• DocumentCode
    668285
  • Title

    A Secure Method against Frequency Attack for Pattern Query on Encrypted String Data

  • Author

    Ravan, Rama Roshan ; Idris, Norbik Bashah ; Mehrabani, Zahra

  • Author_Institution
    Adv. Inf. Sch., Univ. Teknol. Malaysia, Kuala Lumpur, Malaysia
  • fYear
    2013
  • fDate
    4-6 Sept. 2013
  • Firstpage
    123
  • Lastpage
    127
  • Abstract
    Using database encryption to protect data in some situations where access control is not solely enough is inevitable. Database encryption provides an additional layer of protection to conventional access control techniques. It prevents unauthorized users, including intruders breaking into a network, from viewing the sensitive data. As a result data remains protected even in the event that database is successfully attacked or stolen. However, encryption and decryption of data result in database performance degradation. In the situation where all the information is stored in encrypted form, one cannot make the selection on the database content any more. Data should be decrypted first, so an unwilling tradeoff between the security and the performance is normally forced. The appropriate approaches to increase the performance are methods to deal directly with the encrypted data without firstly decrypting them. This paper introduces a secure scheme against frequency attack for pattern query on encrypted string data. Proposed scheme provides searching of arbitrary patterns in the fields´ content and supposes that the database management server is untrusted and must be prevented from viewing the sensitive data.
  • Keywords
    authorisation; cryptography; database management systems; pattern recognition; query processing; access control technique; arbitrary pattern searching; data decryption; data protection; database content selection; database encryption; database management server; database performance degradation; encrypted string data; frequency attack; intruders; pattern query; secure method; security; sensitive data; unauthorized user prevention; Binary codes; Encryption; Indexes; Servers; Database Security; Encrypted Database; Query on Encrypted Data.;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Informatics and Creative Multimedia (ICICM), 2013 International Conference on
  • Conference_Location
    Kuala Lumpur
  • Type

    conf

  • DOI
    10.1109/ICICM.2013.63
  • Filename
    6702795