• Title/Summary/Keyword: software weakness

Search Result 115, Processing Time 0.024 seconds

Secure Component Composition for Practical Systems (실용적인 시스템을 위한 안전한 소프트웨어 컴포넌트 조합)

  • Lee Eun-Young
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.16 no.4
    • /
    • pp.43-57
    • /
    • 2006
  • When building a software system out of software components, the composition is not simple because of the complexity caused by diverse versions, digital signatures, static type information, and off-the-shelf components from various vendors. Well-established linking policies are one of the best solutions to solve the complexity problem at linking time. Secure Linking (SL) enables users to specify their linking policies which can be enforced at link time. Secure Linking framework is a framework based on a higher-order logic in order to help build a SL system. This paper shows that the Secure Linking logic is expressive enough to describe a real-world component composition system, the linking protocol of.NET. The paper also demonstrates the advantage of the logic-based linking framework by discussing the weakness of the code signing protocol in.NET which was found while we encoded the assembly linking system of.NET.

Case Study on the Design of Earth Retaining and Retention Wall Using Pre-casted Concreted Pile(PHC) (기성콘크리트말뚝(PHC)을 이용한 옹벽겸용 흙막이설계사례)

  • Han, Jung-Geun;Cho, Young-Ryang;Kim, Sang-Kwi;Park, Sang-Cheol;Eo, Yun-Won
    • Journal of the Korean Society of Environmental Restoration Technology
    • /
    • v.8 no.3
    • /
    • pp.33-42
    • /
    • 2005
  • The bearing methods using pile of steel itself or reinforced concrete has been applying which in excavated depth was not deep. Also, the retaining wall as resisting structure to lateral force has taken weakness that the cure periods of concreted is long. Recently, with the material cost of steel, the application of cement is more increasing trend. In this study, the design methods of earth retaining and retention wall within the pre-casted concrete pile, PHC(Pretentioned spun High strength Concrete piles), was proposed which in the ground condition of excavated depth was not deep. The typical ground conditions, cohesive and non-cohesive soil, was considered as follows; soil strength as internal friction angle and UU(Undrained Unconsolidation triaxial test) strength, soil reaction and stabilization of structures. The application of design methods could be confirmed through the comparing and analyzing between measured data and utility software for the design.

Mobile Cloud Computing-based Agent Application Model (모바일 클라우드 기반 에이전트 모델)

  • Ahn, Kwang-Min;Lee, Bong-Hwan
    • Proceedings of the Korean Institute of Information and Commucation Sciences Conference
    • /
    • 2012.05a
    • /
    • pp.608-611
    • /
    • 2012
  • In this paper, a mobile cloud-based agent model is proposed in order to overcome the resource constraints and the difficulties of installing a variety of complex applications in mobile devices. The proposed software architecture overcomes the disadvantages of mobile devices and maximizes usage of cloud services by implementing the function of mobile agent concept. The significant portion of the cloud services is run in the cloud server and the client application implemented in the mobile device can call and control appropriate service from the cloud server. Thus, the inherent weakness of the mobile can be overcome by executing the target applications on cloud nodes.

  • PDF

ECC-based IPTV Service Key Establishment Protocol With User Attribute (사용자 속성을 이용한 ECC 기반의 IPTV 서비스 키 설립 프로토콜)

  • Jeong, Yoon-Su;Shin, Seung-Soo
    • Journal of Digital Convergence
    • /
    • v.10 no.3
    • /
    • pp.105-111
    • /
    • 2012
  • Internet Protocol Television (IPTV) through broadband cable network is a subscriber-based system which consists of software and set-top box. However, a weakness for the current IPTV system is the lack of security between users and CAS. This paper proposes a user authentication protocol at STB, which limits the service by the user-valued attribute to prevent illegal IPTV users. User attribute values change the order with bit form according to the certain rule, and apply to one-way hash function and Diffie-Hellman's elliptic curve key-exchange algorithm. The proposed protocol is able to improve on user authentication and computation. Also, each user generates an authentication message by smart card and receives various services based on the user-valued attribute.

A Study of The Binary Code to Intermediate Language Translator for Analysis of Software Weakness (소프트웨어 보안약점 분석을 위한 바이너리 코드-중간언어 변환기에 관한 연구)

  • Lee, Tae-Gue;Lim, Jung-Ho;Baik, Do-Woo;Son, Yunsik;Jeong, Junho;Ko, Kwangman;Oh, Seman
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2017.04a
    • /
    • pp.276-279
    • /
    • 2017
  • 오늘날 사회 전반적인 부분에서 소프트웨어의 비중은 지속적으로 증가하고 있다. 또한 소프트웨어는 점차 대규모화되고 있고 동시에 개인의 중요한 정보 등을 다루는 경우도 매우 늘어나고 있기에 소프트웨어의 보안성 검증은 매주 중요한 문제이다. 그러나 소스코드가 존재하지 않는 라이브러리의 경우 보안성 검증은 매우 어려운 문제로, 이를 해결하기 위해 바이너리 내에 존재하는 보안약점을 검사하기 위한 기술의 개발이 매우 요구되는 상황이며, 이를 위해 중간언어를 활용하여 보안약점을 분석하는 기술이 활발히 논의되고 있다. 본 논문에서는 바이너리 코드내에 존재하는 보안약점을 효과적으로 분석하기 위해서 바이너리 코드로부터 보안약점 분석에 효과적인 중간언어로 변환하는 시스템을 제안한다.

The 3 Dimensional Triangulation Scheme based on the Space Segmentation in WPAN

  • Lee, Dong Myung;Lee, Ho Chul
    • Journal of Engineering Education Research
    • /
    • v.15 no.5
    • /
    • pp.93-97
    • /
    • 2012
  • Most of ubiquitous computing devices such as stereo camera, ultrasonic sensor based MIT cricket system and other wireless sensor network devices are widely applied to the 2 Dimensional(2D) localization system in today. Because stereo camera cannot estimate the optimal location between moving node and beacon node in Wireless Personal Area Network(WPAN) under Non Line Of Sight(NLOS) environment, it is a great weakness point to the design of the 2D localization system in indoor environment. But the conventional 2D triangulation scheme that is adapted to the MIT cricket system cannot estimate the 3 Dimensional(3D) coordinate values for estimation of the optimal location of the moving node generally. Therefore, the 3D triangulation scheme based on the space segmentation in WPAN is suggested in this paper. The measuring data in the suggested scheme by computer simulation is compared with that of the geographic measuring data in the AutoCAD software system. The average error of coordinates values(x,y,z) of the moving node is calculated to 0.008m by the suggested scheme. From the results, it can be seen that the location correctness of the suggested scheme is very excellent for using the localization system in WPAN.

Face Recognition using LDA Mixture Model (LDA 혼합 모형을 이용한 얼굴 인식)

  • Kim Hyun-Chul;Kim Daijin;Bang Sung-Yang
    • Journal of KIISE:Software and Applications
    • /
    • v.32 no.8
    • /
    • pp.789-794
    • /
    • 2005
  • LDA (Linear Discriminant Analysis) provides the projection that discriminates the data well, and shows a very good performance for face recognition. However, since LDA provides only one transformation matrix over whole data, it is not sufficient to discriminate the complex data consisting of many classes like honan faces. To overcome this weakness, we propose a new face recognition method, called LDA mixture model, that the set of alf classes are partitioned into several clusters and we get a transformation matrix for each cluster. This detailed representation will improve the classification performance greatly. In the simulation of face recognition, LDA mixture model outperforms PCA, LDA, and PCA mixture model in terms of classification performance.

An Accelerated Life Test for Burnout of Tungsten Filament of Incandescent Lamp (텅스텐 백열전구의 필라멘트 단선에 대한 가속수명시험)

  • Kim Jin-Woo;Shin Jae-Chul;Kim Myung-Soo;Lee Jae-Kook
    • Transactions of the Korean Society of Mechanical Engineers A
    • /
    • v.29 no.7 s.238
    • /
    • pp.921-929
    • /
    • 2005
  • This paper presents an accelerated life test for burnout of tungsten filament of incandescent lamp. From failure analyses of field samples, it is shown that their root causes are local heating or hot spots in the filament caused by tungsten evaporation and wire sag. Finite element analysis is performed to evaluate the effect of vibration and impact for burnout, but any points of stress concentration or structural weakness are not found in the sample. To estimate the burnout life of lamp, an accelerated life test is planned by using quality function deployment and fractional factorial design, where voltage, vibration, and temperature are selected as accelerating variables. We assumed that Weibull lifetime distribution and a generalized linear model of life-stress relationship hold through goodness of fit test and test for common shape parameter of the distribution. Using accelerated life testing software, we estimated the common shape parameter of Weibull distribution, life-stress relationship, and accelerating factor.

Effects of deficiency location on CFRP strengthening of steel CHS short columns

  • Shahabi, Razieh;Narmashiri, Kambiz
    • Steel and Composite Structures
    • /
    • v.28 no.3
    • /
    • pp.267-278
    • /
    • 2018
  • Structures may need retrofitting as a result of design and calculation errors, lack of proper implementation, post-construction change in use, damages due to accidental loads, corrosion and changes introduced in new editions of construction codes. Retrofitting helps to compensate weakness and increase the service life. Fiber Reinforced Polymer (FRP) is a modern material for retrofitting steel elements. This study aims to investigate the effect of deficiency location on the axial behavior of compressive elements of Circular Hollow Section (CHS) steel short columns. The deficiencies located vertically or horizontally at the middle or bottom of the element. A total of 43 control column and those with deficiencies were investigated in the ABAQUS software. Only 9 of them tested in the laboratory. The results indicated that the deficiencies had a significant effect on the increase in axial deformation, rupture in deficiency zone (local buckling), and decrease in ductility and bearing capacity. The damages of steel columns were responsible for resistance and stiffness drop at deficiency zone. Horizontal deficiency at the middle and vertical deficiency at the bottom of the steel columns were found to be the most critical. Using Carbon Fiber Reinforced Polymer (CFRP) as the most effective material in retrofitting the damaged columns, significantly helped the increase in resistance and rupture control around the deficiency zone.

Mnimizing Duplicates for Hangul Fonts using Composite Glyph of TrueType (트루타입의 합성 글립을 이용한 한글폰트의 중복성 최소화 방법)

  • Kim, Eun-Hui;Jeong, Geun-Ho;Choe, Jae-Yeong
    • Journal of KIISE:Software and Applications
    • /
    • v.26 no.10
    • /
    • pp.1230-1236
    • /
    • 1999
  • 한글 폰트는 서로 상반된 장단점을 가진 조합형 폰트와 완성형 폰트로 구분된다. 완성형 폰트는 조합형과 비교하여 우수한 품질을 가지지만 폰트 제작에 더 많은 시간과 노력을 요구한다. 특히 완성형 폰트는 폰트내의 중복된 자소들의 정보를 중복해서 저장하므로 폰트 저장에 필요한 공간이 더 많이 필요하다. 본 논문에서는 트루타입의 합성 글립(Composite Glyph)을 이용하여 이들 중복된 자소를 최소화한 완성형 폰트를 구성하였다. 실험 결과 생성된 완성형 트루타입 폰트는 기존 완성형 폰트와 유사한 고수준의 품질을 유지하면서, 샘체의 경우 기존 폰트의 57.6%, 명조체의 경우 73.0%의 저장공간을 절약할 수 있었다.Abstract Hangul fonts are classified into 2 categories, complete type and combination type which have their own strength and weakness. The complete type shows a high quality of fonts, while the combination type takes less time, efforts, and storage space to develop. Since the Hangul makes a syllable by combining consonants with vowels, the complete type has many duplicates and requires a large storage space to save them. We present a method that minimizes the duplicates of the complete type of the Hangul using the composite glyph of TrueType. New fonts had high quality and saved storage space, for example Sam saved 57.6% and Myungjo saved 73.0% compared to old.