loading...
Securing OLAP Data Cubes Against Privacy Breaches
Berkeley, California May 09-May 12
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/SECPRI.2004.13013222004 IEEE Symposium on Security and P ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Lingyu Wang, George Mason University, Fairfax, VA
Sushil Jajodia, George Mason University, Fairfax, VA
Duminda Wijesekera, George Mason University, Fairfax, VA
An OLAP (On-line Analytic Processing) system with insufficient security countermeasures may disclose sensitive information and breach an individual's privacy. Both unauthorized accesses and malicious inferences may lead to such inappropriate disclosures. Existing access control models in relational databases are unsuitable for the multi-dimensional data cubes used by OLAP. Inference control methods in statistical databases are expensive and apply to limited situations only. We first devise a flexible framework for specifying authorization objects in data cubes. The framework can partition a data cube both vertically based on dimension hierarchies and horizontally based on slices of data. We then study how to control inferences in data cubes. The proposed method eliminates both unauthorized accesses and malicious inferences. Its effectiveness does not depend on specific types of aggregation functions, external knowledge, or sensitivity criteria. The technique is efficient and readily implementable. Its on-line performance overhead is comparable to that of the minimal security requirement. Its enforcement requires little modification to existing OLAP systems.
Citation:
Lingyu Wang, Sushil Jajodia, Duminda Wijesekera, "Securing OLAP Data Cubes Against Privacy Breaches," sp, pp.161, 2004 IEEE Symposium on Security and Privacy, 2004
Usage of this product signifies your acceptance of the Terms of Use.