A Practical Database Intrusion Detection System Framework

Yawei Zhang,Xiaojun Ye,Feng Xie,Yong Peng
DOI: https://doi.org/10.1109/CIT.2009.69
2009-01-01
Abstract:Security mechanisms within DBMSs are far from effective to detect and prevent anomalous behavior of applications and intrusions from attackers. In fact, intrusions executed by unauthorized users to explore system vulnerabilities, and malicious database transactions executed by authorized users, both cannot be detected and prevented by typical security mechanisms. In this paper we proposed a database intrusion detection system architecture based on the database communication content detection mechanism. Implementation strategies for main components are detailed. Besides, we investigate several critical intrusion detection approaches used in the practice.
What problem does this paper attempt to address?