• Title/Summary/Keyword: strength of security

Search Result 284, Processing Time 0.03 seconds

A Study on KSI-based Authentication Management and Communication for Secure Smart Home Environments

  • Ra, Gyeong-Jin;Lee, Im-Yeong
    • KSII Transactions on Internet and Information Systems (TIIS)
    • /
    • v.12 no.2
    • /
    • pp.892-905
    • /
    • 2018
  • In smart home environment, certificate based signature technology is being studied by communication with Internet of Things(IoT) device. However, block - chain technology has attracted much attention because of the problems such as single - point error and management overhead of the trust server. Among them, Keyless Signature Infrastructure(KSI) provides integrity by configuring user authentication and global timestamp of distributed server into block chain by using hash-based one-time key. In this paper, we provide confidentiality by applying group key and key management based on multi - solution chain. In addition, we propose a smart home environment that can reduce the storage space by using Extended Merkle Tree and secure and efficient KSI-based authentication and communication with enhanced security strength.

Optical Asymmetric Cryptography Modifying the RSA Public-key Protocol

  • Jeon, Seok Hee;Gil, Sang Keun
    • Current Optics and Photonics
    • /
    • v.4 no.2
    • /
    • pp.103-114
    • /
    • 2020
  • A new optical asymmetric cryptosystem is proposed by modifying the asymmetric RSA public-key protocol required in a cryptosystem. The proposed asymmetric public-key algorithm can be optically implemented by combining a two-step quadrature phase-shifting digital holographic encryption method with the modified RSA public-key algorithm; then two pairs of public-private keys are used to encrypt and decrypt the plaintext. Public keys and ciphertexts are digital holograms that are Fourier-transform holograms, and are recorded on CCDs with 256-gray-level quantized intensities in the optical architecture. The plaintext can only be decrypted by the private keys, which are acquired by the corresponding asymmetric public-key-generation algorithm. Schematically, the proposed optical architecture has the advantage of producing a complicated, asymmetric public-key cryptosystem that can enhance security strength compared to the conventional electronic RSA public-key cryptosystem. Numerical simulations are carried out to demonstrate the validity and effectiveness of the proposed method, by evaluating decryption performance and analysis. The proposed method shows feasibility for application to an asymmetric public-key cryptosystem.

An Analytic Study on Early aged Freezing Damage Prevention and Thermal Crack Control of Concrete in Cold-Weathering Mat Foundation Construction (동절기 매트기초공사시 콘크리트의 초기동해방지 및 온도충격제어에 관한 해석적 연구)

  • 이도범;김효락;박지훈;최일호
    • Proceedings of the Korea Concrete Institute Conference
    • /
    • 2001.05a
    • /
    • pp.807-812
    • /
    • 2001
  • This study is peformed for checking the limitation and application of each curing/heating methods on cold-weathering mat foundation construction, considering temperature control, early strength security and temperature declination range limit, by means of concrete material properties and thermal analysis technique that were published previously. In the result of this analysis, we checked the open air temperature and mat depth that are possible to apply each curing/heating methods on cold-weathering construction and found curing/heating time of each methods that is able to prevent early aged freezing damage and thermal crack

  • PDF

An Authentication Mechanism Based on Clustering Architecture in Mobile Ad Hoc Networks (이동 Ad Hoc 네트워크 환경에서 클러스터링 구조에 기반한 인증 메커니즘)

  • Lee, Tao;Shin, Young-Tae
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2005.05a
    • /
    • pp.1461-1464
    • /
    • 2005
  • In contrast with conventional networks, mobile ad hoc networks usually do not provide online access to trusted authorities or to centralized servers, and they exhibit frequent partitioning due to link and node failures and node mobility. For these reasons, traditional security solutions that require online trusted authorities or certificate repositories, but those are not well-suited for securing ad hoc networks. Moreover, a fundamental issue of securing mobile ad hoc networks is to ensure mobile nodes can authenticate each other. Because of its strength and efficiency, public key and digital signature is an ideal mechanism to construct the authentication service. Although this is already mature in the internet application, providing public key based authentication is still very challenging in mobile ad hoc networks. In this paper I propose a secure public key authentication service based on clustering model and trust model to protect nodes from getting false public keys of the others efficiently when there are malicious nodes in the network.

  • PDF

Wavelet-Based Digital Image Watermarking by Using Lorenz Chaotic Signal Localization

  • Panyavaraporn, Jantana;Horkaew, Paramate
    • Journal of Information Processing Systems
    • /
    • v.15 no.1
    • /
    • pp.169-180
    • /
    • 2019
  • Transmitting visual information over a broadcasting network is not only prone to a copyright violation but also is a forgery. Authenticating such information and protecting its authorship rights call for more advanced data encoding. To this end, electronic watermarking is often adopted to embed inscriptive signature in imaging data. Most existing watermarking methods while focusing on robustness against degradation remain lacking of measurement against security loophole in which the encrypting scheme once discovered may be recreated by an unauthorized party. This could reveal the underlying signature which may potentially be replaced or forged. This paper therefore proposes a novel digital watermarking scheme in temporal-frequency domain. Unlike other typical wavelet based watermarking, the proposed scheme employed the Lorenz chaotic map to specify embedding positions. Effectively making this is not only a formidable method to decrypt but also a stronger will against deterministic attacks. Simulation report herein highlights its strength to withstand spatial and frequent adulterations, e.g., lossy compression, filtering, zooming and noise.

Determinants of Click-Through Intention as Affiliate Marketing and the Moderating Effect of Tie Strength in SNS (SNS에서 제휴마케팅 관점의 클릭의도에 영향을 주는 요인과 연대강도의 조절효과)

  • Mu, Huimin;Joo, Jaehun
    • Information Systems Review
    • /
    • v.15 no.3
    • /
    • pp.89-110
    • /
    • 2013
  • Affiliate marketing is classified as a type of online advertising, where merchants share a percentage of sales revenue generated by each customer, who visited the company's website via a content provider. Content provider, referred to as an affiliate, usually places an online advertisement at its website. For the past few years, there have been a lot of companies or individuals who participate in affiliate marketing. Generally speaking, most of them have websites and post the merchant's ads on their own websites. However, building and maintaining websites have some technology requirements. The widespread use of Social Network Service (SNS), especially microblog-based SNS such as Twitter and Sina Weibo, provides opportunities for individuals who want to be content providers of affiliate marketing. Since information spreads quickly on microblog-based SNS and the easy in targeting customers, it is both an effective and an efficient tool to do affiliate marketing. The relationship between a content provider and the potential customer, which is referred as "tie strength", is quite an important issue in such situation. This paper proved that service characteristics of the microblog-based SNS (security, community drivenness and navigability) and content quality all had positive influence on click-through intention, while tie strength played a moderating role. For the group with strong tie, tie strength is crucial in influencing click-through intention. While for the weak tie group, content quality was very important. Finally, we proposed some implications for both academics and practitioners.

  • PDF

Secure Certificates Duplication Method Among Multiple Devices Based on BLE and TCP (BLE 및 TCP 기반 다중 디바이스 간 안전한 인증서 복사 방법)

  • Jo, Sung-Hwan;Han, Gi-Tae
    • KIPS Transactions on Computer and Communication Systems
    • /
    • v.7 no.2
    • /
    • pp.49-58
    • /
    • 2018
  • A certificate is a means to certify users by conducting the identification of the users, the prevention of forgery and alteration, and non-repudiation. Most people use an accredited certificate when they perform a task using online banking, and it is often used for the purpose of proving one's identity in issuing various certificates and making electronic payments in addition to online banking. At this time, the issued certificate exists in a file form on the disk, and it is possible to use the certificate issued in an existing device in a new device only if one copies it from the existing device. However, most certificate duplication methods are a method of duplication, entering an 8-16 digit verification code. This is inconvenient because one should enter the verification code and has a weakness that it is vulnerable to security issues. To solve this weakness, this study proposes a method for enhancing security certificate duplication in a multi-channel using TCP and BLE. The proposed method: 1) shares data can be mutually authenticated, using BLE Advertising data; and 2) encrypts the certificate with a symmetric key algorithm and delivers it after the certification of the device through an ECC-based electronic signature algorithm. As a result of the implementation of the proposed method in a mobile environment, it could defend against sniffing attacks, the area of security vulnerabilities in the existing methods and it was proven that it could increase security strength about $10^{41}$ times in an attempt of decoding through the method of substitution of brute force attack existing method.

A Deterministic Method of Large Prime Number Generation (결정론적인 소수 생성에 관한 연구)

  • Park, Jung-Gil;Park, Bong-Joo;Baek, Ki-Young;Chun, Wang-Sung;Ryou, Jae-Cheol
    • The Transactions of the Korea Information Processing Society
    • /
    • v.7 no.9
    • /
    • pp.2913-2919
    • /
    • 2000
  • It is essential to get large prime numbers in the design of asymmetric encryption algorithm. However, the pseudoprime numbers with high possibility to be primes have been generally used in the asymmetric encryption algorithms, because it is very difficult to find large deterministic prime numbers. In this paper, we propose a new method of deterministic prime number generation. The prime numbers generated by the proposed method have a 100% precise prime characteristic. They are also guaranteed reliability, security strength, and an ability of primitive element generation.

  • PDF

Implementation of Vulnerable Analysis Script for Security Strength of Chrome OS (크롬 OS의 보안 강화를 위한 취약점 분석 스크립트 구현)

  • Lee, SeulGi;Yu, HeonChang
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2016.10a
    • /
    • pp.246-249
    • /
    • 2016
  • 크롬 OS는 온라인에 연결된 상태라면 시간과 장소의 제약 없이 인터넷에 연결해서 사용자 중심의 개인 환경을 제공하는 웹 OS이다. 크롬 OS의 특징이라면 구글 계정으로 접속하여 원하는 APP 설치나 다양한 구글의 온라인 서비스를 자유롭게 이용할 수 있다는 점을 꼽을 수 있다. 특히 기존의 윈도우나 리눅스와는 달리 사용자가 OS 전반에 걸친 설정을 직접 제어할 필요가 없다는 점이 획기적이다. 하지만 웹 OS 임에도 불구하고 이에 대한 보안 대비책이 전혀 마련되어 있지 않다. 따라서 이같은 보안 위협에 대비하기 위해 본 논문은 취약점 분석 쉘 스크립트 구현을 통해 취약점 탐지와 보안 강화를 통한 성능 개선 방안을 제안한다.

An Analysis and Assessment on China's Maritime Security Strategy (중국 해양안보전략에 관한 분석 및 평가 - 아더 라이케의 전략 분석틀을 중심으로 -)

  • Kim, Hyun-Seung;Shin, Jin
    • Strategy21
    • /
    • s.45
    • /
    • pp.33-59
    • /
    • 2019
  • There have many research papers to see China's evolution of maritime strategy and naval modernization in terms of its naval mind-set. However, this article focuses on assessing how China uses its all sorts of maritime strength to achieve 'a building maritime great power.' The aim of the article is to introduce a new perspective to this debate by analysing China's diversified ma maritime capabilities and a new way of implementation in maritime security strategy. In recent years, China has been developing not only unpredictable maritime military capabilities but also maritime supporting forces - Coast Guard and Maritime Militia. And recently China adopted up-to-date operational concept aimed at gaining military superiority in Asia-Pacific waters. By taking salami slicing strategy, gray zone strategy and cabbage strategy, China has been trying to exercise surpassing influences in regional maritime area, also in western Pacific region. This article provides a stepping stone to comprehend the aspect of China's recent maritime strategic actions, especially in Yellow Sea. In conclusion, this article suggests some policy recommendations for countering China's coercive maritime strategy. First, Korea should make sure a strategic concept of maritime security, instead of land warfare focused strategic concept. Second, it is needed to set up suitable naval forces for actively responding to neighbor nation's offensive actions.