A study on static security of databases based on query resolution
Project/Area Number |
20500092
|
Research Category |
Grant-in-Aid for Scientific Research (C)
|
Allocation Type | Single-year Grants |
Section | 一般 |
Research Field |
Media informatics/Database
|
Research Institution | Osaka University |
Principal Investigator |
ISHIHARA Yasunori Osaka University, 大学院・情報科学研究科, 准教授 (00263434)
|
Project Period (FY) |
2008 – 2010
|
Project Status |
Completed (Fiscal Year 2010)
|
Budget Amount *help |
¥3,900,000 (Direct Cost: ¥3,000,000、Indirect Cost: ¥900,000)
Fiscal Year 2010: ¥1,040,000 (Direct Cost: ¥800,000、Indirect Cost: ¥240,000)
Fiscal Year 2009: ¥1,300,000 (Direct Cost: ¥1,000,000、Indirect Cost: ¥300,000)
Fiscal Year 2008: ¥1,560,000 (Direct Cost: ¥1,200,000、Indirect Cost: ¥360,000)
|
Keywords | データベースセキュリティ / 安全性検証 / 推論攻撃 / 安全性定義 / インスタンス独立 |
Research Abstract |
In this study, we first proposed static security definitions against inference attacks on databases, based on a concept of "query resolution". Inference attacks mean that an attacker tries to infer the execution result of a query unauthorized to the attacker from the execution results of queries authorized to the attacker. Then, we focused on conjunctive queries and showed some properties of query resolution. Moreover, under some assumptions, we proposed decidable necessary and sufficient conditions for existence of resolution relation between two conjunctive queries.
|
Report
(4 results)
Research Products
(21 results)