首页> 外文OA文献 >Hybrid detection for databases using SQL injection and insider misuse detection techniques
【2h】

Hybrid detection for databases using SQL injection and insider misuse detection techniques

机译:使用SQL注入和内部人员滥用检测技术的数据库混合检测

摘要

The recent rapid proliferations of web based applications with databases at its back-end have further increased the risk of database exposure to the outside world. Nowadays, there are many reports on intrusion from external and internal threats that compromised the database system. For that reason, it is important for us to provide protection for database systems from significant threats that comes from outside and inside the organizations. Currently, research on database security has been taken seriously as many solutions have emerged. All solutions should address the security elements that make up a lifecycle categorized into three areas which are prevention, detection and response mechanisms. This research focuses on the detection mechanism by deploying intrusion detection system (IDS) within the database management system (DBMS). The objective of this research is to propose a hybrid detection technique in order to cater external and internal threats which can provide protection for DBMS. This hybrid detection technique is called SQL Injection and Insider Misuse Detection System (SIIMDS). The technique combines the misuse and anomaly detection technique that consists of Misuse Detection Module, Anomaly Detection Module, Database Audit Log and Response Module. A prototype of the system was designed, implemented and analyzed to evaluate its security and performance. The analysis of the result in this research proved that the employment of this hybrid detection technique has provided better protection for DBMS in terms of high detection rates and low false alarm rates.
机译:最近,具有后端数据库的基于Web的应用程序迅速增加,这进一步增加了数据库暴露于外界的风险。如今,有许多关于入侵外部和内部威胁入侵数据库系统的报告。因此,对于我们来说,重要的是要保护数据库系统免受来自组织内部和外部的重大威胁。当前,随着许多解决方案的出现,对数据库安全性的研究已受到重视。所有解决方案都应解决构成生命周期的安全要素,这些生命要素分为预防,检测和响应机制三个方面。这项研究着重于通过在数据库管理系统(DBMS)中部署入侵检测系统(IDS)的检测机制。这项研究的目的是提出一种混合检测技术,以迎合可以为DBMS提供保护的外部和内部威胁。这种混合检测技术称为SQL注入和内部人员滥用检测系统(SIIMDS)。该技术结合了误用和异常检测技术,该技术由误用检测模块,异常检测模块,数据库审核日志和响应模块组成。设计,实施和分析了系统的原型,以评估其安全性和性能。对本研究结果的分析证明,这种混合检测技术的使用在高检测率和低误报率方面为DBMS提供了更好的保护。

著录项

  • 作者

    Asmawi Aziah;

  • 作者单位
  • 年度 2010
  • 总页数
  • 原文格式 PDF
  • 正文语种 {"code":"en","name":"English","id":9}
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号