Algorithm to prevent and detect insider multi transaction malicious activity in database

Almost all systems all over the world suffer from outsider and insider attacks. Outsider attacks are those that come from outside the system, however, insider attacks are those that are launched from insiders of the system. In this thesis is concentrated on insider attacks detection and prevention o...

Full description

Saved in:
Bibliographic Details
Main Author: Dashti Khavidaki, Seyyed Mojtaba
Format: Thesis
Language:English
Published: 2013
Subjects:
Online Access:http://eprints.utm.my/id/eprint/37075/5/SeyyedMojtabaDashtiMFSKSM2013.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
id my-utm-ep.37075
record_format uketd_dc
spelling my-utm-ep.370752017-07-13T03:40:20Z Algorithm to prevent and detect insider multi transaction malicious activity in database 2013-06 Dashti Khavidaki, Seyyed Mojtaba TK7885-7895 Computer engineer. Computer hardware Almost all systems all over the world suffer from outsider and insider attacks. Outsider attacks are those that come from outside the system, however, insider attacks are those that are launched from insiders of the system. In this thesis is concentrated on insider attacks detection and prevention on the application level; database is our focus. Insiders have more knowledge about the underlying systems. Because of their knowledge and their privileges of the system resources; their risk can be greater and more severe. The insider execute multi transaction to inference the data, this is called multi transaction malicious. Several techniques have been proposed that tackled the insider multi transaction malicious problem, but most of them concentrate on insider threat detection in computer system level. We describe an algorithm for insider threat detection in database systems that handle multi transaction malicious activity. Our simulation results show resistance against multi transaction insider attack. Also, our results show good performance in terms of decreasing false alarms and increasing coverage detection. 2013-06 Thesis http://eprints.utm.my/id/eprint/37075/ http://eprints.utm.my/id/eprint/37075/5/SeyyedMojtabaDashtiMFSKSM2013.pdf application/pdf en public masters Universiti Teknologi Malaysia, Faculty of Computing Faculty of Computing
institution Universiti Teknologi Malaysia
collection UTM Institutional Repository
language English
topic TK7885-7895 Computer engineer
Computer hardware
spellingShingle TK7885-7895 Computer engineer
Computer hardware
Dashti Khavidaki, Seyyed Mojtaba
Algorithm to prevent and detect insider multi transaction malicious activity in database
description Almost all systems all over the world suffer from outsider and insider attacks. Outsider attacks are those that come from outside the system, however, insider attacks are those that are launched from insiders of the system. In this thesis is concentrated on insider attacks detection and prevention on the application level; database is our focus. Insiders have more knowledge about the underlying systems. Because of their knowledge and their privileges of the system resources; their risk can be greater and more severe. The insider execute multi transaction to inference the data, this is called multi transaction malicious. Several techniques have been proposed that tackled the insider multi transaction malicious problem, but most of them concentrate on insider threat detection in computer system level. We describe an algorithm for insider threat detection in database systems that handle multi transaction malicious activity. Our simulation results show resistance against multi transaction insider attack. Also, our results show good performance in terms of decreasing false alarms and increasing coverage detection.
format Thesis
qualification_level Master's degree
author Dashti Khavidaki, Seyyed Mojtaba
author_facet Dashti Khavidaki, Seyyed Mojtaba
author_sort Dashti Khavidaki, Seyyed Mojtaba
title Algorithm to prevent and detect insider multi transaction malicious activity in database
title_short Algorithm to prevent and detect insider multi transaction malicious activity in database
title_full Algorithm to prevent and detect insider multi transaction malicious activity in database
title_fullStr Algorithm to prevent and detect insider multi transaction malicious activity in database
title_full_unstemmed Algorithm to prevent and detect insider multi transaction malicious activity in database
title_sort algorithm to prevent and detect insider multi transaction malicious activity in database
granting_institution Universiti Teknologi Malaysia, Faculty of Computing
granting_department Faculty of Computing
publishDate 2013
url http://eprints.utm.my/id/eprint/37075/5/SeyyedMojtabaDashtiMFSKSM2013.pdf
_version_ 1747816498142904320