首页> 外文OA文献 >An equational logic based approach to the security problem against inference attacks on object-oriented databases
【2h】

An equational logic based approach to the security problem against inference attacks on object-oriented databases

机译:基于等式逻辑的方法来解决针对面向对象数据库的推理攻击的安全性问题

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

A query is said to be secure against inference attacks by a user if there exists no database instance for which the user can infer the result of the query, using only authorized queries to the user. In this paper, first, the security problem against inference attacks on object-oriented databases is formalized. The definition of inference attacks is based on equational logic. Secondly, the security problem is shown to be undecidable, and a decidable sufficient condition for a given query to be secure under a given schema is proposed. The idea of the sufficient condition is to over-estimate inference attacks using over-estimated results of static type inference. The third contribution is to propose subclasses of schemas and queries for which the security problem becomes decidable. Lastly, the decidability of the security problem is shown to be incomparable with the static type inferability, although the tightness of the over-estimation of the inference attacks is affected in a large degree by that of the static type inference.
机译:如果不存在用户可以仅使用针对用户的授权查询来推断查询结果的数据库实例,则该查询被认为可防止用户的推理攻击。本文首先将针对面向对象数据库的推理攻击的安全性问题形式化。推理攻击的定义基于等式逻辑。其次,安全问题被证明是无法确定的,并提出了在给定模式下给定查询安全的可确定充分条件。充分条件的想法是使用静态类型推断的高估结果来高估推断攻击。第三个贡献是提出方案和查询的子类,对于这些子类,可以确定安全问题。最后,安全问题的可判定性与静态类型的可推断性是不可比拟的,尽管对静态攻击的估计在很大程度上受到了静态类型推断的影响。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号