DOI QR코드

DOI QR Code

Countermeasures of Privacy Disclosure Vulnerability in Data Transfer Section

데이터 전송 구간에서 개인정보노출 취약점과 대응방안

  • 허건일 (서울과학기술대학교 글로벌융합산업공학과) ;
  • 강지원 (경기대학교 정보보호학과) ;
  • 박원형 (극동대학교 사이버안보학과)
  • Received : 2012.10.27
  • Accepted : 2013.03.03
  • Published : 2013.03.31

Abstract

As the kind of IT service on the internet is more and more diversifying and increasing, IT service's adverse effects also consistently occurring. Among them the incident of private information exposure is becoming social issues, especially the exposure of private information entered on-line resume is very serious. This paper investigates whether or not data is encrypted in data transfer section of major on-line job-search sites of Korea by using the packet analyzer such as "Wireshark." This paper judges whether or not the vulnerability, private information exposure, exists from the result of the investigation above and suggests countermeasures.

Keywords

References

  1. 김원 외 7명, "2011년 인터넷이용실태조사 최종보고서", 한국인터넷진흥원, 2012.
  2. 랭키닷컴, http://www.rankey.com/
  3. 와이어샤크, http://www.wireshark.org/about.html.
  4. 정보통신망법 개정에 따른 주민등록번호 수집 제한, http://urin79.com/blog/13590884.
  5. 정보통신망 이용촉진 및 정보보호 등에 관한 법률, 국가법령정보센터, http://www.law.go. kr/lsInfoP.do?lsiSeq = 123210&efYd = 201208 18#0000.
  6. 카인과아벨, http://www.oxid.it/cain.html.
  7. 한국인터넷진흥원, http://seed.kisa.or.kr/kor/smart/smartPhoneB.jsp.
  8. Freier, A. O., "The SSL Protocol version3.0", internet draft, 1996
  9. Sherif, M. H., A. Rhrouchni, A. Y. Gaid, and F. Farazmandnia, "SET and SSL: electronic payments on the Inte Sernet", ISCC Proceedings, Third IEEE Symposium, (1998) pp.353-358.
  10. Thomas, S., "SSL and TLS essential", John Wiley and Sons, inc, 2000.