• Title/Summary/Keyword: Security incidents

Search Result 344, Processing Time 0.024 seconds

Job Assignment basis on Assistant-staff for The Information security improvement of Public Institution (공공기관 정보보안수준 향상을 위한 분임담당자 중심 업무분장 개선에 관한 연구)

  • Kim, Sang-Kyoon;Kim, In-Seok
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.20 no.11
    • /
    • pp.2007-2013
    • /
    • 2016
  • It was found to have hacking attempts totaling 115,000 to target the public sector since 2011 to 2015. National Intelligence Service was conducting survey information security management states of a wide range of national-public institutions up to 800 including government agencies in the 2012, while instructing to complement shortcomings. However, there is still going to occur invasions, such as Korea Hydro & Nuclear Power hacking. Even though KHNP's security personnel was only 53 people, in the total 20,000 workforces, got the almost perfect score in the 2013 and 2014 related to information security personnel. Through them, we can confirm that between the organizational response to information security incidents and something theoretical is very far. In this paper, we suggest solutions not using the professional staff management but the non-professional staff management to upgrade the level of public agencies information security.

Development of Hardware In the Loop System for Cyber Security Training in Nuclear Power Plants (원자력발전소 사이버보안 훈련을 위한 HIL(Hardware In the Loop) System 개발)

  • Song, Jae-gu;Lee, Jung-woon;Lee, Cheol-kwon;Lee, Chan-young;Shin, Jin-soo;Hwang, In-koo;Choi, Jong-gyun
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.29 no.4
    • /
    • pp.867-875
    • /
    • 2019
  • Security awareness and training are becoming more important as cyber security incidents tend to increase in industrial control systems, including nuclear power plants. For effective cyber security awareness and training for the personnel who manage and operate the target facility, a TEST-BED is required that can analyze the impact of cyber attacks from the sensor level to the operation status of the nuclear power plant. In this paper, we have developed an HIL system for nuclear power plant cyber security training. It includes nuclear power plant status simulations and specific system status simulation together with physical devices. This research result will be used for the specialized cyber security training program for Korean nuclear facilities.

An Impact Analysis of Information Security Professional's Job Stress and Job Satisfaction to Turnover Intention: Moderation of Organizational Justice (정보보호인력의 직무스트레스와 직무만족이 이직의도에 미치는 영향분석: 조직공정성의 조절효과)

  • CHO, Jinhyun;Yoo, Jinho;Lim, Jong-In
    • The Journal of Society for e-Business Studies
    • /
    • v.24 no.3
    • /
    • pp.143-161
    • /
    • 2019
  • The purpose of this study is to empirically verify the relationship of how job stress and job satisfaction of information security professionals affect turnover intention, a precursor of actual turnover. The moderation effect of organizational justice is also explored within these causal relationships. This empirical analysis used 150 responses from information security professionals within 4 different industries. The analysis result from survey responses shows that job stress increases turnover intention, and job satisfaction decreases turnover intention, and that interactional justice, a subordinate concept of organizational justice, has a negative moderating effect at the relationship between job stress and turnover intention. The moderating effect of interactional justice, which can reduce turnover intention with warm words from managers or colleagues even when information security professionals who respond to emergencies such massive incidents are with high job stress, is a piece of important knowledge for information security managers. To reduce voluntary turnover of information security professionals from the organizational perspective, making efforts to lower job stress and raise job satisfaction and interactional justice is necessary.

A Study of improvement for Incident Command Systems in Korea (우리나라 재난현장지휘체계 개선방향)

  • We, Kum-Sook;Jeong, An-Young;Eum, Se-Joon
    • Journal of Korean Society of societal Security
    • /
    • v.4 no.1
    • /
    • pp.39-47
    • /
    • 2011
  • According to the current basic law of disaster and safety management, Standard Incident Command System is limited to Emergency Rescue Function, and Incident Commanders are only Fire Fighting Agencies. The main purpose of this study is to provide some suggestions to improve general-purpose of Standard ICS for various incidents. Also, there are some suggestions for Emergency Operation Centers as a coordinator and supporter of mobilizing response resources in all large scale disaster.

  • PDF

Study on Real-time Cooperation Protect System Against Hacking Attacks of WiBro Service

  • Park, Dea-Woo
    • Journal of information and communication convergence engineering
    • /
    • v.9 no.4
    • /
    • pp.353-357
    • /
    • 2011
  • U.S. Obama government is submit a motion to consider cyber attacks on State as a war. 7.7DDoS attack in Korea in 2009 and 3.4 DDoS attacks 2011, the country can be considered about cyber attacks. China hackers access a third country, bypassing South Korea IP by hacking the e-commerce sites with fake account, that incident was damaging finance. In this paper, for WiBro service, DDoS attacks, hackers, security incidents and vulnerabilities to the analysis. From hacker's attack, WiBro service's prognostic relevance by analyzing symptoms and attacks, in real time, Divide Red, Orange, Yellow, Green belonging to the risk rating. For hackers to create a blacklist, to defend against attacks in real-time air-conditioning system is the study of security. WiBro networks for incident tracking and detection after the packets through the national incident response should contribute to the development of technology.

Vehicles Auto Collision Detection & Avoidance Protocol

  • Almutairi, Mubarak;Muneer, Kashif;Ur Rehman, Aqeel
    • International Journal of Computer Science & Network Security
    • /
    • v.22 no.3
    • /
    • pp.107-112
    • /
    • 2022
  • The automotive industry is motivated to provide more and more amenities to its customers. The industry is taking advantage of artificial intelligence by increasing different sensors and gadgets in vehicles machoism is forward collision warning, at the same time road accidents are also increasing which is another concern to address. So there is an urgent need to provide an A.I based system to avoid such incidents which can be address by using artificial intelligence and global positioning system. Automotive/smart vehicles protection has become a major study of research for customers, government and also automotive industry engineers In this study a two layered novel hypothetical approach is proposed which include in-time vehicle/obstacle detection with auto warning mechanism for collision detection & avoidance and later in a case of an accident manifestation GPS & video camera based alerts system and interrupt generation to nearby ambulance or rescue-services units for in-time driver rescue.

Improvement Directions of the National Crisis Alert System in Korea (우리나라 국가위기경보체계의 개선방향)

  • Hwang, Yo-Han;We, Kum-Sook;Yi, Waon-Ho;Yang, Won-Jik
    • Journal of Korean Society of Disaster and Security
    • /
    • v.9 no.2
    • /
    • pp.1-7
    • /
    • 2016
  • The 'alert' is to provide a signal or information beforehand, in order to prepare against situations in which abrupt incidents or disasters are expected. In other words, the purpose of alert is to help people or respondents to take precautions against and quickly cope with disasters or incidents, before those actually occur. This paper draws requirements of alert system from definitions of the alert and cases of it home and abroad. Following requirements of alert system are derived to allow subjects responsible for alert issue to quickly handle changes of situations; 1) identification of subjects responsible for alert issue, 2) use of definite terms regarding alert levels, for prompt actions, and 3) distinct separations among alert levels. This paper suggests improvement directions by extracting several problems of National Crisis Alert System according to such requirements.

Game Behavior Pattern Modeling for Bots(Auto Program) detection (봇(오토프로그램) 검출을 위한 게임 행동 패턴 모델링)

  • Jung, Hye-Wuk;Park, Sang-Hyun;Bang, Sung-Woo;Yoon, Tae-Bok;Lee, Jee-Hyong
    • Journal of Korea Game Society
    • /
    • v.9 no.5
    • /
    • pp.53-61
    • /
    • 2009
  • Game industry, especially MMORPG (Massively Multiplayer Online Role Playing Game) has rapidly been expanding in these days. In this background, lots of online game security incidents have been increasing and getting more diversity. One of the most critical security incidents is 'Bots', mimics human player's playing behaviors. Bots performs the task without any manual works, it is considered unfair with other players. So most game companies try to block Bots by analyzing the packets between clients and servers. However this method can be easily attacked, because the packets are changeable when it is send to server. In this paper, we propose a Bots detection method by observing the playing patterns of game characters with data on server. In this method, Bots developers cannot handle the data, because it is working on server. Therefore Bots cannot avoid it and we can find Bots users more completely.

  • PDF

A Study on Measures for Strengthening Cybersecurity through Analysis of Cyberattack Response (사이버공격 대응 분석을 통한 사이버안보 강화 방안 연구)

  • Yoon, Oh Jun;Bae, Kwang Yong;Kim, Jae Hong;Seo, Hyung Jun;Shin, Yong Tae
    • Convergence Security Journal
    • /
    • v.15 no.4
    • /
    • pp.65-72
    • /
    • 2015
  • Recent cyberthreats are emerging as big issues that need to be addressed to both developed countries and South Korea. Our government has implemented and established comprehensive measures whenever major incidents were happened. It is still insufficient, even though the national and social level of cybersecurity are improved with continuous investments and efforts to strengthen the country than in the past. Comprehensive measures have been exposed to limit the effectiveness because they are focused on short-term measures. In this paper, we try to analyze the problems of incidents and assess the implementation process of establishing comprehensive measures in order to suggest ways ultimately to improve the country's overall level of cybersecurity.

Developing an Intelligent System for the Analysis of Signs Of Disaster (인적재난사고사례기반의 새로운 재난전조정보 등급판정 연구)

  • Lee, Young Jai
    • Journal of Korean Society of societal Security
    • /
    • v.4 no.2
    • /
    • pp.29-40
    • /
    • 2011
  • The objective of this paper is to develop an intelligent decision support system that is able to advise disaster countermeasures and degree of incidents on the basis of the collected and analyzed signs of disasters. The concepts derived from ontology, text mining and case-based reasoning are adapted to design the system. The functions of this system include term-document matrix, frequency normalization, confidency, association rules, and criteria for judgment. The collected qualitative data from signs of new incidents are processed by those functions and are finally compared and reasoned to past similar disaster cases. The system provides the varying degrees of how dangerous the new signs of disasters are and the few countermeasures to the disaster for the manager of disaster management. The system will be helpful for the decision-maker to make a judgment about how much dangerous the signs of disaster are and to carry out specific kinds of countermeasures on the disaster in advance. As a result, the disaster will be prevented.

  • PDF