• Title/Summary/Keyword: detection theory

Search Result 507, Processing Time 0.031 seconds

A Network Packet Analysis Method to Discover Malicious Activities

  • Kwon, Taewoong;Myung, Joonwoo;Lee, Jun;Kim, Kyu-il;Song, Jungsuk
    • Journal of Information Science Theory and Practice
    • /
    • v.10 no.spc
    • /
    • pp.143-153
    • /
    • 2022
  • With the development of networks and the increase in the number of network devices, the number of cyber attacks targeting them is also increasing. Since these cyber-attacks aim to steal important information and destroy systems, it is necessary to minimize social and economic damage through early detection and rapid response. Many studies using machine learning (ML) and artificial intelligence (AI) have been conducted, among which payload learning is one of the most intuitive and effective methods to detect malicious behavior. In this study, we propose a preprocessing method to maximize the performance of the model when learning the payload in term units. The proposed method constructs a high-quality learning data set by eliminating unnecessary noise (stopwords) and preserving important features in consideration of the machine language and natural language characteristics of the packet payload. Our method consists of three steps: Preserving significant special characters, Generating a stopword list, and Class label refinement. By processing packets of various and complex structures based on these three processes, it is possible to make high-quality training data that can be helpful to build high-performance ML/AI models for security monitoring. We prove the effectiveness of the proposed method by comparing the performance of the AI model to which the proposed method is applied and not. Forthermore, by evaluating the performance of the AI model applied proposed method in the real-world Security Operating Center (SOC) environment with live network traffic, we demonstrate the applicability of the our method to the real environment.

Study on Relationship Between Spatial-Perceptual Ability and Driving-Related Situation Awareness (공간지각 능력에 따른 운전-관련 상황의 재인 및 예측에 관한 연구)

  • Bia Kim ;Jaesik Lee
    • Korean Journal of Culture and Social Issue
    • /
    • v.11 no.4
    • /
    • pp.83-95
    • /
    • 2005
  • The purpose of the present study was to investigate the relationship between spatial-erceptual ability and several aspects of driving-related situation awareness(in particular, recognition and prediction). Video clips of real driving were used in both recognition and prediction tasks, and the digit calculation task during driving the simulator was required as the integration task of recognition and prediction. The results showed that the subjects of higher spatial-perceptual ability performed better in recognition task, especially in terms of sensitivity measured in d'(as signal detection theory), prediction task, and digits calculation performance than those of lower spatial-perceptual ability.

Flexible Operation of International Commercial Terms to Increase Logistics Efficiency in Logistics 4.0 (물류 4.0 시대에서 물류효율성 증대를 위한 인코텀즈 상 정형거래조건의 탄력적 운용방안 연구)

  • Chang-Bong Kim;Kyeong-Wook Jeong
    • Korea Trade Review
    • /
    • v.47 no.4
    • /
    • pp.69-88
    • /
    • 2022
  • Recently, International commerce has continuously expanded with the development of logistics technology. However, the cost of international logistics is rising rapidly. The Korea International Trade Association (2021) proposes that the use of international commercial terms in Incoterms® could be an effective way against logistics costs. The purpose of this study is to verify the effect on the flexible operation of international commercial terms. For the detection of variables and data collection for empirical analysis based on previous studies and in-depth interviews. The questionnaires were distributed after pilot-study to a random sample of companies based on the list of members such as the Korea International Trade Association, the Korea Trade-Investment Promotion Agency, and the Global Small and Medium Business Association. A total of 800 questionnaires were distributed, and 166 were used for empirical analysis. The results of this study are as follows. First, mutual cooperation and Flexibly using of international commercial terms has a positive (+) effect on logistics efficiency. This is in line with the study of Yang (2021) and Stojanović et al. (2021) that logistics by using international commercial terms will increase the efficiency of logistics. Second, use of international commercial terms based on mutual understanding mediates the relationship between the logistics environment of the other country and the logistics efficiency. As in the study of Vidrova (2020), it is important to operate on international commercial terms mutually.

An Inquiry Over Rayleigh's Pioneering Experiments for the Detection of Shadow, Reflection, Interference, and Diffraction of Sound (소리의 그늘, 반사, 간섭, 회절의 검출을 위한 레일리의 선구적 실험에 대한 연구)

  • Ku, Ja-Hyon
    • The Journal of the Acoustical Society of Korea
    • /
    • v.26 no.2
    • /
    • pp.55-60
    • /
    • 2007
  • The shadow, reflection, interference, and diffraction are proper phenomena concerning sound that is a kind of wave. By the late nineteenth century, similar optical phenomena had been detected already but these phenomena concerning sound had not been convincingly detected. It was Rayleigh who succeeded in detecting those phenomena without any reasonable doubt by the virtue of his original instruments and smart experimental settings. Rayleigh could detect the sound shadow by using the corner of a building and erase the shadow by some reflectors. And he constructed some apparatus similar to Young's interference apparatus famous in optics to detect the sonic interference. Furthermore, he first succeeded in illustrating the acoustical effectiveness of Poisson's disk by which optical diffraction had already been well known, and tested the effect of diffraction by spherical obstacles to ascertain that the result coincided with his theory.

Oil Fluorescence Spectrum Analysis for the Design of Fluorimeter (형광 광도계 설계인자 도출을 위한 기름의 형광 스펙트럼 분석)

  • Oh, Sangwoo;Seo, Dongmin;Ann, Kiyoung;Kim, Jaewoo;Lee, Moonjin;Chun, Taebyung;Seo, Sungkyu
    • Journal of the Korean Society for Marine Environment & Energy
    • /
    • v.18 no.4
    • /
    • pp.304-309
    • /
    • 2015
  • To evaluate the degree of contamination caused by oil spill accident in the sea, the in-situ sensors which are based on the scientific method are needed in the real site. The sensors which are based on the fluorescence detection theory can provide the useful data, such as the concentration of oil. However these kinds of sensors commonly are composed of the ultraviolet (UV) light source such as UV mercury lamp, the multiple excitation/emission filters and the optical sensor which is mainly photomultiplier tube (PMT) type. Therefore, the size of the total sensing platform is large not suitable to be handled in the oil spill field and also the total price of it is extremely expensive. To overcome these drawbacks, we designed the fluorimeter for the oil spill detection which has compact size and cost effectiveness. Before the detail design process, we conducted the experiments to measure the excitation and emission spectrum of oils using five different kinds of crude oils and three different kinds of processed oils. And the fluorescence spectrometer were used to analyze the excitation and emission spectrum of oil samples. We have compared the spectrum results and drawn the each common spectrum regions of excitation and emission. In the experiments, we can see that the average gap between maximum excitation and emission peak wavelengths is near 50 nm for the every case. In the experiment which were fixed by the excitation wavelength of 365 nm and 405 nm, we can find out that the intensity of emission was weaker than that of 280 nm and 325 nm. So, if the light sources having the wavelength of 365 nm or 405 nm are used in the design process of fluorimeter, the optical sensor needs to have the sensitivity which can cover the weak light intensity. Through the results which were derived by the experiment, we can define the important factors which can be useful to select the effective wavelengths of light source, photo detector and filters.

Generalization of error decision rules in a grammar checker using Korean WordNet, KorLex (명사 어휘의미망을 활용한 문법 검사기의 문맥 오류 결정 규칙 일반화)

  • So, Gil-Ja;Lee, Seung-Hee;Kwon, Hyuk-Chul
    • The KIPS Transactions:PartB
    • /
    • v.18B no.6
    • /
    • pp.405-414
    • /
    • 2011
  • Korean grammar checkers typically detect context-dependent errors by employing heuristic rules that are manually formulated by a language expert. These rules are appended each time a new error pattern is detected. However, such grammar checkers are not consistent. In order to resolve this shortcoming, we propose new method for generalizing error decision rules to detect the above errors. For this purpose, we use an existing thesaurus KorLex, which is the Korean version of Princeton WordNet. KorLex has hierarchical word senses for nouns, but does not contain any information about the relationships between cases in a sentence. Through the Tree Cut Model and the MDL(minimum description length) model based on information theory, we extract noun classes from KorLex and generalize error decision rules from these noun classes. In order to verify the accuracy of the new method in an experiment, we extracted nouns used as an object of the four predicates usually confused from a large corpus, and subsequently extracted noun classes from these nouns. We found that the number of error decision rules generalized from these noun classes has decreased to about 64.8%. In conclusion, the precision of our grammar checker exceeds that of conventional ones by 6.2%.

Evaluation of Membrane Damage Sensitivity by Defect Types for Improving Reliability of Membrane Integrity Monitoring (막 완결성 모니터링 신뢰성 향상을 위한 손상 유형별 막 손상 감도 평가)

  • Lee, Yong-Soo;Kang, Ha-Young;Kim, Hyung-Soo;Kim, Jong-Oh
    • Membrane Journal
    • /
    • v.27 no.3
    • /
    • pp.248-254
    • /
    • 2017
  • In order to secure the reliability of pathogenic microorganisms such as Cryptosporidium and Giaridia, which are chlorophilic protozoans, membrane filtration systems have been widely used in water purification process. hese integrity tests are classified into direct and indirect methods. Based on the bubble point theory, the pressure-based test in the direct method is presented in the USEPA Guidance Manual with sensitivity to detect a minimum size of pathogenic microorganisms of $3{\mu}m$ or more. Indirect methods are widely used in that they are capable of continuous operation in on-line state, but there is a very low sensitivity of damage detection compared to the direct method, and there is a limit that can not specify the damage area, so it is necessary to improve this sensitivity. In this study, we compared the LRVDIT and UCL values according to the type of membrane defect, number of fiber breaks, and initial set pressure value through the Integrity Test by Pressure Decay Test (PDT).

APPLICATION OF TIME-OF-FLIGHT NEAR INFRARED SPECTROSCOPY TO WOOD

  • Tsuchikawa, Satoru;Tsutsumi, Shigeaki
    • Proceedings of the Korean Society of Near Infrared Spectroscopy Conference
    • /
    • 2001.06a
    • /
    • pp.1182-1182
    • /
    • 2001
  • In this study, the newly constructed optical measurement system, which was mainly composed of a parametric tunable laser and a near infrared photoelectric multiplier, was introduced to clarify the optical characteristics of wood as discontinuous body with anisotropic cellular structure from the viewpoint of the time-of-flight near infrared spectroscopy (TOF-NIRS). The combined effects of the cellular structure of wood sample, the wavelength of the laser beam λ, and the detection position of transmitted light on the time resolved profiles were investigated in detail. The variation of the attenuance of peak maxima At, the time delay of peak maxima Δt and the variation of full width at half maximum Δw were strongly dependent on the feature of cellular structure of a sample and the wavelength of the laser beam. The substantial optical path length became about 30 to 35 times as long as sample thickness except the absorption band of water. Δt ${\times}$ Δw representing the light scattering condition increased exponentially with the sample thickness or the distance between the irradiation point and the end of sample. Around the λ=900-950 nm, there may be considerable light scattering in the lumen of tracheid, which is multiple specular reflection and easy to propagate along the length of wood fiber. Such tendency was remarkable for soft wood with the aggregate of thin layers of cell walls. When we apply TOF-NIRS to the cellular structural materials like wood, it is very important to give attention to the difference in the light scattering within cell wall and the multiple specular-like reflections between cell walls. We tried to express the characteristics of the time resolved profile on the basis of the optical parameters for light propagation determined by the previous studies, which were absorption coefficient K and scattering coefficient S from Kubelka-Munk theory and n from nth power cosine model of radiant intensity. The wavelength dependency of the product of K/S and n, which expressed the light-absorbing and -scattering condition and the degree of anisotropy, respectively, was similar to that of the time delay of peak maxima Δt. The variation of the time resolved profile is governed by the combination of these parameters. So, we can easily find the set of parameters for light propagation synthetically from Δt.

  • PDF

A Study on Bioassay of Tritium($^{3}H$) Radioacitivity (三重水素($^{3}H$) 放射能의 生理分析에 關한 硏究)

  • 황선태;오필재;김원식
    • Journal of Korean Society for Atmospheric Environment
    • /
    • v.3 no.1
    • /
    • pp.27-33
    • /
    • 1987
  • The environment and biological studies of tritium have been carried out in the advanced countries since the mid 1950's. In the case of a potential tritium exposure, the usual procedure is trifium bioassay (as HTO) in human urine in order to determine the amount of tritium deposited in the body called tritium body burden. The maximum permissible body burden(MPBB) of tritium in total body is about $30{\mu}Ci/{\ell}$ for body tissue. In the bioassay, the most common investigation level for detection of tritium in urine is 1/10th of MPBB. For this bioassay project, the first priority is given to obtaining a quench correction curve. This consideration is necessary because of the variability in color of human urine specimens. Quenching effect in this case mainly is caused by the absorption of scintillation light flashes by the urine sample. By the least squares method on the statistical basis, an estimated formula for quench correction curve was determined to be Y = 0.771 + 1.836 ${\tmes}10^{-4}$X, where the efficiency(Y) was ranged from about 12% to 31% in the liquid scientillation counting. In this paper, a brief theory concerning the biological half-life of tritium and the retention formula to apply to systematically distributed tritium are described.

  • PDF

A Data Hiding Scheme for Binary Image Authentication with Small Image Distortion (이미지 왜곡을 줄인 이진 이미지 인증을 위한 정보 은닉 기법)

  • Lee, Youn-Ho;Kim, Byoung-Ho
    • Journal of KIISE:Computer Systems and Theory
    • /
    • v.36 no.2
    • /
    • pp.73-86
    • /
    • 2009
  • This paper proposes a new data hiding scheme for binary image authentication with minimizing the distortion of host image. Based on the Hamming-Code-Based data embedding algorithm, the proposed scheme makes it possible to embed authentication information into host image with only flipping small number of pixels. To minimize visual distortion, the proposed scheme only modifies the values of the flippable pixels that are selected based on Yang et al's flippablity criteria. In addition to this, by randomly shuffling the bit-order of the authentication information to be embedded, only the designated receiver, who has the secret key that was used for data embedding, can extract the embedded data. To show the superiority of the proposed scheme, the two measurement metrics, the miss detection rate and the number of flipped pixels by data embedding, are used for the comparison analysis between the proposed scheme and the previous schemes. As a result of analysis, it has been shown that the proposed scheme flips smaller number of pixels than the previous schemes to embed the authentication information of the same bit-length. Moreover, it has been shown that the proposed scheme causes smaller visual distortion and more resilient against recent steg-analysis attacks than the previous schemes by the experimental results.