Learning fingerprints for a database intrusion detection system

被引:0
|
作者
Lee, SY [1 ]
Low, WL [1 ]
Wong, PY [1 ]
机构
[1] DSO Natl Labs, Comp Secur Lab, Singapore, Singapore
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
There is a growing security concern on the increasing number of databases that are accessible through the Internet. Such databases may contain sensitive information like credit card numbers and personal medical histories. Many e-service providers are reported to be leaking customers' information through their websites. The hackers exploited poorly coded programs that interface with backend databases using SQL injection techniques. We developed an architectural framework, DIDAFIT (Detecting Intrusions in DAtabases through FIngerprinting Transactions) [1], that can efficiently detect illegitimate database accesses. The system works by matching SQL statements against a known set of legitimate database transaction fingerprints. In this paper, we explore the various issues that arise in the collation, representation and summarization of this potentially huge set of legitimate transaction fingerprints. We describe an algorithm that summarizes the raw transactional SQL queries into compact regular expressions. This representation can be used to match against incoming database transactions efficiently. A set of heuristics is used during the summarization process to ensure that the level of false negatives remains low. This algorithm also takes into consideration incomplete logs and heuristically identifies "high risk" transactions.
引用
收藏
页码:264 / 279
页数:16
相关论文
共 50 条
  • [1] A Hybrid System of Deep Learning and Learning Classifier System for Database Intrusion Detection
    Bu, Seok-Jun
    Cho, Sung-Bae
    HYBRID ARTIFICIAL INTELLIGENT SYSTEMS, HAIS 2017, 2017, 10334 : 615 - 625
  • [2] Database Intrusion Detection System Using Octraplet and Machine Learning
    Jayaprakash, Souparnika
    Kandasamy, Kamalanathan
    PROCEEDINGS OF THE 2018 SECOND INTERNATIONAL CONFERENCE ON INVENTIVE COMMUNICATION AND COMPUTATIONAL TECHNOLOGIES (ICICCT), 2018, : 1413 - 1416
  • [3] Application of Deep Learning for Database Intrusion Detection
    Sahu, Rajesh Kumar
    Panigrahi, Suvasini
    ADVANCED COMPUTING AND INTELLIGENT ENGINEERING, 2020, 1082 : 501 - 511
  • [4] Enhancing Detection Rate in Database Intrusion Detection System
    Rao, Udai Pratap
    Singh, Nikhil Kumar
    Amin, Akash R.
    Sahu, Kushal
    2014 SCIENCE AND INFORMATION CONFERENCE (SAI), 2014, : 556 - 563
  • [5] Application of OPTICS and ensemble learning for Database Intrusion Detection
    Subudhi, Sharmila
    Panigrahi, Suvasini
    JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2022, 34 (03) : 972 - 981
  • [6] Design of A New Intrusion Detection System based on Database
    Wu, Gongxing
    Huang, Yimin
    PROCEEDINGS OF THE 2009 INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING SYSTEMS, 2009, : 814 - 817
  • [7] Adaptive Database Intrusion Detection Using Evolutionary Reinforcement Learning
    Choi, Seul-Gi
    Cho, Sung-Bae
    INTERNATIONAL JOINT CONFERENCE SOCO'17- CISIS'17-ICEUTE'17 PROCEEDINGS, 2018, 649 : 547 - 556
  • [8] Use of OPTICS and Supervised Learning Methods for Database Intrusion Detection
    Subudhi, Sharmila
    Behera, Tanmay Kumar
    Panigrahi, Suvasini
    2017 3RD INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND NETWORKS (CINE), 2017, : 78 - 82
  • [9] Ensemble of Deep Convolutional Learning Classifier System Based on Genetic Algorithm for Database Intrusion Detection
    Bu, Seok-Jun
    Kang, Han-Bit
    Cho, Sung-Bae
    ELECTRONICS, 2022, 11 (05)
  • [10] Intrusion detection system based on machine learning
    Wang, Xu-Ren
    Xu, Rong-Sheng
    Jisuanji Gongcheng/Computer Engineering, 2006, 32 (14): : 107 - 108