Abstract:
It is estimated that, nowadays, around 40 records containing private data are leaked every second. Many of these illegally obtained records are due to the lack of securit...Show MoreMetadata
Abstract:
It is estimated that, nowadays, around 40 records containing private data are leaked every second. Many of these illegally obtained records are due to the lack of security measures taken into consideration. One of the biggest mistakes that can be done, when it comes to data security, is to store data in plaintext, because a vulnerability that gives an attacker access to the database may result in a big data breach. This article's proposal is to mitigate, in an unobtrusive way, the threat of exploiting databases described above by adding cryptographic measures to sensitive data, ensuring that a snoopy database administrator, or even an outsider that gained access to the storage server, can't reveal private information even if they have it. With the time complexity problem in mind, as databases are selling on processing speed, our proposal is a practical solution to execute a suite of queries on encrypted data directly on the server. Our contribution consists in adding this cryptographic facilities directly in the ORM (Object Relational Mapping) and a new method for password administration.
Date of Conference: 21-23 September 2017
Date Added to IEEE Xplore: 30 November 2017
ISBN Information:
Electronic ISSN: 2247-5443