Techday
This page was machine-translated and may differ from the original. View original

Chronic software awareness shortage extending to security issues; Government to actively address

Google 우선 소스Published2017.09.05 14:38
Korea Hacking and Security Association Holds 9th Secure Korea 2017
Ministry of Science and ICT Establishes Vulnerability Management Center at National Level

The 9th 'Secure Korea 2017' hosted by the Korea Hacking and Security Association was held on the 5th at the National Assembly Library Auditorium.

Song Seong-soo, Director General of the Ministry of Science and ICT, stated in his keynote speech, "In a hyper-connected society where all devices are connected, efforts are needed to collect software and hardware vulnerabilities and prepare security patches. We are constructing a vulnerability management center at the national level."

Song Seong-soo, Director General of the Ministry of Science and ICT


KISA (Korea Internet & Security Agency) is collecting software and hardware vulnerabilities through consultation with the private sector to build vaccine programs, and is consulting with the Cyber Threat Alliance (CTA), known as the U.S. KISA. In particular, it stated, "Since IoT must be embedded differently from computer security, advance preparation is important."

The ongoing unresolved issue highlighted was the lack of awareness regarding the software industry. The problem of providing insufficient compensation while demanding excessive work has transferred to the information security field. Subsequently, it stated that it would actively support task forces (TF) to resolve the issues.

Kim Ju-young, Center Director of KISA, presented on big data activation and personal information protection. To utilize personal information within the current legal framework, consent from the individual is required; however, he noted, "Even when obtaining consent, specific purposes must be determined," pointing out limited usage scope. He also mentioned as a problem that even when personal information is used after de-identification processing, re-identification is possible due to management deficiencies, which can infringe on privacy.

In Japan, an IT Comprehensive Strategy Headquarters has been established to support the establishment of an information bank that collectively manages internet shopping history and other data. While usage methods are being discussed for data circulation and utilization, there is currently no legal basis, so it is planned to establish a data circulation environment review committee and issue related guidelines.


Professor Kim Yong-dae of KAIST introduced threat factor research cases, saying, "When new technology emerges, new countermeasures must be considered."

Using the principle by which Google's autonomous vehicle lidar Velodyne VLP lidar recognizes light, a hallucination phenomenon that makes objects appear to be approaching was implemented with a sensor, suggesting that sudden appearance of objects could cause confusion leading to emergency braking or accidents.

Additionally, he introduced research cases utilizing Mobileye sensors, which occupy 70% of the vehicle camera market, including cases of malfunction when unable to recognize objects in strong light and instances of recognizing YouTube screens as actual vehicles, noting that the sensor environment is poor.

본 기사에 대한 정정·반론·추후보도 청구는 보도 청구 안내를, 그간 게재된 보도문은 정정·반론보도 모아보기를 참고해 주세요.
김자영 기자