发明名称 System and methods for adaptive behavior based access control
摘要 Typical conventional content based database security scheme mechanisms employ a predefined criteria for identifying access attempts to sensitive or prohibited data. An operator, identifies the criteria indicative of prohibited data, and the conventional content based approach scans or "sniffs" the transmissions for data items matching the predefined criteria. In many environments, however, database usage tends to follow repeated patterns of legitimate usage. Such usage patterns, if tracked, are deterministic of normal, allowable data access attempts. Similarly, deviant data access attempts may be suspect. Recording and tracking patterns of database usage allows learning of an expected baseline of normal DB activity, or application behavior. Identifying baseline divergent access attempts as deviant, unallowed behavior, allows automatic learning and implementation of behavior based access control. In this manner, data access attempts not matching previous behavior patterns are disallowed.
申请公布号 US7506371(B1) 申请公布日期 2009.03.17
申请号 US20040762660 申请日期 2004.01.22
申请人 GUARDIUM, INC. 发明人 BEN-NATAN RON
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址