DOI QR코드

DOI QR Code

A Study on Verification of Security Threat and Method of Response for Multimedia Broadcasting and Communication Convergence Services

멀티미디어 방송통신 융합서비스에 대한 보안위협 검증 및 대응방안 연구

  • Received : 2013.03.29
  • Accepted : 2013.06.07
  • Published : 2013.06.30

Abstract

Multimedia Broadcast communication convergence services are broadcast communication convergence services new form that combines a platform technology for driving the application services of various media-related Internet and TV devices. It is possible to mounted the embedded OS of TV existing technology and to support a variety of smart application services to a TV technology evolved form equipped with various platforms on the OS. The services that are fused in this way, multi-media broadcasting communication convergence new services Open IPTV, Smart TV, mobile IPTV, and N-screen, are services actively focusing on three companies domestic services. However, in order to use the software to connect to the Internet for the provision of services, is inherent software vulnerabilities or the Internet. These vulnerabilities can lead to serious security incidents. Therefore, in this paper, or be able to derive the potential security threats that occur in multimedia broadcasting service environment based on security threats and vulnerabilities of existing threats lead to such security incidents in fact, the security it was carried out through a mock hacking validation for threats. It was also suggested necessary technical security measures that can be protect against security threats revealed by using the verification result through the penetration testing. Has been presented countermeasures in fusion communication service environment of multimedia broadcasting by using these results.

멀티미디어 방송통신 융합서비스는 TV 디바이스에 다양한 인터넷 및 미디어 관련 응용 서비스들을 구동하기 위한 플랫폼 기술을 접목한 새로운 형태의 방송통신 융합서비스이다. 기존의 TV 기술에 임베디드 OS를 탑재하고, 다양한 스마트 응용 서비스를 지원할 수 있도록 하기 위해 OS 위에서 다양한 플랫폼 등을 탑재한 형태의 진화된 TV 기술이라고 할 수 있다. 이렇게 융합된 서비스는 Open IPTV, Smart TV, 모바일 IPTV, N-스크린 등의 멀티미디어 방송통신 융합 신규 서비스가 국내 서비스 3사를 주축으로 활발히 서비스 되고 있다. 하지만 서비스 제공을 위해 인터넷에 접속하고 소프트웨어를 사용하기 때문에 인터넷과 소프트웨어의 취약성을 내제하고 있다. 이러한 취약성은 심각한 보안 사고로 이어질 수 있다. 따라서 본 논문에서는 기존의 보안 위협들과 취약성들을 바탕으로 멀티미디어 방송 서비스 환경에서 발생 가능한 보안 위협들을 도출하였고, 실제로 위협이 보안 사고 등으로 이어질 수 있는지 보안 위협에 대한 검증을 모의 해킹을 통해 실시하였다. 이러한 결과를 이용하여 멀티미디어 방송 융합통신 융합서비스 환경에서의 대응 방안을 제시하였다.

Keywords

References

  1. Jongyoul Park, Jin-young Moon, Eui-Hyun Paik "Module based Security system for a Convergence IPTV Service" Korean Institute of Information Technology Spring Conference, 2010
  2. SooHong Park, Mobile IPTV And Standard issue, OSIA Standard & Technology Review, 2007 27 (65)
  3. ChiDeuk Ahn, Broadcasting and Communications Convergence Technology Outlook In the IP Convergence, Mobile Frontier Conference 2008 Presentations, 2008.11
  4. A Study on Value Grid for the Convergence of Broadcasting and Telecommunications in U-city.
  5. O.Gerard, "Next Generation IPTV services and Technologies," Wiley Inter-Science, 2007.
  6. S.Park, and S.Jeong, "Mobile IPTV:Approaches, Challenges, Standards, and QoS Support," IEEE Internet Computing, Vol. 13, Issue 3, pp.23-31, 2009. DOI: http://dx.doi.org/10.1109/MIC.2009.65
  7. heekuk Oh, JiHwang Lim, Countermeasures research and analysis of security threat for IPTV component technology, KISA-WP-2010-0070
  8. MoonGu Kim, JongHyung Park, "Smart TV Global Trends and Development", TTA Journal, No.131,
  9. Young-Hun Jung, Chang-Bo Lee, Kwang-Hyoung Lee, Moon-Seog Jun, "A Study on Secure Contents Transer Based on Home Network", Journal of Korea Academia-Industrial Cooperation Society, Vol 8, No 5, pp. 1114-1121, 2007
  10. So-Yeon Min, Jung-Jae Kim, "A Study on Encrypted Matrix Puzzle for Digital Contents Protection", Journal of Korea Academia-Industrial Cooperation Society, Vol 9, No 4, pp 936-944, 2008 DOI: http://dx.doi.org/10.5762/KAIS.2008.9.4.936
  11. Bo-Seoung Kim, Jeong-Jai Kim, Ki-Young Lee, Yong-Tae Shin, "A Study of Secure Group Key Management Based on Key-Chain for Multicast Data Transmission", Vol 11, No 9, pp. 3495-3501, 2010 DOI: http://dx.doi.org/10.5762/KAIS.2010.11.9.3495
  12. Se-Kyoung, Choi, KOCCA Focus, No 11,( 통권 39 호), Korea Creative Contents Agency, 2011

Cited by

  1. Modified cyber kill chain model for multimedia service environments pp.1573-7721, 2018, https://doi.org/10.1007/s11042-018-5897-5