• Title/Summary/Keyword: Static Analysis Tool

Search Result 284, Processing Time 0.033 seconds

Probabilistic Analysis of Dynamic Characteristics of Structures considering Joint Fastening and Tolerance (체결부 및 공차를 고려한 구조물의 확률기반 동적 특성 연구)

  • Won, Jun-Ho;Kwang, Kang-Jin;Choi, Joo-Ho
    • Journal of the Korean Society for Aviation and Aeronautics
    • /
    • v.18 no.4
    • /
    • pp.44-50
    • /
    • 2010
  • Structural vibration is a significant problem in many multi-part or multi-component assemblies. In aircraft industry, structures are composed of various fasteners, such as bolts, snap, hinge, weld or other fastener or connector (collectively "fasteners"). Due to these, prediction and design involving dynamic characteristics is quite complicated. However, the current state of the art does not provide an analytical tool to effectively predict structure's dynamic characteristics, because consideration of structural uncertainties (i.e. material properties, geometric tolerance, dimensional tolerance, environment and so on) is difficult and very small fasteners in the structure cause a huge amount of analysis time to predict dynamic characteristics using the FEM (finite element method). In this study, to resolve the current state of the art, a new approach is proposed using the FEM and probabilistic analysis. Firstly, equivalent elements are developed using simple element (e.g. bar, beam, mass) to replace fasteners' finite element model. Developed equivalent elements enable to explain static behavior and dynamic behavior of the structure. Secondly, probabilistic analysis is applied to evaluate the PDF (probability density function) of dynamic characteristics due to tolerance, material properties and so on. MCS (Monte-Carlo simulation) is employed for this. Proposed methodology offers efficiency of dynamic analysis and reality of the field as well. Simple plates joined by fasteners are taken as an example to illustrate the proposed method.

Detecting Security Vulnerabilities in TypeScript Code with Static Taint Analysis (정적 오염 분석을 활용한 타입스크립트 코드의 보안 취약점 탐지)

  • Moon, Taegeun;Kim, Hyoungshick
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.31 no.2
    • /
    • pp.263-277
    • /
    • 2021
  • Taint analysis techniques are popularly used to detect web vulnerabilities originating from unverified user input data, such as Cross-Site Scripting (XSS) and SQL Injection, in web applications written in JavaScript. To detect such vulnerabilities, it would be necessary to trace variables affected by user-submitted inputs. However, because of the dynamic nature of JavaScript, it has been a challenging issue to identify those variables without running the web application code. Therefore, most existing taint analysis tools have been developed based on dynamic taint analysis, which requires the overhead of running the target application. In this paper, we propose a novel static taint analysis technique using symbol information obtained from the TypeScript (a superset of JavaScript) compiler to accurately track data flow and detect security vulnerabilities in TypeScript code. Our proposed technique allows developers to annotate variables that can contain unverified user input data, and uses the annotation information to trace variables and data affected by user input data. Since our proposed technique can seamlessly be incorporated into the TypeScript compiler, developers can find vulnerabilities during the development process, unlike existing analysis tools performed as a separate tool. To show the feasibility of the proposed method, we implemented a prototype and evaluated its performance with 8 web applications with known security vulnerabilities. We found that our prototype implementation could detect all known security vulnerabilities correctly.

Automated Applying Greybox Fuzzing to C/C++ Library Using Unit Test (유닛테스트를 활용한 c/c++ 라이브러리 그레이박스 퍼징 적용 자동화)

  • Jang, Joon Un;Kim, Huy Kang
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.29 no.4
    • /
    • pp.807-819
    • /
    • 2019
  • Greybox fuzzing is known as an effective method to discover unknown security flaws reside in software and has been actively researched today. However, most of greybox fuzzing tools require an executable file. Because of this, a library, which cannot be executed by itself requires an additional executable file for greybox fuzzing. Generating such an executable file is challengeable because it requires both understanding of the library and fuzzing. In this research, we suggest the approach to generate an executable file automatically for a library and implement this approach as a tool based on the LLVM framework. This tool shows that executable files and seed files can be generated automatically by static/dynamic analysis of a unit test in the target project. A generated executable file is compatible with various greybox fuzzers like AFL because it has a common interface for greybox fuzzers. We show the performance of this tool as code coverage and discovered unknown security bugs using generated executable files and seed files from open source projects through this tool.

A Study on Analysis of Infrared Rotating Lovell Reticle Seeker and an Efficient Counter-countermeasure Algorithm (적외선 회전 Lovell 레티클 탐색기의 성능 분석 및 효율적인 반대응 알고리즘에 대한 연구)

  • Kim, Sun-Kook;Han, Sung-Hyun;Hong, Hyun-Ki;Choi, Jong-Soo
    • Journal of the Korean Institute of Telematics and Electronics S
    • /
    • v.35S no.11
    • /
    • pp.166-175
    • /
    • 1998
  • The previous simulation models of infra-red (IR) reticle seekers were performed in a static situation. However, in this paper, we develop a new simulation tool which is applicable in various cases, and propose an efficient counter-countermeasure (CCM) in the presence of countermeasures (CM) such as flares. The developed tool analyzes performance of rotating Lovell reticle seeker, and gives tracking performances in various scenarios. The simulation results show that our counter-countermeasure algorithm makes an efficient target tracking in the presence of flares.

  • PDF

A study on Dirty Pipe Linux vulnerability

  • Tanwar, Saurav;Kim, Hee Wan
    • International Journal of Internet, Broadcasting and Communication
    • /
    • v.14 no.3
    • /
    • pp.17-21
    • /
    • 2022
  • In this study, we wanted to examine the new vulnerability 'Dirty Pipe' that is founded in Linux kernel. how it's exploited and what is the limitation, where it's existed, and overcome techniques and analysis of the Linux kernel package. The study of the method used the hmark[1] program to check the vulnerabilities. Hmark is a whitebox testing tool that helps to analyze the vulnerability based on static whitebox testing and automated verification. For this purpose of our study, we analyzed Linux kernel code that is downloaded from an open-source website. Then by analyzing the hmark tool results, we identified in which file of the kernel it exists, cvss level, statistically depicted vulnerabilities on graph which is easy to understand. Furthermore, we will talk about some software we can use to analyze a vulnerability and how hmark software works. In the case of the Dirty Pipe vulnerability in Linux allows non-privileged users to execute malicious code capable of a host of destructive actions including installing backdoors into the system, injecting code into scripts, altering binaries used by elevated programs, and creating unauthorized user profiles. This bug is being tracked as CVE-2022-0847 and has been termed "Dirty Pipe"[2] since it bears a close resemblance to Dirty Cow[3], and easily exploitable Linux vulnerability from 2016 which granted a bad actor an identical level of privileges and powers.

A study on effect in hemiplegic patients in the Hinged Plastic Ankle Foot Orthoses and Solid Plastic Ankle Foot Orthosis (관절형 및 고정형 플라스틱 단하지 보조기가 편마비환자의 정적${\cdot}$동적 균형에 미치는 효과)

  • Lim Ho-Yong;Ahn Yeon-Jun;Kim Yeong-Rok;Park Seung-Kyu
    • The Journal of Korean Physical Therapy
    • /
    • v.16 no.3
    • /
    • pp.161-175
    • /
    • 2004
  • The purpose of this study was to determine the effect of HPAFO(Hinged Plastic Ankle Foot orthosis) and SPAFO(Solid Plastic Ankle Foot Orthosis) on standing balance and step moving in hemiplegia patients. Twenty hemiplegic patients were either inpatient or outpatient at the Rehabilitation medicine, MokPo J General Hospital and JeonJu J Medical Center from July 15, 2002 to September 15, 2002. Patients were able to ambulate independently for at least 10 meters and to stand independently for at least 10 minutes with balance measurement tool. The static balance and dynamic activity measurement was determined by SAKAI active balancer(Japan) with wearing HPAFO and wearing SPAFO. The static balance and dynamic activity analysis was analyzed by independent t-test. The results were as follows: 1. There were no significant difference in body weight bearing percent between wearing HPAFO and wearing SPAFO(p>0.05). 2. There were significant difference in whole path length between wearing HPAFO and wearing SPAFO(p<0.05). 3. There were significant difference in Effective Value Area between wearing HPAFO and wearing SPAFO(p>0.001). 4. There were significant difference in repeated functional time between wearing HPAFO and wearing SPAFO(p>0.001). 5. There were significant difference in cadence between wearing HPAFO and wearing SPAFO(p>0.001). The result of this study showed that wearing HPAFO and wearing SPAFO gave fair amount of improvement to static standing balance and dynamic movement ability of hemiplegic patients. The comparison result showed significant differences in between HPAFO and SPAHFO. The result of this study had a general limitation due to the restricted number of cases. The future study needs more detailed research and comparison with various variance between these two orthoses.

  • PDF

Equivalent frame model and shell element for modeling of in-plane behavior of Unreinforced Brick Masonry buildings

  • Kheirollahi, Mohammad
    • Structural Engineering and Mechanics
    • /
    • v.46 no.2
    • /
    • pp.213-229
    • /
    • 2013
  • Although performance based assessment procedures are mainly developed for reinforced concrete and steel buildings, URM (Unreinforced Masonry) buildings occupy significant portion of buildings in earthquake prone areas of the world as well as in IRAN. Variability of material properties, non-engineered nature of the construction and difficulties in structural analysis of masonry walls make analysis of URM buildings challenging. Despite sophisticated finite element models satisfy the modeling requirements, extensive experimental data for definition of material behavior and high computational resources are needed. Recently, nonlinear equivalent frame models which are developed assigning lumped plastic hinges to isotropic and homogenous equivalent frame elements are used for nonlinear modeling of URM buildings. The equivalent frame models are not novel for the analysis of masonry structures, but the actual potentialities have not yet been completely studied, particularly for non-linear applications. In the present paper an effective tool for the non-linear static analysis of 2D masonry walls is presented. The work presented in this study is about performance assessment of unreinforced brick masonry buildings through nonlinear equivalent frame modeling technique. Reliability of the proposed models is tested with a reversed cyclic experiment conducted on a full scale, two-story URM building at the University of Pavia. The pushover curves were found to provide good agreement with the experimental backbone curves. Furthermore, the results of analysis show that EFM (Equivalent Frame Model) with Dolce RO (rigid offset zone) and shell element have good agreement with finite element software and experimental results.

Automatic Generation of MAEC and STIX Standards for Android Malware Threat Intelligence

  • Park, Jungsoo;Nguyen Vu, Long;Bencivengo, George;Jung, Souhwan
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.14 no.8
    • /
    • pp.3420-3436
    • /
    • 2020
  • Due to the increasing number of malicious software (also known as malware), methods for sharing threat information are being studied by various organizations. The Malware Attribute Enumeration and Characterization (MAEC) format of malware is created by analysts, converted to Structured Threat Information Expression (STIX), and distributed by using Trusted Automated eXchange of Indicator Information (TAXII) protocol. Currently, when sharing malware analysis results, analysts have to manually input them into MAEC. Not many analysis results are shared publicly. In this paper, we propose an automated MAEC conversion technique for sharing analysis results of malicious Android applications. Upon continuous research and study of various static and dynamic analysis techniques of Android Applications, we developed a conversion tool by classifying parts that can be converted automatically through MAEC standard analysis, and parts that can be entered manually by analysts. Also using MAEC-to-STIX conversion, we have discovered that the MAEC file can be converted into STIX. Although other researches have been conducted on automatic conversion techniques of MAEC, they were limited to Windows and Linux only. In further verification of the conversion rate, we confirmed that analysts could improve the efficiency of analysis and establish a faster sharing system to cope with various Android malware using our proposed technique.

The Effect of Geriatric Oral Health on Health Status and Social Activity in Ulsan Province (울산지역 노인의 구강건강이 노인의 전반적 건강상태와 사회활동에 미치는 영향)

  • Choi, Yu-Jin;Kwon, Su-Jin;Ryu, Hwang-Gun
    • The Korean Journal of Health Service Management
    • /
    • v.6 no.1
    • /
    • pp.185-193
    • /
    • 2012
  • This study is to observe the effect of oral health of elderly on overall health status and social activity to provide basic data for oral health improvement program for the elderly and development of related policies. The survey was conducted from July 25th to July 29th, 2011, and used 145 copies for this research analysis. As a result of correlation analysis, it is observed that all of 4 sub factors of Geriatric Oral Health Assessment Index have significant static correlation with overall health status of elderly and social activity also has significant static correlation with oral health. As a result of regression analysis, the functional limitation out of sub factors showed significant positive effect on health status and psychological effect has significant positive effect on social activity. Based on the above result, it is observed that, at the time of rapidly entering to an aging society, the life quality related to oral health of elderly which is part of overall health and overall health status and social activity areas that are recognized by the elderly have significant correlation. And, it is important to understand the factors of oral health affecting health status and social activity. Based on the result of this study, more researches on the development of oral health program and development of assessment tool that can be easily employed should be made.

Topology Optimization Design of Machine Tools Head Frame Structures for the Machining of Aircraft Parts (항공기부품가공용 공작기계 헤드프레임 구조의 위상최적화 설계)

  • Yun, Taewook;Lee, Seoksoon
    • Journal of Aerospace System Engineering
    • /
    • v.12 no.4
    • /
    • pp.18-25
    • /
    • 2018
  • The head frame structure of a machine tool for aircraft parts, which requires machining precision and machining of difficult-to-cut materials is required to be light-weighted for precision high-speed machining and to minimize possible deformation by cutting force. To achieve high stiffness and for light-weight structure optimization design, a preliminary model was designed based on finite element analysis. The topology optimization design of light-weight, high stiffness, and low vibration frame structure were performed by minimizing compliance. As a result, the frame weight decreased by 17.3%, the maximum deflection was less than 0.007 mm, and the natural frequency increased by 30.6%. The static stiffness was increased in each axis direction and the dynamic stiffness exhibited contrary results according to the axis. Optimized structure with the high stiffness of low vibration in topology optimization design was confirmed.