Learning fingerprints for a database intrusion detection system

被引:0
|
作者
Lee, SY [1 ]
Low, WL [1 ]
Wong, PY [1 ]
机构
[1] DSO Natl Labs, Comp Secur Lab, Singapore, Singapore
来源
COMPUTER SECURITY - ESORICS 2002, PROCEEDINGS | 2002年 / 2502卷
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
There is a growing security concern on the increasing number of databases that are accessible through the Internet. Such databases may contain sensitive information like credit card numbers and personal medical histories. Many e-service providers are reported to be leaking customers' information through their websites. The hackers exploited poorly coded programs that interface with backend databases using SQL injection techniques. We developed an architectural framework, DIDAFIT (Detecting Intrusions in DAtabases through FIngerprinting Transactions) [1], that can efficiently detect illegitimate database accesses. The system works by matching SQL statements against a known set of legitimate database transaction fingerprints. In this paper, we explore the various issues that arise in the collation, representation and summarization of this potentially huge set of legitimate transaction fingerprints. We describe an algorithm that summarizes the raw transactional SQL queries into compact regular expressions. This representation can be used to match against incoming database transactions efficiently. A set of heuristics is used during the summarization process to ensure that the level of false negatives remains low. This algorithm also takes into consideration incomplete logs and heuristically identifies "high risk" transactions.
引用
收藏
页码:264 / 279
页数:16
相关论文
共 50 条
  • [41] A Study: Machine Learning and Deep Learning Approaches for Intrusion Detection System
    Sekhar, C. H.
    Rao, K. Venkata
    SECOND INTERNATIONAL CONFERENCE ON COMPUTER NETWORKS AND COMMUNICATION TECHNOLOGIES, ICCNCT 2019, 2020, 44 : 845 - 849
  • [42] Enhancing Intrusion Detection System Using Machine Learning and Deep Learning
    Madhusudhan, R.
    Thakur, Shubham Kumar
    Pravisha, P.
    ADVANCED INFORMATION NETWORKING AND APPLICATIONS, VOL 3, AINA 2024, 2024, 201 : 326 - 337
  • [43] Innovative Signature Based Intrusion Detection System Parallel Processing and Minimized Database
    Almutairi, Abdullah H.
    Abdelmajeed, Nabih T.
    2017 INTERNATIONAL CONFERENCE ON THE FRONTIERS AND ADVANCES IN DATA SCIENCE (FADS), 2017, : 142 - 147
  • [44] Intrusion Detection System For Manets Using Deep Learning Approach
    Sbai, Oussama
    Elboukhari, Mohamed
    International Journal of Computer Science and Applications, 2021, 18 (01) : 85 - 101
  • [45] Attack classification of an intrusion detection system using deep learning and
    Novaria Kunang, Yesi
    Nurmaini, Siti
    Stiawan, Deris
    Suprapto, Bhakti Yudho
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2021, 58
  • [46] IDSDL: a sensitive intrusion detection system based on deep learning
    Yanjun Hu
    Fan Bai
    Xuemiao Yang
    Yafeng Liu
    EURASIP Journal on Wireless Communications and Networking, 2021
  • [47] Analysis on intrusion detection system using machine learning techniques
    Seraphim B.I.
    Poovammal E.
    Lecture Notes on Data Engineering and Communications Technologies, 2021, 66 : 423 - 441
  • [48] Comparative Study of Machine Learning Algorithm for Intrusion Detection System
    Sravani, K.
    Srinivasu, P.
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON FRONTIERS OF INTELLIGENT COMPUTING: THEORY AND APPLICATIONS (FICTA) 2013, 2014, 247 : 189 - 196
  • [49] Toward Deep Learning based Intrusion Detection System: A Survey
    Li, Zhiqi
    Fang, Weidong
    Zhu, Chunsheng
    Song, Guannan
    Zhang, Wuxiong
    PROCEEDINGS OF THE 2024 6TH INTERNATIONAL CONFERENCE ON BIG DATA ENGINEERING, BDE 2024, 2024, : 25 - 32
  • [50] Hybrid optimization and deep learning based intrusion detection system
    Gupta, Subham Kumar
    Tripathi, Meenakshi
    Grover, Jyoti
    COMPUTERS & ELECTRICAL ENGINEERING, 2022, 100