• Title/Summary/Keyword: information security system

Search Result 6,598, Processing Time 0.039 seconds

Study on Improvement of Weil Pairing IBE for Secret Document Distribution (기밀문서유통을 위한 Weil Pairing IBE 개선 연구)

  • Choi, Cheong-Hyeon
    • Journal of Internet Computing and Services
    • /
    • v.13 no.2
    • /
    • pp.59-71
    • /
    • 2012
  • PKI-based public key scheme is outstanding in terms of authenticity and privacy. Nevertheless its application brings big burden due to the certificate/key management. It is difficult to apply it to limited computing devices in WSN because of its high encryption complexity. The Bilinear Pairing emerged from the original IBE to eliminate the certificate, is a future significant cryptosystem as based on the DDH(Decisional DH) algorithm which is significant in terms of computation and secure enough for authentication, as well as secure and faster. The practical EC Weil Pairing presents that its encryption algorithm is simple and it satisfies IND/NM security constraints against CCA. The Random Oracle Model based IBE PKG is appropriate to the structure of our target system with one secret file server in the operational perspective. Our work proposes modification of the Weil Pairing as proper to the closed network for secret file distribution[2]. First we proposed the improved one computing both encryption and message/user authentication as fast as O(DES) level, in which our scheme satisfies privacy, authenticity and integrity. Secondly as using the public key ID as effective as PKI, our improved IBE variant reduces the key exposure risk.

School Resource Officers' Perception toward the Function and Role of the Local Board against School Violence (학교폭력대책자치위원회의 기능과 역할에 대한 학교전담경찰관의 인식)

  • Lee, Chang-Bae
    • Korean Security Journal
    • /
    • no.44
    • /
    • pp.117-137
    • /
    • 2015
  • As school violence gets serious, the school system created the local board against school violence in order to respond to school violence effectively. Yet, there are not many studies about the effectiveness of the local board against school violence. A few studies investigated teachers' perception about the local board while the information about the school resource officers' perception is not known much. The current study surveyed school resource officers about their perception towards the function of the local board, its member, and the response of the principal to school violence. Participants are the school resource officers working for the four metropolitan police agencies(Seoul, Kyunggi, Busan, and Ulsan) in Korea, and were asked to answer to structured and open-ended questions. The results indicated that the officers thought the local board did not very well for the function of protecting the victim's rights. In addition, they believed that the participation of parents needs to be limited in the membership, and more experts should be included in the membership of the local board. They also thought the principals should be tough in dealing with school violence. The discussion includes ideas about improving professionalism of the membership and making changes on the related regulations.

  • PDF

A Study on the Local Governments' Autonomous Laws Regulating Social Insurance Premium for Medical Security (의료보장을 위한 지방정부의 사회보험료 지원 자치법규에 관한 고찰)

  • Kim, Jesun
    • The Korean Society of Law and Medicine
    • /
    • v.20 no.1
    • /
    • pp.203-242
    • /
    • 2019
  • Since 2006, local governments in Korea have been providing premiums for social insurance, such as the National Health Insurance System, for the health care of local residents. The purpose of this study is to analyze the content of self-governing legislation that defines these policies. The method of conducting the research was based on the articles of the ordinance related to the 'public health insurance premium' of the self-governing statutes published on the website of the National Law Information Center. As of May 2019, 201 municipalities have enacted ordinances to support public health insurance premiums. In the case of state local governments, 8 out of 17 were found, and in the case of basic local governments, 193 out of 226. The constitution of the ordinance consisted of purpose, time of enactment, type of social insurance premium, object of social insurance premium, amount of social insurance premium support, method and process of social insurance premium support, time of social insurance premium support. This study analyzed contents of these articles. Finally, this study presented issues that could be controversial from the policy and legal viewpoints and suggestions for improvement.

CFI Approach to Defend against GOT Overwrite Attacks (CFI(Control Flow Integrity) 적용을 통한 GOT(Global Offset Table) 변조 공격 방지 방안 연구)

  • Jeong, Seunghoon;Hwang, Jaejoon;Kwon, Hyukjin;Shin, Dongkyoo
    • Journal of Internet Computing and Services
    • /
    • v.21 no.1
    • /
    • pp.179-190
    • /
    • 2020
  • In the Unix-like system environment, the GOT overwrite attack is one of the traditional control flow hijacking techniques for exploiting software privileges. Several techniques have been proposed to defend against the GOT overwrite attack, and among them, the Full Relro(Relocation Read only) technique, which blocks GOT overwrites at runtime by arranging the GOT section as read-only in the program startup, has been known as the most effective defense technique. However, it entails loading delay, which limits its application to a program sensitive to startup performance, and it is not currently applied to the library due to problems including a chain loading delay problem caused by nested library dependency. Also, many compilers, including LLVM, do not apply the Full Relro technique by default, so runtime programs are still vulnerable to GOT attacks. In this paper, we propose a GOT protection scheme using the Control Flow Integrity(CFI) technique, which is currently recognized as the most suitable technique for defense against code reuse attacks. We implemented this scheme based on LLVM and applied it to the binutils-gdb program group to evaluate security, performance and compatibility. The GOT protection scheme with CFI is difficult to bypass, fast, and compatible with existing library programs.

Hybrid Authentication Scheme for Mobile Multi-hop Relay in IEEE 802.16j (IEEE 802.16j기반의 모바일 멀티 홉 릴레이에서의 혼합형 인증 기법에 대한 연구)

  • Lee, Yong;Lee, Goo-Yeon
    • Journal of the Institute of Electronics Engineers of Korea TC
    • /
    • v.44 no.10
    • /
    • pp.127-136
    • /
    • 2007
  • It is easy to install and maintain a mobile multi-hop wireless network due to its self-organizing characteristics. However it has security weakness of the authentication of mobile multi-hop relay stations. Specially, the mobile multi-hop relay network in the IEEE 802.16j has the additional security weakness caused by the requirement of backward compatibility for mobile stations of the conventional IEEE 802.16 system. In this paper, we propose a novel mutual authentication scheme applicable to IEEE 802.16j-based mobile multi-hop relay network architecture. The scheme is able to resolve the initial trust gain problem of a multi-hop node at its entry to the network, the problem of rogue mobile multi-hop node and the problem of hop-by-hop authentication between multi-hop nodes. Effectively, the scheme is a hybrid scheme of the distributed authentication method and the centralized authentication method which have been considered to be deployed in the wireless ad-hoc network and the wireless network connected to wired authentication servers, respectively. Also, we analyze the effectiveness of the proposed hybrid authentication method.

TERRAPOWER, LLC TRAVELING WAVE REACTOR DEVELOPMENT PROGRAM OVERVIEW

  • Hejzlar, Pavel;Petroski, Robert;Cheatham, Jesse;Touran, Nick;Cohen, Michael;Truong, Bao;Latta, Ryan;Werner, Mark;Burke, Tom;Tandy, Jay;Garrett, Mike;Johnson, Brian;Ellis, Tyler;Mcwhirter, Jon;Odedra, Ash;Schweiger, Pat;Adkisson, Doug;Gilleland, John
    • Nuclear Engineering and Technology
    • /
    • v.45 no.6
    • /
    • pp.731-744
    • /
    • 2013
  • Energy security is a topic of high importance to many countries throughout the world. Countries with access to vast energy supplies enjoy all of the economic and political benefits that come with controlling a highly sought after commodity. Given the desire to diversify away from fossil fuels due to rising environmental and economic concerns, there are limited technology options available for baseload electricity generation. Further complicating this issue is the desire for energy sources to be sustainable and globally scalable in addition to being economic and environmentally benign. Nuclear energy in its current form meets many but not all of these attributes. In order to address these limitations, TerraPower, LLC has developed the Traveling Wave Reactor (TWR) which is a near-term deployable and truly sustainable energy solution that is globally scalable for the indefinite future. The fast neutron spectrum allows up to a ~30-fold gain in fuel utilization efficiency when compared to conventional light water reactors utilizing enriched fuel. When compared to other fast reactors, TWRs represent the lowest cost alternative to enjoy the energy security benefits of an advanced nuclear fuel cycle without the associated proliferation concerns of chemical reprocessing. On a country level, this represents a significant savings in the energy generation infrastructure for several reasons 1) no reprocessing plants need to be built, 2) a reduced number of enrichment plants need to be built, 3) reduced waste production results in a lower repository capacity requirement and reduced waste transportation costs and 4) less uranium ore needs to be mined or purchased since natural or depleted uranium can be used directly as fuel. With advanced technological development and added cost, TWRs are also capable of reusing both their own used fuel and used fuel from LWRs, thereby eliminating the need for enrichment in the longer term and reducing the overall societal waste burden. This paper describes the origins and current status of the TWR development program at TerraPower, LLC. Some of the areas covered include the key TWR design challenges and brief descriptions of TWR-Prototype (TWR-P) reactor. Selected information on the TWR-P core designs are also provided in the areas of neutronic, thermal hydraulic and fuel performance. The TWR-P plant design is also described in such areas as; system design descriptions, mechanical design, and safety performance.

A Property-Based Data Sealing using the Weakest Precondition Concept (최소 전제조건 개념을 이용한 성질 기반 데이터 실링)

  • Park, Tae-Jin;Park, Jun-Cheol
    • Journal of Internet Computing and Services
    • /
    • v.9 no.6
    • /
    • pp.1-13
    • /
    • 2008
  • Trusted Computing is a hardware-based technology that aims to guarantee security for machines beyond their users' control by providing security on computing hardware and software. TPM(Trusted Platform Module), the trusted platform specified by the Trusted Computing Group, acts as the roots for the trusted data storage and the trusted reporting of platform configuration. Data sealing encrypts secret data with a key and the platform's configuration at the time of encryption. In contrast to the traditional data sealing based on binary hash values of the platform configuration, a new approach called property-based data sealing was recently suggested. In this paper, we propose and analyze a new property-based data sealing protocol using the weakest precondition concept by Dijkstra. The proposed protocol resolves the problem of system updates by allowing sealed data to be unsealed at any configuration providing the required property. It assumes practically implementable trusted third parties only and protects platform's privacy when communicating. We demonstrate the proposed protocol's operability with any TPM chip by implementing and running the protocol on a software TPM emulator by Strasser. The proposed scheme can be deployed in PDAs and smart phones over wireless mobile networks as well as desktop PCs.

  • PDF

An Analysis of Decision Making Factor by Delphi and DEMATEL Model for Decision Support Information System development -Wartime Operational Control Transition approach- (의사결정 지원 정보시스템 개발을 위한 Delphi-DEMATEL모델에 의한 의사결정 요인분석 -전작권 전환 사례를 중심으로-)

  • Park, Sangjung;Koh, Chan
    • Journal of Digital Convergence
    • /
    • v.10 no.11
    • /
    • pp.47-58
    • /
    • 2012
  • This study selects political and military decision factors of Participatory Government's Wartime Operational Control(OPCON) Transition and analyzes, both quantitatively and qualitatively, the effects and relations between those factors. Previous research utilizing the Analytic Hierarchy Process(AHP) selected their decision factors based on academic data and field experience, requiring more objective analysis of the factors. For this study, we conducted a survey among security subject matter experts(SME) both online and offline. The results show that OPCON transition's decision factors were to 'recover military sovereignty', 'set the conditions for peaceful reunification' and 'improve ROK image through enhancing national power' which differs little from the previous AHP method studies. It also showed that 'recover military sovereignty' and 'set the conditions for peaceful reunification' had no relationship to each other and that the key factor that decided the OPCON Transition was actually 'recover military sovereignty' which represents the interest of the liberal party in ROK. This study finds its meaning by analyzing the decision factors of Participartory Government's OPCON Transition thorugh Delphi and DEMATEL method.

The Legal Issues of Private Investigation Service in WTO/FTA System : Study of South Korea (WTO/ FTA 체제에서 민간조사업의 법적문제)

  • Ko, Ji-Hoon;Park, Hyeon-Ho
    • Korean Security Journal
    • /
    • no.27
    • /
    • pp.161-195
    • /
    • 2011
  • As crimes have increased to an extent that the police cannot cope with, there have been continuous discussions for the introduction of Private Investigation (hereafter PI) in Korea. However, attempts to legislate for the introduction of PI have failed every time PI bills for the introduction of PI were proposed. This was fundamentally because arguments both for and against the introduction of PI were sharply divided depending on the priorities. However, regardless of those clash of views, an apparent need for the legislation of PI service has arisen. As Korea opens its service market to other countries through GATS and FTAs, currently existing domestic PI law has been found to be inconsistent with international agreements such as GATS and KOREA-US(KORUS) FTA. This paper found that the Act on Usage and Protection of Credit Information which regulates PI service is inconsistent with the Article 12.4(a)(i) and (iii) of KORUS FTA and the Article 7.11 and the Article 7.13 of KOREA-EU FTA. If Korea does not modify the existing laws and establish new laws in relation to PI, such inconsistencies could lead to international trade disputes which could amount to billions of dollars. In this regard, the passage of the PI bill is necessary.

  • PDF

Evaluation of Crop Production Increase through Insect Pollination Service in Korean Agriculture (한국 농업에서 곤충 화분매개 서비스를 통한 식량 생산 증진 기능 평가)

  • Jung, Chuleui;Shin, Jong Hwa
    • Korean journal of applied entomology
    • /
    • v.61 no.1
    • /
    • pp.229-238
    • /
    • 2022
  • Animal pollination is an important ecosystem service provided mostly by diverse insect groups such as bees and hover flies. Maintaining agricultural productivity and securing the nutritional balance are closely tied to human wellbeing. This study aimed to estimate the pollination dependent food production in Korean agricultural system. Crop production data were obtained from Korean statistical information service (KOSIS) data of 2015. By implementing pollination dependency, crop production and market price, contribution of insect pollination to crop production increase were estimated from total 71 crops including 12 cereals, 19 fruits, 18 field vegetables, 13 greenhouse vegetables and 9 specialty crops. Mean pollination dependency of all crops were 29.2% and it was higher on fruits, specialty crops and greenhouse vegetables as well, but low (7.5%) in cereal crops. Pollination dependent (PD) production was estimated as 17.8% of total agricultural crop production with the economic value of 6,850 (6,508-7,193) billion won. Especially, PD production of greenhouse vegetables accounted 49.2% followed by fruits of 42.9%. Even specialty crop also showed higher PD production (35.9%). It was obvious that pollination is the vital service for agricultural production as well as nutritional security in Korea. Further protection and enhancing the pollination service were discussed with integrated pollinator-pest management (IPPM) strategies.