Orthogonal optimization of subqueries and aggregation
SIGMOD '01 Proceedings of the 2001 ACM SIGMOD international conference on Management of data
Volcano An Extensible and Parallel Query Evaluation System
IEEE Transactions on Knowledge and Data Engineering
A Rule Engine for Query Transformation in Starburst and IBM DB2 C/S DBMS
ICDE '97 Proceedings of the Thirteenth International Conference on Data Engineering
Answering queries using views: A survey
The VLDB Journal — The International Journal on Very Large Data Bases
Extending query rewriting techniques for fine-grained access control
SIGMOD '04 Proceedings of the 2004 ACM SIGMOD international conference on Management of data
Optimizing nested queries with parameter sort orders
VLDB '05 Proceedings of the 31st international conference on Very large data bases
The containment problem for Real conjunctive queries with inequalities
Proceedings of the twenty-fifth ACM SIGMOD-SIGACT-SIGART symposium on Principles of database systems
On the efficiency of checking perfect privacy
Proceedings of the twenty-fifth ACM SIGMOD-SIGACT-SIGART symposium on Principles of database systems
A formal analysis of information disclosure in data exchange
Journal of Computer and System Sciences
QUIST: a system for semantic query optimization in relational databases
VLDB '81 Proceedings of the seventh international conference on Very Large Data Bases - Volume 7
Knowledge-based query processing
VLDB '80 Proceedings of the sixth international conference on Very Large Data Bases - Volume 6
Auditing compliance with a Hippocratic database
VLDB '04 Proceedings of the Thirtieth international conference on Very large data bases - Volume 30
ICDE '08 Proceedings of the 2008 IEEE 24th International Conference on Data Engineering
PolicyReplay: misconfiguration-response queries for data breach reporting
Proceedings of the VLDB Endowment
Proceedings of the VLDB Endowment
DBSec'12 Proceedings of the 26th Annual IFIP WG 11.3 conference on Data and Applications Security and Privacy
The power of data use management in action
Proceedings of the 2013 ACM SIGMOD International Conference on Management of Data
On scaling up sensitive data auditing
Proceedings of the VLDB Endowment
Dynamic policy adaptation for inference control of queries to a propositional information system
Journal of Computer Security - DBSec 2011
Hi-index | 0.00 |
We address the problem of data auditing that asks for an audit trail of all users and queries that potentially breached information about sensitive data. A lot of the previous work in data auditing has focused on providing strong privacy guarantees and studied the class of queries that can be audited efficiently while retaining the guarantees. In this paper, we approach data auditing from a different perspective. Our goal is to design an auditing system for arbitrary SQL queries containing constructs such as grouping, aggregation and correlated subqueries. Pivoted on the ability to feasibly address arbitrary queries, we study (1)~what privacy guarantees we can expect, and (2)~how we can efficiently perform auditing.