Abstract
Existing algorithms on inference detection for database systems mainly employ functional dependencies in the database schema to detect inference, but what they can detect is limited. This paper presents a new data level inference detection algorithm. It can determine whether sensitive information can be disclosed from the user’s query history through finding the related tuples between the return results of different queries. If two tuples are related to each other, then they will be merged into one tuple, thus the query history can be compressed. Moreover, the merged tuple has more information than the original two or more tuples. The experiment results show that, as the query number increases, our algorithm can infer almost the whole original relation; meanwhile the query history is compressed remarkablely. The system administrator should restrict user’s query number and category to ensure that the database is secure.
Preview
Unable to display preview. Download preview PDF.
Similar content being viewed by others
References
Farkas, C., Jajodia, S.: The Inference Problem: A Survey. ACM SIGKDD Explorations Newsletter 4(2), 6–11 (2002)
Tsai, C.R., Gligor, V.D.: Inference Aggregation Detection In Database Management Systems. In: Proc. Of the IEEE Symposium on Research in Security and Privacy, pp. 96–106 (1988)
Morgenstern, M.: Security And Inference In Multilevel Database And Knowledge-Base Systems. In: Proc. of The ACM SIGMOD International Conference on Management of Data, pp. 357–373 (1987)
Su, T.A., Ozsoyoglu, G.: Controlling FD and MVD Inferences in Multilevel Relational Database Systems. IEEE Transactions on Knowledge and Data Engineering 3, 474–485 (1991)
Brodsky, A., Farkas, C., Jojodia, S.: Secure Databases: Constraints, Inference Channels, and Monitoring Disclosures. IEEE Transactions on Knowledge and Data Engineering 12, 900–919 (2000)
Yip, R., Levitt, K.: Data Level Inference Detection in Database Systems. In: Proc. of the 11th IEEE Computer Security Foundations Workshop, pp. 179–189 (1998)
Yip, R., Levitt, K.: The Design and Implementation of A Data Level Database Inference Detection System. In: Proc. of the 12th Annual IFIP WG 11.3 Working Conference on Database Security, Chalkidiki, Greece (1998)
Qian, X., Lunt, T.F.: Tuple-level vs. Element-level Classification. Database Security. In: VI: status and prospects, Vancouver, Canada, pp. 301–315 (1993)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2005 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Cui, B., Liu, D. (2005). An Inference Detection Algorithm Based on Related Tuples Mining. In: Khosla, R., Howlett, R.J., Jain, L.C. (eds) Knowledge-Based Intelligent Information and Engineering Systems. KES 2005. Lecture Notes in Computer Science(), vol 3683. Springer, Berlin, Heidelberg. https://doi.org/10.1007/11553939_142
Download citation
DOI: https://doi.org/10.1007/11553939_142
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-28896-1
Online ISBN: 978-3-540-31990-0
eBook Packages: Computer ScienceComputer Science (R0)