An approach for database intrusion detection based on the event sequence clustering

Li Yinzhao*, Yang Dongxu, Ren Jiadong, Hu Changzhen

*此作品的通讯作者

科研成果: 书/报告/会议事项章节会议稿件同行评审

2 引用 (Scopus)

摘要

Database intrusion detection technology is an important part of the database security. The paper presents a new database intrusion detection method based on the event sequence clustering. Firstly, aiming at computing the similarity of two SQL statement sequences, an improved edit distance function is defined. The corresponding clustering results are obtained by the computed similarity. Secondly, the attack sequences are detected by calculating the similarity between user's operation sequences and cluster center. The association between two operation sequences is analyzed. At last, the experimental results show that our approach has lower false alarm rate and higher accuracy rate.

源语言英语
主期刊名NCM 2009 - 5th International Joint Conference on INC, IMS, and IDC
584-588
页数5
DOI
出版状态已出版 - 2009
活动NCM 2009 - 5th International Joint Conference on Int. Conf. on Networked Computing, Int. Conf. on Advanced Information Management and Service, and Int. Conf. on Digital Content, Multimedia Technology and its Applications - Seoul, 韩国
期限: 25 8月 200927 8月 2009

出版系列

姓名NCM 2009 - 5th International Joint Conference on INC, IMS, and IDC

会议

会议NCM 2009 - 5th International Joint Conference on Int. Conf. on Networked Computing, Int. Conf. on Advanced Information Management and Service, and Int. Conf. on Digital Content, Multimedia Technology and its Applications
国家/地区韩国
Seoul
时期25/08/0927/08/09

指纹

探究 'An approach for database intrusion detection based on the event sequence clustering' 的科研主题。它们共同构成独一无二的指纹。

引用此