Securing data warehouses from web-based intrusions

  • Authors:
  • Ricardo Jorge Santos;Jorge Bernardino;Marco Vieira;Deolinda M. L. Rasteiro

  • Affiliations:
  • CISUC --- DEI --- FCTUC, University of Coimbra, Coimbra, Portugal;CISUC --- DEIS --- ISEC, Polytechnic Institute of Coimbra, Coimbra, Portugal;CISUC --- DEI --- FCTUC, University of Coimbra, Coimbra, Portugal;DFM --- ISEC, Polytechnic Institute of Coimbra, Coimbra, Portugal

  • Venue:
  • WISE'12 Proceedings of the 13th international conference on Web Information Systems Engineering
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

Decision support for 24/7 enterprises requires 24/7 available Data Warehouses (DWs). In this context, web-based connections to DWs are used by business management applications demanding continuous availability. Given that DWs store highly sensitive business data, a web-based connection provides a door for outside attackers and thus, creates a main security issue. Database Intrusion Detection Systems (DIDS) deal with intrusions in databases. However, given the distinct features of DW environments most DIDS either generate too many false alarms or too low intrusion detection rates. This paper proposes a real-time DIDS explicitly tailored for web-access DWs, functioning at the SQL command level as an extension of the DataBase Management System, using an SQL-like rule set and predefined checkups on well-defined DW features, which enable wide security coverage. We also propose a risk exposure method for ranking alerts which is much more effective than alert correlation techniques.