원문정보
초록
영어
Attempts to distribute malware using social engineering email deployment to the domestic defense industry have been detected from CY 2009 to 2012, up to the present. The analysis of the characteristics of the attacks showed their consistency and specificity. They commonly use social engineering to distribute malware. In addition, they have typical APT characteristics. On the other hand, the persistence of the same techniques and forms was seen. These are done by the same group or the same person who launched the APT attack. According to the APT attack characteristics, there is a limit to malware defense and prevention. Therefore, all of the executives and staff members understand and share the characteristics of APT and need to be strengthened in security management. Only prevention can reduce the risk of a security incident from an APT attack via social engineering.
목차
1. 연구 배경
2. 연구의 목적과 범위
2.1 연구 범위
2.2 연구 목적
3. 관련 연구
3.1 지능형 지속 위협 공격의 정의
3.2 지능형 지속 위협 공격의 특성
3.3 지능형 지속 위협 공격과 기존 공격의 차이점
4. 공격 사례 분석
4.1 사회공학적 공격 특성
4.2 공격 시기별 특성
4.3 기술적 특성
5. 결론
참고문헌