• 제목/요약/키워드: event-based

검색결과 3,163건 처리시간 0.029초

A Model for Illegal File Access Tracking Using Windows Logs and Elastic Stack

  • Kim, Jisun;Jo, Eulhan;Lee, Sungwon;Cho, Taenam
    • Journal of Information Processing Systems
    • /
    • 제17권4호
    • /
    • pp.772-786
    • /
    • 2021
  • The process of tracking suspicious behavior manually on a system and gathering evidence are labor-intensive, variable, and experience-dependent. The system logs are the most important sources for evidences in this process. However, in the Microsoft Windows operating system, the action events are irregular and the log structure is difficult to audit. In this paper, we propose a model that overcomes these problems and efficiently analyzes Microsoft Windows logs. The proposed model extracts lists of both common and key events from the Microsoft Windows logs to determine detailed actions. In addition, we show an approach based on the proposed model applied to track illegal file access. The proposed approach employs three-step tracking templates using Elastic Stack as well as key-event, common-event lists and identify event lists, which enables visualization of the data for analysis. Using the three-step model, analysts can adjust the depth of their analysis.

Combustible Gas and Visible Distance by Sprinkler Head for Safety of Gymnasium Workers

  • Ahn, Jae-Cheon;Kong, Ha-Sung
    • International journal of advanced smart convergence
    • /
    • 제10권3호
    • /
    • pp.232-244
    • /
    • 2021
  • This study analyzed the changes in carbon monoxide, carbon dioxide, oxygen and visual distance by presence of sprinkler heads and their types in the event of a fire in an indoor gymnasium. Based on carbon monoxide and visual distance that affects human bodies enormously, first, if there is no sprinkler head, carbon monoxide will reach 0.4% within five seconds and visual distance rapidly shrank within five seconds. Seconds, in the event of standard sprinkler heads, carbon monoxide gradually increased from 30 seconds onwards and visual distance rapidly shrank after five seconds. Second, Third, if there are special sprinkler heads, carbon monoxide fluctuated after opening the head and visual distance became 5m or below from 15 seconds. Finally, in the event of early response sprinkler heads, carbon monoxide fluctuated up and down at 3 seconds due to falling water drops. Visual distance shrank up to 5m or below at 6 seconds. In the future, time for operation of each sprinkler head shall be analyzed.

참여정부 대통령기록 연구 대통령 행사기록을 중심으로 (A Study on the Presidential Records of the Participatory Government : Focusing on the Records of Presidential Events)

  • 이경용
    • 기록학연구
    • /
    • 제71호
    • /
    • pp.131-167
    • /
    • 2022
  • 이 논문은 제16대 대통령기록 중에서 기록관리비서실이 대통령 행사와 관련해서 생산한 '말씀록'의 생산 과정을 둘러싼 기록들의 내용을 분석하였다. 이를 통해 대통령기록관에 이관된 참여정부의 대통령 행사 기록의 생산 맥락을 올바로 이해한 가운데 관련 기록을 연계, 조직하여 적극적으로 활용하는 방안을 제안하였다.

비대면 화상회의 솔루션의 지속사용의도에 영향을 미치는 요인에 관한 연구 (Examining the Factors that Influence the Continuance Intention of the Video Conferencing Solution)

  • 김현준;안현철
    • 한국정보시스템학회지:정보시스템연구
    • /
    • 제31권3호
    • /
    • pp.153-176
    • /
    • 2022
  • Purpose This study aims to identify and empirically prove the factors and influence relationships that affect the intention to continue using the video conferencing solution. Design/methodology/approach This study designed a research model by integrating self-efficacy, facilitation condition, event-related fear, and social influencing factors based on the post-acceptance model of IT continuance that explained the relationship between disconfirmation, post-usage usefulness, satisfaction, and continuance intention. Findings As a result of empirical analysis, in this study, it was confirmed that positive disconfirmation and post-usage usefulness had a positive effect on satisfaction, and satisfaction had a positive effect on continuance intention. In addition, we confirmed that self-efficacy and social influence had a positive effect on continuance intention, but event-related fear and facilitating condition had no significant effect.

Analysis of MBLOCA and LBLOCA success criteria in VVER-1000/V320 reactors: New proposals for PSA Level 1

  • Elena Redondo-Valero;Cesar Queral;Kevin Fernandez-Cosials;Victor Hugo Sanchez-Espinoza
    • Nuclear Engineering and Technology
    • /
    • 제55권2호
    • /
    • pp.623-639
    • /
    • 2023
  • The specific configuration of the safety systems in VVER-1000/V320 reactors allows a comprehensive study of the Loss of Coolant Accident (LOCA). In the present paper, a verification of the success criteria of the event trees headers for the medium and large break LOCA sequences is conducted. A detailed TRACEV5P5 thermal-hydraulic model of the reactor has been developed, including all safety systems. When analyzing the results of all sequences, some conservatism is observed in certain specific configurations as the success criterion of some headers is not consistent with the classic PSA level 1. Therefore, new proposals for the LOCA event trees are performed based on a reconfiguration of LOCA break ranges and the use of the expanded event trees approach.

Exoplanet Science Cases with Small Telescope Network

  • 강원석;김태우
    • 천문학회보
    • /
    • 제44권2호
    • /
    • pp.60.2-60.2
    • /
    • 2019
  • Based on our experience on exoplanet transit observation, we propose the exoplanet science cases with Small Telescope Network. One is the follow-up observation for validation of exoplanet candidates. TESS(Transiting Exoplanet Survey Satellite) is pouring out exoplanet candidates in bright stars(V<15) on all the sky. Since Small Telescope Network will consist of 0.5-1m telescopes, we will expect to produce promising outcomes from the follow-up observation of bright candidates. Next is the transit time observation. By spectroscopy of space and large telescopes during transit event, it can be possible to find the bio signatures in exoplanet atmosphere. So, in terms of cost, it is critical to determine the exact time of transit event. In addition, detecting the variation of transit time can reveal another exoplanet and exomoon in the system. In order to determine the transit time and its variation, the accumulation of transit event data is more important than the quality of photometric data. We expect that it can be a challenging project of Small Telescope Network.

  • PDF

Automatic Berthing Finite-time Control Considering Transmission Load Reduction

  • Liu Yang;Im Nam-kyun
    • 한국항해항만학회:학술대회논문집
    • /
    • 한국항해항만학회 2022년도 추계학술대회
    • /
    • pp.168-169
    • /
    • 2022
  • In this study, we investigates the auto-berthing problem for the underactuated surface vessel in the presence of constraints of dynamic uncertainties, finite time, transmission load, and environmental disturbance. A novel control scheme is proposed by fusing the finite time control technology and the event-triggered input algorithm. In the algorithm, differential homeomorphism coordinate the transformation is used to solve the problem of underactuation. Then, we apply the finite time technology and event triggered to save the time of the berthing vessel and relieve transmission burden between the controller and the vessel respectively. Moreover, a radial basis function network is used to approximate unknown nonlinear functions, and minimum learning parameters are introduced to lessen the computational complexity. A sufficient effort has been made to verify the stability of the closed-loop system based on the Lyapunov stability theory. Finally, simulation results display the effectiveness of the proposed scheme.

  • PDF

이산 사건/이산 시간 혼합형 시뮬레이션 모델 구조 기반 DEVS-HLA 인터페이스를 이용한 잠수함의 잠항 시뮬레이션 (Submarine Diving Simulation Using a DEVS-HLA Interface based on the Combined Discrete Event and Discrete Time Simulation Model Architecture)

  • 차주환;하솔;노명일;이규열
    • 한국CDE학회논문집
    • /
    • 제15권4호
    • /
    • pp.279-288
    • /
    • 2010
  • In this paper, a DEVS(Discrete EVent Systems Specification)-HLA(High Level Architecture) interface was developed in order to perform the simulation using the combined discrete event and discrete time simulation model architecture in a distributed environment. The developed interface connects the combined simulation model with the HLA/RTI(Run-Time Infrastructure) which is an international standard middleware for distributed simulation. The interface consists of an interface model, a model interpreter, and a distributed environment interpreter. The interface model was defined by using the combined simulation architecture in order to easily connect the existing combined simulation model without modification with the HLA/RTI. The model interpreter takes charge of data transmission between the interface model and the combined simulation model. The distributed environment interpreter takes charge of data transmission between the interface model and the HLA/RTI. To evaluate the applicability of the developed interface, it was applied to the diving simulation of a submarine in a distributed environment. The result shows that a simulation result in a distributed environment using the interface is the same to the result in a single computing environment.

전자제어의 Event 처리방법에 관한 연구 (A Study on the Event Processing for Electronic Control)

  • 이종승;이중순;정성식;하종률
    • 한국자동차공학회논문집
    • /
    • 제6권3호
    • /
    • pp.115-122
    • /
    • 1998
  • For digital engine control timings, such as ignition, are based on the crank shaft angle. Therefore, it is very important that the angle of the crank shaft can be detected with accuracy for optimal ignition timing. Sequential multi-point injection(MPI) systems that have independent injection events for each cylinder, are used to inject an accurate quantity of fuel, and to cope with varying engine status promptly. In this study the distributorless ignition timing. A crankshaft position sensor has been installed such that it generates a number of pulses per crankshaft revolution to permit accurate detection of the crank shaft angle. An event detecting algorithm has been developed, which detects the crank shaft pulses generated by the position sensor, and the software outputs the required control signals at given crank angle values. We clarified that the hardware method is the best way to increase the performance of the control system, because the event detecting duration T(1+2)max becomes zero.

  • PDF

PPG와 ECG의 상관 관계에 기반한 심박 시계열 데이터 이상 상황 탐지 최적 모델 비교 연구 (A Comparative Study on the Optimal Model for abnormal Detection event of Heart Rate Time Series Data Based on the Correlation between PPG and ECG)

  • 김진수;이강윤
    • 인터넷정보학회논문지
    • /
    • 제20권6호
    • /
    • pp.137-142
    • /
    • 2019
  • 본 논문은 이상 상황을 탐지하고 모니터링하는 다양한 서비스가 존재한다. 하지만 대부분의 서비스는 화재, 가스누출에 초점을 맞추어 진행되고 있으며, 독거노인과 중증장애인들의 사망 혹은 심정지 등 위급상황에 대하여 사전 예방 및 위급상황 대응이 불가능하다. 본 연구에서는 여러 생체신호 중 가장 위중하다고 판단되는 심박 신호의 이상 상태를 탐지하기 위하여 인공지능 모델을 설계하는 과정에서 적합한 데이터 변형과 모델을 비교한다. 세부적으로는 오픈 의료 데이터 PhysioNet의 MIT-BIH Arrhythmia Database를 이용하여 심전도(ECG) 데이터를 수집하고, 수집한 데이터를 각각 다른 방법으로 데이터를 변형한 후 학습하여 기본 심전도 데이터를 이용해 학습한 인공지능 모델과 비교한다.