-
公开(公告)号:KR1020130020862A
公开(公告)日:2013-03-04
申请号:KR1020110082786
申请日:2011-08-19
Applicant: 고려대학교 산학협력단
CPC classification number: H04L63/1425 , H04L43/16
Abstract: PURPOSE: An apparatus and a method for detecting symptom data of a SCADA(Supervisory Control And Data Acquisition) network are provided to solve a problem for detecting an evasion attack or new type attacks. CONSTITUTION: A storage unit(10) measures self-similarity from one or more attribution information which indicates a traffic state of a network in a normal state. The storage unit stores a set threshold value. A measuring unit(20) measures the self-similarity in real time from one or more attribution information in the network. A determination unit(30) compares the measured real-time self-similarity value with the set threshold value. The determination unit determines an abnormal state of the network. [Reference numerals] (10) Storage unit; (20) Measuring unit; (23) Network; (25) Event log; (30) Determination unit
Abstract translation: 目的:提供一种用于检测SCADA(监控和数据采集)网络的症状数据的设备和方法,以解决检测逃避攻击或新型攻击的问题。 构成:存储单元(10)从一个或多个归属信息测量表示正常状态的网络的通信状况的自相似性。 存储单元存储设定的阈值。 测量单元(20)从网络中的一个或多个归属信息实时测量自相似性。 确定单元(30)将所测量的实时自相似度值与设定的阈值进行比较。 确定单元确定网络的异常状态。 (附图标记)(10)存储单元 (20)测量单元; (23)网络; (25)事件日志; (30)确定单位
-
公开(公告)号:KR101857691B1
公开(公告)日:2018-05-15
申请号:KR1020160134133
申请日:2016-10-17
Applicant: 고려대학교 산학협력단
Abstract: 유클리디언거리측정기법기반차량이상징후탐지방법이개시된다. 상기유클리디언거리측정기법기반기법기반징후탐지방법은차량이상징후탐지장치에서수행되고, 일정구간안에있는 n(n은 1 이상의자연수)대의차량(k)에대한차량상태데이터를수집하는단계, 상기차량상태데이터중에서데이터값의변동이없는데이터에대한필터링을수행하여필터링된차량상태데이터를생성하는단계, 상기필터링된차량상태데이터의요인분석을통하여차원이축소된 m(m은 2 이상의자연수)개의세부요인을추출하고, 상기세부요인각각에대한상태데이터를생성하는단계, 교통현황정보를이용하여차량이상탐지를위한기준값을추출하는단계, 상기기준값과분석대상차량의상기세부요인전체에대한상태데이터와의유클리디언거리(D, 이하 '제1 거리'라고도함)를계산하는단계, 상기제1 거리를이용하여이상을탐지하는단계, 상기기준값과분석대상차량의상기세부요인각각에대한상태데이터와의세부요인기준유클리디언거리(이하 '제2 거리'라고도함)를계산하는단계, 상기제2 거리를이용하여상기세부요인각각에대한이상을탐지하는단계, 및차량이상이탐지된경우, 차량이상의원인에대한정보를포함하는이상탐지알림을제공하는단계를포함한다.
-
公开(公告)号:KR101853676B1
公开(公告)日:2018-05-03
申请号:KR1020160104936
申请日:2016-08-18
Applicant: 고려대학교 산학협력단
Abstract: 차량의침입탐지방법이개시된다. 상기침입탐지방법은차량의침입탐지장치에서수행되고, 차량내부네트워크의 CAN 메시지들을모니터링하는단계, CAN 메시지의 CAN ID를이용하여차량내부네트워크에서사용되는모든 CAN ID 각각에대한메시지발생수를카운트하는단계, 상기차량내부네트워크에서사용되는모든 CAN ID 각각에대한메시지발생수를이용하여엔트로피(H')를계산하는단계, 상기엔트로피(H')가미리설정된제1 공격에대한임계값보다작은지판단하는단계. 및상기엔트로피(H')가상기제1 공격에대한임계값보다작으면운전자에게제1 공격발생에대한알림을제공하는단계를포함한다.
-
公开(公告)号:KR101725450B1
公开(公告)日:2017-04-11
申请号:KR1020150148751
申请日:2015-10-26
Applicant: 고려대학교 산학협력단
Abstract: 본발명은웹 페이지에안전성을제공하기위한평판관리시스템및 방법에관한것으로서, 일실시예에따른평판관리시스템은등록되는웹 페이지의바이너리소스를수집하는수집부, 상기수집한바이너리소스로부터퍼지해시(Fuzzy hash) 값을생성하는생성부, 상기생성된퍼지해시(Fuzzy hash) 값과해시데이터베이스서버에기입력된퍼지해시(Fuzzy hash) 값과의유사도를비교하여비교값을생성하는비교부, 및상기생성된비교값에기초하여상기웹 페이지의평판점수를산출하는산출부를포함한다.
Abstract translation: 信誉管理系统和方法技术领域本发明涉及用于向网页提供安全性的信誉管理系统和方法,并且根据示例性实施例的信誉管理系统包括用于收集注册网页的二进制源的收集单元, 生成单元,用于生成模糊散列值,并且将生成的模糊散列值与之前输入到散列数据库服务器的模糊散列值进行比较以生成比较值 以及计算单元,用于基于生成的比较值计算网页的信誉评分。
-
公开(公告)号:KR101657667B1
公开(公告)日:2016-09-20
申请号:KR1020140120951
申请日:2014-09-12
Applicant: 고려대학교 산학협력단
IPC: G06F21/56
Abstract: 본발명은앱의분석에기초한데이터로부터앱의하나이상의악성행위(operation)를식별할수 있는행위프로파일을생성하는행위프로파일링모듈및 행위프로파일로부터분석되는앱의악성행위패턴에따라앱을분류하는행위범주화모듈을포함하는악성앱 분류장치및 악성앱 분류방법에관한것이다. 본발명을이용함으로써행위기반의프로파일링기법을적용하여높은정확도로모바일악성앱을탐지하고분류할수 있는효과가있다.
-
公开(公告)号:KR1020130067093A
公开(公告)日:2013-06-21
申请号:KR1020110133940
申请日:2011-12-13
Applicant: 고려대학교 산학협력단
Abstract: PURPOSE: A smart meter is provided to improve the safety and security by making it difficult to completely extract data related to the privacy of a user from a memory even when exposed or damaged. CONSTITUTION: A meter-reading part(110) reads usage information of energy consumed at the consumer side. A storage part(120) includes one or more memories and stores data containing the energy usage information read from the meter-reading part and a security key to encrypt the information. A communications part(140) transmits data containing the energy usage information to an AMI(Advanced Metering Infrastructure) server and receives data transmitted from the AMI server. A control part(130) periodically or non-periodically changes the memory arrangement structure of the storage part and stores the changed memory arrangement structure in a memory management table. [Reference numerals] (AA) Start; (BB) End; (S105) Detect and store metering data; (S110) Is data transmit period approached?; (S115) Is data management period approached?; (S120) Rearrange bank, bit command, or word of memory; (S125) Change memory management table; (S130) Read and transmit stored metering data based on memory management table; (S135) Is process ended?
Abstract translation: 目的:提供智能电表,以便即使暴露或损坏也难以从存储器中完全提取与用户隐私有关的数据,从而提高安全性和安全性。 规定:抄表部分(110)读取消费方消耗的能量的使用信息。 存储部件(120)包括一个或多个存储器,并且存储包含从读表部件读取的能量使用信息的数据和用于加密信息的安全密钥。 通信部件(140)将包含能量使用信息的数据发送到AMI(高级计量基础设施)服务器,并接收从AMI服务器发送的数据。 控制部件周期地或非周期性地改变存储部件的存储器布置结构,并将改变的存储器布置结构存储在存储器管理表中。 (附图标记)(AA)开始; (BB)结束; (S105)检测并存储计量数据; (S110)数据传输周期是否接近? (S115)数据管理期是否接近? (S120)重新排列存储区,位命令或存储单词; (S125)更改内存管理表; (S130)基于内存管理表读取存储的计费数据; (S135)进程结束了吗?
-
37.
公开(公告)号:KR101249395B1
公开(公告)日:2013-04-09
申请号:KR1020110136293
申请日:2011-12-16
Applicant: 고려대학교 산학협력단
Abstract: PURPOSE: A power control apparatus using anonymous data in a telemetering system, a method thereof and a system thereof are provided to secure the stability of inspected data transmitted on a smart grid environment and to effectively manage and control electricity, thereby preventing electrical waste and blocking the invasion of privacy due to hacking of the inspected data. CONSTITUTION: A power control apparatus using anonymous data receives inspected data from a power terminal device(100) and includes a smart meter(200) making the inspected data anonymous and transmitting the anonymous data, a data managing device(300) receiving the anonymous data and transmitting the anonymous data at the request for transmission of the inspected data, and a power control system(400) receiving and classifying the anonymous data, predicting future circumstances through data mining, and controlling the power distribution and production. [Reference numerals] (10) Wireless network/internet network; (100) Power terminal device; (200) Smart meter; (300) Meter data managing device; (400) Power control system; (AA,BB) Anonymity managing unit; (CC) Data mining unit;
Abstract translation: 目的:提供遥测系统中使用匿名数据的电力控制装置及其方法及其系统,以确保在智能电网环境中传输的检查数据的稳定性,并有效地管理和控制电力,从而防止电力浪费和阻塞 由于被检查的数据被黑客入侵隐私。 构成:使用匿名数据的电力控制装置接收来自电力终端装置(100)的检查数据,并且包括将检查数据匿名化并发送匿名数据的智能电表(200),接收匿名数据的数据管理装置(300) 以及在所述检查数据的发送请求下发送所述匿名数据;以及功率控制系统(400),其接收和分类所述匿名数据,通过数据挖掘预测未来情况,以及控制所述配电和生产。 (附图标记)(10)无线网络/互联网; (100)电源终端设备; (200)智能仪表; (300)仪表数据管理装置; (400)电力控制系统; (AA,BB)匿名管理单位; (CC)数据挖掘单位;
-
公开(公告)号:KR101231626B1
公开(公告)日:2013-02-08
申请号:KR1020110099978
申请日:2011-09-30
Applicant: 고려대학교 산학협력단
CPC classification number: G06Q50/10 , G06F21/121 , G06F21/554 , G06F21/566
Abstract: PURPOSE: An account stealing prevention method using the log information of an online game is provided to analyze log information generated in the game progress of a user, thereby easily finding whether or not the account of the user is stolen. CONSTITUTION: One or more pieces of log information are collected(S210). One or more pieces of user unique information and one or more pieces of behavior information are obtained from the log information(S220). The user unique information is compared with the stored reference user unique information, and the identity confirmation of a user is performed(S230). The behavior information is analyzed, and whether or not game money is deducted(S240) is examined. If the game money is deducted, the account of the user is determined as stolen(S250). [Reference numerals] (AA) Start; (BB) Yes; (CC) No; (DD) Selection; (EE) End; (S210) Collecting one or more pieces of log information generated by a game play; (S220) Obtaining user unique information and behavior information from the log information; (S230) Is the user unique information same or matched with the stored user unique information?; (S240) Analyzing the behavior information obtained from the log information, and confirming the deduction of game money of a user; (S250) Determining the account piracy of the user; (S260) Blocking the access of the user terminal with IP address information in the user unique information to a game server; (S270) Delivering a warning sound according to the account piracy to a user terminal; (S280) Performing additional authentication for the user by using certificate or I-PN information
Abstract translation: 目的:提供使用在线游戏的日志信息的帐户窃取预防方法,以分析用户的游戏进度中生成的日志信息,从而容易地判断用户帐号是否被盗。 规定:收集一条或多条日志信息(S210)。 从日志信息中获得一条或多条用户唯一信息和一条或多条行为信息(S220)。 将用户唯一信息与存储的参考用户唯一信息进行比较,并且执行用户的身份确认(S230)。 分析行为信息,并且是否扣除游戏币(S240)。 如果游戏币被扣除,则用户的帐户被确定为被盗(S250)。 (附图标记)(AA)开始; (BB)是的; (CC)否; (DD)选择; (EE)结束; (S210)收集由游戏生成的一条或多条日志信息; (S220)从日志信息中获取用户唯一的信息和行为信息; (S230)用户的唯一信息是否与存储的用户唯一信息相同? (S240)分析从日志信息获得的行为信息,并确认用户的游戏币的扣除; (S250)确定用户帐号盗版; (S260)使用用户唯一信息中的IP地址信息来阻止用户终端对游戏服务器的访问; (S270)根据帐户盗版向用户终端发送警告声; (S280)使用证书或I-PN信息对用户执行附加认证
-
公开(公告)号:KR1020130007227A
公开(公告)日:2013-01-18
申请号:KR1020110064558
申请日:2011-06-30
Applicant: 고려대학교 산학협력단
CPC classification number: G07F17/3241 , A63F13/75 , G06F21/121 , G06Q50/10
Abstract: PURPOSE: An illegal play detection system using log information in an online game and a method thereof are provided to analyze a lot of log information, thereby detecting whether or not the online game is played by an automatic play program. CONSTITUTION: An input module(110) inputs one or more pieces of log information generated by a computer game of a user from a server. An analysis module(120) analyzes the computer game of the user. A comparison module(130) compares the log information with stored reference log information. When a measured value of the log information exceeds a threshold value of the reference log information, a determination module(140) determines illegality for the computer game of the user. [Reference numerals] (110) Input module; (120) Analysis module; (130) Comparison module; (140) Determination module; (150) Notification module; (160) Storage Module
Abstract translation: 目的:提供一种在线游戏中使用日志信息的非法播放检测系统及其方法,用于分析大量日志信息,从而检测是否通过自动播放程序播放在线游戏。 构成:输入模块(110)从服务器输入由用户的计算机游戏生成的一条或多条日志信息。 分析模块(120)分析用户的计算机游戏。 比较模块(130)将日志信息与存储的参考日志信息进行比较。 当日志信息的测量值超过参考日志信息的阈值时,确定模块(140)确定用户的计算机游戏的非法性。 (附图标记)(110)输入模块; (120)分析模块; (130)比较模块; (140)确定模块; (150)通知模块; (160)存储模块
-
公开(公告)号:KR101196287B1
公开(公告)日:2012-11-06
申请号:KR1020110133939
申请日:2011-12-13
Applicant: 고려대학교 산학협력단
CPC classification number: H04L12/2825 , H04Q9/00 , H04Q2209/60 , Y02B70/325 , Y02B90/244 , Y02B90/245 , Y04S20/228 , Y04S20/327 , Y04S20/40
Abstract: PURPOSE: An energy management device and a device registration method thereof are provided to control energy demand of a user by analyzing an energy usage pattern of the user according to electricity usage data which is metered in a smart meter. CONSTITUTION: An energy management device comprises a storing unit(310), a control unit(320), a user interface(330), and a communications unit(340). The storing unit comprises data database and device management database. The control unit registers a smart meter based on user authentication and obtains a plurality of device lists controlled by a home server and detailed data. The control unit maps the plurality of device lists and the detailed data with the smart meter and resisters it. The control unit collects energy usage data and device management data and stores it in the storing unit. The control unit mixes the energy usage data and the device management data. The control unit analyzes energy usage pattern according to a device and manages energy supply and demand based on an analyzed result. The communications unit communicates with the smart meter and the home server. [Reference numerals] (310) Storing unit; (320) Control unit; (321) Apparatus registration unit; (322) Synchronization unit; (330) User interface; (341) First communications unit; (342) Second communications unit; (AA) Device profile DB; (BB) Metering data DB; (CC) Apparatus management DB
Abstract translation: 目的:提供一种能量管理装置及其装置注册方法,用于通过根据在智能电表中计量的用电数据分析用户的能量使用模式来控制用户的能量需求。 构成:能量管理装置包括存储单元(310),控制单元(320),用户界面(330)和通信单元(340)。 存储单元包括数据数据库和设备管理数据库。 控制单元基于用户认证注册智能电表,并获得由家庭服务器控制的多个设备列表和详细数据。 控制单元用智能电表将多个装置列表和详细数据进行映射,并对其进行阻止。 控制单元收集能量使用数据和设备管理数据,并将其存储在存储单元中。 控制单元混合能量使用数据和设备管理数据。 控制单元根据设备分析能量使用模式,并根据分析结果对能源供需进行管理。 通信单元与智能电表和家庭服务器通信。 (附图标记)(310)存储单元; (320)控制单元; (321)设备登记单元; (322)同步单元; (330)用户界面; (341)第一通信单元; (342)第二通信单元; (AA)设备配置文件DB; (BB)测光数据DB; (CC)设备管理DB
-
-
-
-
-
-
-
-
-