摘要
为了提高对数据库恶意事务的检测粒度和检测范围,在基于事务时序图的数据库管理系统恶意事务入侵检测机制的基础上,通过增加记录条件短语,扩展了审计表内容,增加节点属性,改进了合法事务时序图,提出了一种基于合法事务时序图的恶意事务检测算法。该算法可以使检测粒度细到查询语句条件级,而且能检测单语句事务等一些特殊事务。实验表明,该算法具有更强的检测能力、更广的适用范围及较好的性能,并能方便地应用于实际的数据库管理系统中。
To enhance the detection granularity and detection scope on database malicious transaction, a detecting mechanism of malicious transactions based on transaction-profile chart for DataBase Management System (DBMS) was proposed. It expanded the content of audit table through recording the conditional command, and improved the legal transaction-profile chart by adding node attributes. A detection algorithm of malicious transactions based on transaction-profile chart was proposed. This algorithm was endowed with better detection ability on condition phrase of Structured Query Language (SOL) command, which could detect some special malicious transactions such as the one-command transaction, etc. Experimental results indicated that this algorithm had good detection ability, performance and more extensive detection scopes. This algorithm could be applied in practical DBMS.
出处
《计算机集成制造系统》
EI
CSCD
北大核心
2008年第6期1230-1235,共6页
Computer Integrated Manufacturing Systems
基金
国家预研基金资助项目(513150601)。~~
关键词
信息安全
数据库管理系统
审计表
事务时序
恶意事务检测
information security
database management system
audit table
transaction profile
malicious transactions detection