Skip Navigation

IEICE Transactions on Information and Systems 2005 E88-D(12):2767-2776; doi:10.1093/ietisy/e88-d.12.2767
This Article
Right arrow Full Text (PDF)
Right arrow References
Right arrow Alert me when this article is cited
Right arrow Alert me if a correction is posted
Services
Right arrow Email this article to a friend
Right arrow Similar articles in this journal
Right arrow Alert me to new issues of the journal
Right arrow Add to My Personal Archive
Right arrow Download to citation manager
Right arrow Request Permissions
Google Scholar
Right arrow Articles by ISHIHARA, Y.
Right arrow Articles by FUJIWARA, T.
Right arrow Search for Related Content
Social Bookmarking
 Add to CiteULike   Add to Connotea   Add to Del.icio.us  
What's this?

Copyright © 2005 The Institute of Electronics, Information and Communication Engineers

Regular Section -- Papers -- Database

Security against Inference Attacks on Negative Information in Object-Oriented Databases*

Yasunori ISHIHARA1, Shuichiro AKO1,2 and Toru FUJIWARA1

1 The authors are with the Graduate School of Information Science and Technology, Osaka University, Suita-shi, 565-0871 Japan. E-mail: ishihara{at}ist.osaka-u.ac.jp, 2 Presently, with Japan Patent Office.

Inference attacks mean that a user derives information on the execution results of unauthorized queries from the execution results of authorized queries. Most of the studies on inference attacks so far have focused on only inference of positive information (i.e., what value is the execution result of a given unauthorized query). However, negative information (i.e., what value is never the execution result of a given unauthorized query) is also sensitive in many cases. This paper presents the following results on the security against inference attacks on negative information in object-oriented databases. First, inference of negative information is formalized under a model of object-oriented databases called method schemas. Then, the following two types of security problems are defined: (1) Is a given database instance secure against inference attacks on given negative information? (2) Are all of the database instances of a given database schema secure against inference attacks on given negative information? It is shown that the first problem is decidable in polynomial time in the description size of the database instance while the second one is undecidable. A decidable sufficient condition for any database instance of a given database schema to be secure is also proposed. Finally, it is shown that for a monadic schema (i.e., every method has exactly one parameter), this sufficient condition is also a necessary one.

Key Words: object-oriented database, authorization, inference attack, negative information


Manuscript received August 30, 2004. Manuscript revised June 2, 2005.

* A preliminary version of this paper was presented at the 4th International Conference on Information and Communications Security (ICICS'02) [10].


Add to CiteULike CiteULike   Add to Connotea Connotea   Add to Del.icio.us Del.icio.us    What's this?




Disclaimer:
Please note that abstracts for content published before 1996 were created through digital scanning and may therefore not exactly replicate the text of the original print issues. All efforts have been made to ensure accuracy, but the Publisher will not be held responsible for any remaining inaccuracies. If you require any further clarification, please contact our Customer Services Department.