본문 바로가기 주메뉴 바로가기
국회도서관 홈으로 정보검색 소장정보 검색

초록보기

인터넷 익스플로러의 서비스 종료 이후 ActiveX의 사용이 종료됨에 따라 Non-ActiveX 정책이 확산되었다. Non-ActiveX 정책을 바탕으로 정해진 웹 페이지 표준 규약으로 HTML5가 채택되어 사용되고 있다. W3C(World Wide Web Consortium)에서 개발된 HTML5는 다양한 기능을 플러그인 없이 브라우저만으로 쉽게 사용할 수 있고, 기존 HTML에 비해 다양한 요소와 속성이 추가되었으며 API를 통해 더 나아진 웹 응용 환경을 제공하고 있다. 그러나 새로 추가된 기술들로부터 새로운 보안 취약점이 발견되었고, 이러한 취약점으로 인하여 공격 범위가 넓어졌다. HTML5가 적용된 웹 사이트에서 발생할 수 있는 보안 취약점을 찾기 위한 연구가 부족하다.

본 논문은 최근 5년 이내에 플러그인이 제거된 공공기관 웹 페이지를 대상으로 웹 페이지의 보안 취약점을 탐지하고 분석하여 웹 취약점을 가지는 태그 및 속성을 탐지하는 모델을 제안한다. 제안된 모델을 웹 페이지에 적용한다면 플러그인 제거 후에도 현재까지 웹 페이지의 웹 표준 준수 여부 및 취약점을 분석할 수 있어 신뢰성 있는 웹 서비스를 제공할 수 있다. 그리고 해킹 피해로 인한 금전적, 물리적 문제들을 예방하는 데 도움이 될 것으로 기대된다.

After the end of the service of Internet Explorer, the use of ActiveX ended, and the Non-ActiveX policy spread. HTML5 is used as a standard protocol for web pages established based on the Non-ActiveX policy. HTML5, developed in the W3C(World Wide Web Consortium), provides a better web application experience through API, with various elements and properties added to the browser without plug-in. However, new security vulnerabilities have been discovered from newly added technologies, and these vulnerabilities have widened the scope of attacks. There is a lack of research to find possible security vulnerabilities in HTML5-applied websites.

This paper proposes a model for detecting tags and attributes with web vulnerabilities by detecting and analyzing security vulnerabilities in web pages of public institutions where plug-ins have been removed within the last five years. If the proposed model is applied to the web page, it can analyze the compliance and vulnerabilities of the web page to date even after the plug-in is removed, providing reliable web services. And it is expected to help prevent financial and physical problems caused by hacking damage.

권호기사

권호기사 목록 테이블로 기사명, 저자명, 페이지, 원문, 기사목차 순으로 되어있습니다.
기사명 저자명 페이지 원문 목차
(A) combined greedy neighbor generation method of local search for the traveling salesman problem Yongho Kim, Junha Hwang p. 1-8

Context-based prompt selection methodology to enhance performance in prompt-based learning Lib Kim, Namgyu Kim p. 9-21

(A) design and implementation of the deep learning-based senior care service application using AI speaker Mun Seop Yun, Sang Hyuk Yoon, Ki Won Lee, Se Hoon Kim, Min Woo Lee, Ho-Young Kwak, Won Joo Lee p. 23-30

Generative AI parameter tuning for online self-directed learning Jin-Young Jun, Youn-A Min p. 31-38

Missing value imputation technique for water quality dataset Jin-Young Jun, Youn-A Min p. 39-46

Audio generative AI usage pattern analysis by the exploratory study on the participatory assessment process Hanjin Lee, Yeeun Lee p. 47-54

Implementation of a thin film hydroponic cultivation system using HMI Gyu-Seok Lee, Tae-Sung Kim, Myeong-Chul Park p. 55-62

Development of an immersive virtual reality-based bathroom self-remodeling system Mi-Young Song p. 63-72

(A) study on strategic development approaches for cyber seniors in the information security industry Seung Han Yoon, Ah Reum Kang p. 73-82

Propose a static web standard check model Hee-Yeon Won, Jae-Woong Kim, Young-Suk Chung p. 83-89

(A) study on the perception of sports psychological counseling Min-Woo Jeon, Seong-Hoon An p. 91-103

(The) effect of maladaptive perfectionism, self-leadership, and social support on nursing students’ clinical practice stress Mi-Sook Park, Mi-Jin You p. 105-114

Implementation of a vibration notification system to support driving for drivers with cognitive delay impairment Gyu-Seok Lee, Tae-Sung Kim, Myeong-Chul Park p. 115-123

(A) study on the impact of impoverished and disabled women's entry into the labor market : focusing on the level and type of social capital Gull Lim p. 125-134

(A) study on the impact of transactional leadership on job performance and job satisfaction : the mediating effect of job engagement Eun-Jin Choi, Sang-Chul Lee, Yang-Kyun Kim p. 135-143

(A) study on the development of training model by enforcement of the IP Code(SOLAS Chapter XV) MoonGyo Cho, JeongMin Kim p. 145-153

Empirical study for causal relationship between weather and e-commerce purchase behavior Hyun-Jin Yeo p. 155-160

Antecedents affecting the information privacy concerns in personalized recommendation service of OTT Yujin Kim, Hyung-Seok Lee p. 161-175

Sensibility by weather and e-commerce purchase behavior Hyun-Jin Yeo p. 177-182

Study on domestic trends of green fuel policy Sangseop Lim, Sang-Mi Im, Seok-Hun Kim p. 183-189