스템 설계)

  • Kim, Bo-Kyung;Baek, Hye-Ran;Jo, Su-Bin;Jung, Sun-Jae;Choi, Young-jun;OH, Seok-Youn;Rhee, Kyung-Hyune
    • Annual Conference of KIPS
    • /
    • 2013.05a
    • /
    • pp.640-643
    • /
    • 2013
  • 차량용 블랙박스는 영상, 음성 및 자동차의 주행정보를 저장하는 매체로서 저장되는 데이터를 통해 차량 접촉사고 시 운전자의 과실여부를 판단할 수 있는 중요한 장치로 최근 자동차 시장에서 많은 주목을 받고 있다. 그러나 현재 차량용 블랙박스는 단순히 주행 데이터를 저장만 하고 있어 법적인 근거 자료로 활용되기 위해서는 데이터에 대한 무결성 보장을 제공하는 기능이 없는 상황이다. 블랙박스에 저장된 데이터는 공격자에 의해 위, 변조될 위험이 존재함으로 본 논문에서는 보다 안전한 환경에서의 무결성 보장을 위해 클라우드 컴퓨팅 환경에서의 무결성을 제공하는 시스템을 설계 한다.

A Spread Prediction Tool based on the Modeling of Malware Epidemics (악성코드 확산 모델링에 기반한 확산 예측 도구 개발)

  • Shin, Weon
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.24 no.4
    • /
    • pp.522-528
    • /
    • 2020
  • Rapidly spreading malware, such as ransomware, trojans and Internet worms, have become one of the new major threats of the Internet recently. In order to resist against their malicious behaviors, it is essential to comprehend how malware propagate and how main factors affect spreads of them. In this paper, we aim to develop a spread prediction tool based on the modeling of malware epidemics. So we surveyed the related studies, and described the system design and implementation. In addition, we experimented on the spread of malware with major factors of malware using the developed spread prediction tool. If you make good use of the proposed prediction tool, it is possible to predict the malware spread at major factors and explore under various responses from a macro perspective with only basic knowledge of the recently wormable malware.

A Certificateless-based One-Round Authenticated Group Key Agreement Protocol to Prevent Impersonation Attacks

  • Ren, Huimin;Kim, Suhyun;Seo, Daehee;Lee, Imyeong
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.16 no.5
    • /
    • pp.1687-1707
    • /
    • 2022
  • With the development of multiuser online meetings, more group-oriented technologies and applications for instance collaborative work are becoming increasingly important. Authenticated Group Key Agreement (AGKA) schemes provide a shared group key for users with after their identities are confirmed to guarantee the confidentiality and integrity of group communications. On the basis of the Public Key Cryptography (PKC) system used, AGKA can be classified as Public Key Infrastructure-based, Identity-based, and Certificateless. Because the latter type can solve the certificate management overhead and the key escrow problems of the first two types, Certificateless-AGKA (CL-AGKA) protocols have become a popular area of research. However, most CL-AGKA protocols are vulnerable to Public Key Replacement Attacks (PKRA) due to the lack of public key authentication. In the present work, we present a CL-AGKA scheme that can resist PKRA in order to solve impersonation attacks caused by those attacks. Beyond security, improving scheme efficiency is another direction for AGKA research. To reduce the communication and computation cost, we present a scheme with only one round of information interaction and construct a CL-AGKA scheme replacing the bilinear pairing with elliptic curve cryptography. Therefore, our scheme has good applicability to communication environments with limited bandwidth and computing capabilities.