• DocumentCode
    2459712
  • Title

    Application-level isolation to cope with malicious database users

  • Author

    Jajodia, Sushil ; Liu, Peng ; McCollum, Catherine D.

  • fYear
    1998
  • fDate
    7-11 Dec 1998
  • Firstpage
    73
  • Lastpage
    82
  • Abstract
    System protection mechanisms such as access controls can be fooled by authorized but malicious users, masqueraders, and misfeasors. Intrusion detection techniques are therefore used to supplement them. The capacity of these techniques, however is limited: innocent users may be mistaken for malicious ones while malicious users stay at large. Isolation is a method that has been applied to protect systems from damage while investigating further. This paper proposes the use of isolation at an application level to gain its benefits while minimizing loss of resources and productive work in the case of incidents later deemed innocent. We describe our scheme in the database context. It isolates the database transparently from further damage by users suspected to be malicious, while still maintaining continued availability for their transactions. Isolation is complicated by the inconsistencies that may develop between isolated database versions. We present both static and dynamic approaches to identify and resolve conflicts. Finally, we give several examples of applications in which the isolation scheme should be worthwhile and be able to achieve good performance
  • Keywords
    DP management; database management systems; security of data; transaction processing; access control; application-level isolation; authorized users; dynamic conflict identification; dynamic conflict resolution; intrusion detection techniques; isolated database versions; malicious database users; minimized productive work loss; minimized resource loss; static conflict identification; static conflict resolution; system protection mechanisms; transactions; Access control; Databases; Filtering; Identity-based encryption; Information systems; Intrusion detection; Laboratories; Protection; Read only memory; Software engineering;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Security Applications Conference, 1998. Proceedings. 14th Annual
  • Conference_Location
    Phoenix, AZ
  • ISSN
    1063-9527
  • Print_ISBN
    0-8186-8789-4
  • Type

    conf

  • DOI
    10.1109/CSAC.1998.738580
  • Filename
    738580