RISS 학술연구정보서비스

검색

인기 검색어

    다국어 입력

    http://chineseinput.net/에서 pinyin(병음)방식으로 중국어를 변환할 수 있습니다.

    변환된 중국어를 복사하여 사용하시면 됩니다.

    예시)
    • 中文 을 입력하시려면 zhongwen을 입력하시고 space를누르시면됩니다.
    • 北京 을 입력하시려면 beijing을 입력하시고 space를 누르시면 됩니다.
    닫기

    온라인수색 시 프라이버시 침해 최소화를 위한 기술적 수단 개발 및 관리에 대한 연구 = A Study on the Development and Management of Technical Means to Minimize Privacy Infringement in Online Search

    한글로보기

    https://www.riss.kr/link?id=T16654198

    • 0

      상세조회
    • 0

      다운로드
    서지정보 열기
    • 내보내기
    • 내책장담기
    • 공유하기
    • 오류접수
    인용문이 복사되었습니다.

    부가정보

    다국어 초록 (Multilingual Abstract) kakao i 다국어 번역

    Investigation is a series of processes that reconstruct the past based on evidence. Although it is impossible to reconstruct a perfect case, it is meaningful to find out the true meaning of the specific charges of estimating the actions of the person to be disposed of and revealing the substantive truth. In the case of Korea, it has been difficult to reveal the actual truth through coercive investigations and interrogation investigations in the past. However, the development of investigative techniques, the pursuit of rational investigations, and the increase in individual rights demands required new investigative techniques different from the past. Accordingly, scientific techniques were requested to analyze objective base information that can reconstruct events as evidence of the past. New investigative tools such as digital forensics and eavesdropping were effective means of collecting objective-based information on past actions. However, the use of new technical means has caused controversy regarding privacy infringement. A representative example is the confirmation of unconstitutionality of packet intercept. The Constitutional Court judged that the lack of objective control means after the execution stage of the wiretapping in the case violates the confidentiality and freedom of the claimant's communication and privacy.
    The same would be said of the online search. As our lives become closer to digital devices or platforms, individuals who use them and service providers are more thoroughly adopting cyber security. In addition, the demand for basic IT rights is increasing, and individual subjectivity is being emphasized in cyberspace. The technological environment itself is changing as well as the lifestyles of subjects using technology. We are living in a new technological environment, such as cloud computing, remote server utilization, and automatic application of cryptographic algorithms. The characteristic of this technical environment is that there is no limit to the location, and that data has a meaning in the association of other data rather than simply the data itself. In addition, since encryption is basically applied to the data, it is difficult for a third party without authority to access the information. These changes in the technical environment and changes in the lifestyle in the environment require institutionalization of new investigative techniques. Therefore, it is an online search that was derived to introduce general hacking methodologies into the investigation to respond to the technical environment and to legally accept the core contents of basic IT rights according to changes in lifestyle.
    The demand for online search has not only been drawn out suddenly in recent years. Even if it is not the term online search, the investigation technique has been discussed in terms of computer search investigation, government hacking, equipment interference, and extraterritorial seizure and search. Since these investigation techniques have a strong level of privacy restrictions, it was required to prepare a basis for authorization and to prepare requirements for allowing it in the Criminal Procedure Act. We have already managed the process of applying for and issuing warrants, and have been discussing establishing a control agency to prepare a post procedure. However, this is only a half discussion. This is because privacy restrictions are embodied in the way technical tools are developed and operated, and specific infringement can be expected rather than a comprehensive discussion of authority discussed in the legal system. Therefore, based on the attacker model of general hacking means, this study attempted to specify the life cycle of technical tools and identify specific privacy restrictions. Based on this, we tried to set the scope of privacy restrictions and set standards for the development and operation of technical means.
    It is time to actively seek ways to improve the purpose of seizure and search as a compulsory investigation to discover the actual truth due to changes in the digital environment. If what we have been discussing about the investigation is a series of processes to reveal the truth, our online search discussion should no longer remain limited to the possibility of inclusion within the domestic legal system or the establishment of authorized regulations. It should be possible to accurately grasp the infringement of the authority that the privacy restriction may bring and establish the scope and standards for the restriction measures under an understanding of the specific technical means.
    번역하기

    Investigation is a series of processes that reconstruct the past based on evidence. Although it is impossible to reconstruct a perfect case, it is meaningful to find out the true meaning of the specific charges of estimating the actions of the person ...

    Investigation is a series of processes that reconstruct the past based on evidence. Although it is impossible to reconstruct a perfect case, it is meaningful to find out the true meaning of the specific charges of estimating the actions of the person to be disposed of and revealing the substantive truth. In the case of Korea, it has been difficult to reveal the actual truth through coercive investigations and interrogation investigations in the past. However, the development of investigative techniques, the pursuit of rational investigations, and the increase in individual rights demands required new investigative techniques different from the past. Accordingly, scientific techniques were requested to analyze objective base information that can reconstruct events as evidence of the past. New investigative tools such as digital forensics and eavesdropping were effective means of collecting objective-based information on past actions. However, the use of new technical means has caused controversy regarding privacy infringement. A representative example is the confirmation of unconstitutionality of packet intercept. The Constitutional Court judged that the lack of objective control means after the execution stage of the wiretapping in the case violates the confidentiality and freedom of the claimant's communication and privacy.
    The same would be said of the online search. As our lives become closer to digital devices or platforms, individuals who use them and service providers are more thoroughly adopting cyber security. In addition, the demand for basic IT rights is increasing, and individual subjectivity is being emphasized in cyberspace. The technological environment itself is changing as well as the lifestyles of subjects using technology. We are living in a new technological environment, such as cloud computing, remote server utilization, and automatic application of cryptographic algorithms. The characteristic of this technical environment is that there is no limit to the location, and that data has a meaning in the association of other data rather than simply the data itself. In addition, since encryption is basically applied to the data, it is difficult for a third party without authority to access the information. These changes in the technical environment and changes in the lifestyle in the environment require institutionalization of new investigative techniques. Therefore, it is an online search that was derived to introduce general hacking methodologies into the investigation to respond to the technical environment and to legally accept the core contents of basic IT rights according to changes in lifestyle.
    The demand for online search has not only been drawn out suddenly in recent years. Even if it is not the term online search, the investigation technique has been discussed in terms of computer search investigation, government hacking, equipment interference, and extraterritorial seizure and search. Since these investigation techniques have a strong level of privacy restrictions, it was required to prepare a basis for authorization and to prepare requirements for allowing it in the Criminal Procedure Act. We have already managed the process of applying for and issuing warrants, and have been discussing establishing a control agency to prepare a post procedure. However, this is only a half discussion. This is because privacy restrictions are embodied in the way technical tools are developed and operated, and specific infringement can be expected rather than a comprehensive discussion of authority discussed in the legal system. Therefore, based on the attacker model of general hacking means, this study attempted to specify the life cycle of technical tools and identify specific privacy restrictions. Based on this, we tried to set the scope of privacy restrictions and set standards for the development and operation of technical means.
    It is time to actively seek ways to improve the purpose of seizure and search as a compulsory investigation to discover the actual truth due to changes in the digital environment. If what we have been discussing about the investigation is a series of processes to reveal the truth, our online search discussion should no longer remain limited to the possibility of inclusion within the domestic legal system or the establishment of authorized regulations. It should be possible to accurately grasp the infringement of the authority that the privacy restriction may bring and establish the scope and standards for the restriction measures under an understanding of the specific technical means.

    더보기

    국문 초록 (Abstract) kakao i 다국어 번역

    수사란 증거를 토대로 과거를 재구성하는 일련의 과정이다. 완벽한 사건의 재구성은 불가할지라도 피처분자의 행위를 추정해내고 실체적 진실을 밝혀냄은 구체적인 혐의에 대한 진의를 밝혀내는 데 그 의의가 있다고 할 것이다. 국내의 경우 과거 강압적인 수사와 탐문 수사 등으로 실체적 진실을 밝혀냄에 있어 어려움을 겪어온 바 있다. 수사 기법의 발전과 합리적 수사의 추구, 개인의 권리 요구에 대한 증대는 과거와는 다른 새로운 수사 기법을 요구했다. 객관적인 기반 정보들을, 사건을 재구성하는 증거로서 분석할 수 있는 과학적 기법들이 요청되었다. 디지털포렌식 기법과 통신제한조치라는 새로운 수사 도구는 과거의 행위에 대한 객관적인 기반 정보를 수집하는 데 효과적인 수단이었다. 다만, 새로운 기술적 수단의 활용은 프라이버시 침해와 관련하여 논란을 야기해왔다. 대표적인 사례가 패킷감청에 대한 위헌 확인이다. 헌법재판소는 해당 사건에 대해 감청의 집행 단계 이후, 객관적인 통제 수단이 부재하여 청구인의 통신 및 사생활의 비밀과 자유를 침해한다고 판단했다.
    온라인수색 제도 또한 마찬가지라고 할 것이다. 우리의 삶이 디지털 기기나 플랫폼과 밀접해짐에 따라 IT 기본권에 대한 요구가 증가하고 있고 사이버 공간상에서 개인의 주체성이 강조되고 있다. 기술을 활용하는 주체들의 삶의 양식뿐만 아니라 기술적 환경 자체도 변화하고 있다. 우리는 클라우드 컴퓨팅, 원격 서버 활용, 암호알고리즘의 자동 적용 등 새로운 기술적 환경 속에서 삶을 영위하고 있다. 이러한 기술적 환경의 특징은 장소에 제한이 없고, 데이터가 단순히 데이터 그 자체로 의미를 가지기보다 타 데이터의 연관 속에서 그 의미를 가진다는 점이다. 또한 해당 정보는 기본적으로 암호화가 적용되기에 통신의 주체 혹은 권한 없는 제삼자는 그 정보를 확인하기가 어렵다. 기술적 환경의 변화와 해당 환경에서의 삶의 양식 변화는 새로운 수사 기법의 제도화를 요구하고 있다. 기술적 환경에 대응하고자 일반적인 해킹 방법론을 수사에 도입하고, 삶의 양식 변화에 따라 IT 기본권의 핵심 내용을 제도적으로 수용하고자 도출된 것이 온라인수색이다.
    온라인수색에 대한 요구는 근래에 갑작스럽게 도출된 것만은 아니다. 온라인수색이라는 용어가 아니라도, 컴퓨터 검색 수사, 정부 해킹, 장비간섭, 역외 압수수색 등의 언어로 해당 수사 기법이 논의되어 온 바 있다. 이러한 수사 기법들은 프라이버시 제한의 수준이 강하기 때문에 수권 근거를 마련하고 형사소송법 등에서 이를 허용하는 요건이 마련될 것이 요구되었다. 우리는 이미 영장 신청 및 발급의 프로세스를 관리하며, 통제 기관을 설치하여 사후적 판단 절차를 마련하는 등의 논의를 진행해왔다. 하지만 이는 반쪽짜리 논의에 그칠 뿐이다. 프라이버시에 대한 제한은 기술적 도구를 개발하고 운용하는 방식에서 구체화 되며 법 제도상으로 논의했던 포괄적인 권한 논의보다는 구체적인 침해를 예상할 수 있도록 하기 때문이다. 이에 본 연구에서는 일반적 해킹 수단의 공격자 모델을 바탕으로, 기술적 수단에 대한 개발 및 운용 그리고 관리까지 그 수단에 대한 라이프사이클을 구체화하고 구체적인 프라이버시 제한조치를 식별하고자 했다. 이를 바탕으로 프라이버시 제한에의 범위를 설정하고 기술적 수단의 개발과 운용에의 기준을 세우고자 했다.
    실체적 진실발견을 위한 수단을 디지털증거에 부합되도록 적극적인 개선 방법을 모색해야 할 때다. 우리가 수사와 관련하여 논의 해온바, 그것이 실체적 진실을 밝히기 위한 일련의 과정이라면, 우리의 온라인수색 논의는 더이상 국내법 체계 내로의 포섭 가능성이나, 수권 규정 마련 등에만 머물러 있어선 안 된다. 해당 프라이버시 제한 조치가 가져올 수 있는 그 권한 침해를 적확하게 파악하고 구체화 된 기술적 수단에 대한 이해 아래, 제한 조치에 대한 범위와 그 기준을 세울 수 있어야 할 것이다.
    번역하기

    수사란 증거를 토대로 과거를 재구성하는 일련의 과정이다. 완벽한 사건의 재구성은 불가할지라도 피처분자의 행위를 추정해내고 실체적 진실을 밝혀냄은 구체적인 혐의에 대한 진의를 밝...

    수사란 증거를 토대로 과거를 재구성하는 일련의 과정이다. 완벽한 사건의 재구성은 불가할지라도 피처분자의 행위를 추정해내고 실체적 진실을 밝혀냄은 구체적인 혐의에 대한 진의를 밝혀내는 데 그 의의가 있다고 할 것이다. 국내의 경우 과거 강압적인 수사와 탐문 수사 등으로 실체적 진실을 밝혀냄에 있어 어려움을 겪어온 바 있다. 수사 기법의 발전과 합리적 수사의 추구, 개인의 권리 요구에 대한 증대는 과거와는 다른 새로운 수사 기법을 요구했다. 객관적인 기반 정보들을, 사건을 재구성하는 증거로서 분석할 수 있는 과학적 기법들이 요청되었다. 디지털포렌식 기법과 통신제한조치라는 새로운 수사 도구는 과거의 행위에 대한 객관적인 기반 정보를 수집하는 데 효과적인 수단이었다. 다만, 새로운 기술적 수단의 활용은 프라이버시 침해와 관련하여 논란을 야기해왔다. 대표적인 사례가 패킷감청에 대한 위헌 확인이다. 헌법재판소는 해당 사건에 대해 감청의 집행 단계 이후, 객관적인 통제 수단이 부재하여 청구인의 통신 및 사생활의 비밀과 자유를 침해한다고 판단했다.
    온라인수색 제도 또한 마찬가지라고 할 것이다. 우리의 삶이 디지털 기기나 플랫폼과 밀접해짐에 따라 IT 기본권에 대한 요구가 증가하고 있고 사이버 공간상에서 개인의 주체성이 강조되고 있다. 기술을 활용하는 주체들의 삶의 양식뿐만 아니라 기술적 환경 자체도 변화하고 있다. 우리는 클라우드 컴퓨팅, 원격 서버 활용, 암호알고리즘의 자동 적용 등 새로운 기술적 환경 속에서 삶을 영위하고 있다. 이러한 기술적 환경의 특징은 장소에 제한이 없고, 데이터가 단순히 데이터 그 자체로 의미를 가지기보다 타 데이터의 연관 속에서 그 의미를 가진다는 점이다. 또한 해당 정보는 기본적으로 암호화가 적용되기에 통신의 주체 혹은 권한 없는 제삼자는 그 정보를 확인하기가 어렵다. 기술적 환경의 변화와 해당 환경에서의 삶의 양식 변화는 새로운 수사 기법의 제도화를 요구하고 있다. 기술적 환경에 대응하고자 일반적인 해킹 방법론을 수사에 도입하고, 삶의 양식 변화에 따라 IT 기본권의 핵심 내용을 제도적으로 수용하고자 도출된 것이 온라인수색이다.
    온라인수색에 대한 요구는 근래에 갑작스럽게 도출된 것만은 아니다. 온라인수색이라는 용어가 아니라도, 컴퓨터 검색 수사, 정부 해킹, 장비간섭, 역외 압수수색 등의 언어로 해당 수사 기법이 논의되어 온 바 있다. 이러한 수사 기법들은 프라이버시 제한의 수준이 강하기 때문에 수권 근거를 마련하고 형사소송법 등에서 이를 허용하는 요건이 마련될 것이 요구되었다. 우리는 이미 영장 신청 및 발급의 프로세스를 관리하며, 통제 기관을 설치하여 사후적 판단 절차를 마련하는 등의 논의를 진행해왔다. 하지만 이는 반쪽짜리 논의에 그칠 뿐이다. 프라이버시에 대한 제한은 기술적 도구를 개발하고 운용하는 방식에서 구체화 되며 법 제도상으로 논의했던 포괄적인 권한 논의보다는 구체적인 침해를 예상할 수 있도록 하기 때문이다. 이에 본 연구에서는 일반적 해킹 수단의 공격자 모델을 바탕으로, 기술적 수단에 대한 개발 및 운용 그리고 관리까지 그 수단에 대한 라이프사이클을 구체화하고 구체적인 프라이버시 제한조치를 식별하고자 했다. 이를 바탕으로 프라이버시 제한에의 범위를 설정하고 기술적 수단의 개발과 운용에의 기준을 세우고자 했다.
    실체적 진실발견을 위한 수단을 디지털증거에 부합되도록 적극적인 개선 방법을 모색해야 할 때다. 우리가 수사와 관련하여 논의 해온바, 그것이 실체적 진실을 밝히기 위한 일련의 과정이라면, 우리의 온라인수색 논의는 더이상 국내법 체계 내로의 포섭 가능성이나, 수권 규정 마련 등에만 머물러 있어선 안 된다. 해당 프라이버시 제한 조치가 가져올 수 있는 그 권한 침해를 적확하게 파악하고 구체화 된 기술적 수단에 대한 이해 아래, 제한 조치에 대한 범위와 그 기준을 세울 수 있어야 할 것이다.

    더보기

    목차 (Table of Contents)

    • 초록 i
    • Abstract iv
    • 목차 vii
    • 1. 서론 1
    • 1.1 연구의 배경 및 목적 1
    • 초록 i
    • Abstract iv
    • 목차 vii
    • 1. 서론 1
    • 1.1 연구의 배경 및 목적 1
    • 1.1.1 디지털 기술환경의 변화 1
    • 1.1.2 수사환경 변화에 따른 증거 수집 수단의 변화 3
    • 1.1.3 새로운 증거 수집 수단으로서의 온라인수색 논의 5
    • 1.2 연구의 범위 및 방법 5
    • 2. 온라인수색의 의의와 제도적 현황 8
    • 2.1 온라인수색의 의의 8
    • 2.1.1 수사와 디지털증거 수집의 의미 8
    • 2.1.2 법집행기관의 증거 수집 수단으로서의 온라인수색 14
    • 2.2 주요국 온라인수색 제도 현황 25
    • 2.2.1 권한 및 수집방식 25
    • 2.2.2 증거 수집의 대상 범죄 27
    • 2.2.3 방식별 증거 수집 프로세스 29
    • 2.2.4 수집된 정보의 처리 31
    • 2.3 국내 디지털증거 수집 현황 33
    • 2.3.1 자료 유형에 따른 국내의 디지털증거 수집과 법제 33
    • 2.3.2 현행 법제의 한계 39
    • 3. 온라인수색의 실시방식과 내용 42
    • 3.1 온라인수색의 집행 방법과 활용 수단 42
    • 3.1.1 기존 수사 기법 운용의 기술적 장애 요건 43
    • 3.1.2 온라인수색 시의 기술과 수단 46
    • 3.2 온라인수색 기술 및 수단의 분류 50
    • 3.2.1 기술적 수단 집행에 있어서의 절차적 구분 50
    • 3.2.2 공격자 행위 모델에 따른 절차 구분 52
    • 3.2.3 적용 가능한 기술적 수단 운용 절차 63
    • 3.3 기술적 수단의 운용 사례 및 재분류 64
    • 3.3.1 주요국가의 기술적 수단 운용 사례 65
    • 3.3.2 기술적 수단 운용 사례에 대한 절차 구분의 적용 69
    • 4. 온라인수색 도입의 쟁점과 한계 76
    • 4.1 프라이버시 침해와 개인정보보호 이슈 76
    • 4.1.1 온라인수색 도입에 따른 프라이버시권 침해 문제 77
    • 4.1.2 온라인수색 시 프라이버시 침해의 양상 79
    • 4.2 프라이버시권 제한의 법적 한계 81
    • 4.2.1 프라이버시권 제한의 가능성 81
    • 4.2.2 온라인수색 도입의 전제 : 프라이버시권 침해의 최소화 83
    • 4.3 프라이버시 침해 최소화를 위한 기술적, 제도적 절차 마련 86
    • 4.3.1 기술적 관점에서의 침해 최소화 방안 마련 86
    • 4.3.2 제도적 관점에서의 침해 최소화 방안 마련 91
    • 5. 온라인수색 도입을 위한 제도기술적 개선방안 94
    • 5.1 온라인수색 도입의 전제 요건 94
    • 5.1.1 개요 94
    • 5.1.2 합법성 및 합목적성의 확보 97
    • 5.1.3 증거 수집 행위에 대한 감시와 투명성 확보 98
    • 5.1.4 통제장치 강화와 도구 관리 100
    • 5.1.5 정보주체의 프라이버시 보호 및 권리의 보장 101
    • 5.2 제도적 개선방안 102
    • 5.2.1 현행법상 검토사항과 온라인수색 절차의 마련 102
    • 5.2.2 효과적 통제를 위한 독립기구의 설치 및 운영 106
    • 5.3 기술적 수단에 대한 제안 108
    • 5.3.1 부수 처분 시의 기술적 도구 활용 검토 108
    • 5.3.2 주 처분 시의 기술적 도구 활용 검토 114
    • 6. 결론 125
    • 참고문헌 129
    더보기

    분석정보

    View

    상세정보조회

    0

    Usage

    원문다운로드

    0

    대출신청

    0

    복사신청

    0

    EDDS신청

    0

    동일 주제 내 활용도 TOP

    더보기

    주제

    연도별 연구동향

    연도별 활용동향

    연관논문

    연구자 네트워크맵

    공동연구자 (7)

    유사연구자 (20) 활용도상위20명

    이 자료와 함께 이용한 RISS 자료

    나만을 위한 추천자료

    해외이동버튼