{"id":"https://openalex.org/W2089303860","doi":"https://doi.org/10.1145/2699026.2699111","title":"DetAnom","display_name":"DetAnom","publication_year":2015,"publication_date":"2015-02-23","ids":{"openalex":"https://openalex.org/W2089303860","doi":"https://doi.org/10.1145/2699026.2699111","mag":"2089303860"},"language":"en","primary_location":{"id":"doi:10.1145/2699026.2699111","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2699026.2699111","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 5th ACM Conference on Data and Application Security and Privacy","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5053169357","display_name":"Syed Rafiul Hussain","orcid":"https://orcid.org/0000-0001-9222-8544"},"institutions":[{"id":"https://openalex.org/I219193219","display_name":"Purdue University West Lafayette","ror":"https://ror.org/02dqehb95","country_code":"US","type":"education","lineage":["https://openalex.org/I219193219"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Syed Rafiul Hussain","raw_affiliation_strings":["Purdue University, West Lafayette, IN, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Purdue University, West Lafayette, IN, USA","institution_ids":["https://openalex.org/I219193219"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5078371791","display_name":"Asmaa Sallam","orcid":null},"institutions":[{"id":"https://openalex.org/I219193219","display_name":"Purdue University West Lafayette","ror":"https://ror.org/02dqehb95","country_code":"US","type":"education","lineage":["https://openalex.org/I219193219"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Asmaa M. Sallam","raw_affiliation_strings":["Purdue University, West Lafayette, IN, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Purdue University, West Lafayette, IN, USA","institution_ids":["https://openalex.org/I219193219"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5061694501","display_name":"Elisa Bertino","orcid":"https://orcid.org/0000-0002-4029-7051"},"institutions":[{"id":"https://openalex.org/I219193219","display_name":"Purdue University West Lafayette","ror":"https://ror.org/02dqehb95","country_code":"US","type":"education","lineage":["https://openalex.org/I219193219"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Elisa Bertino","raw_affiliation_strings":["Purdue University, West Lafayette, IN, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Purdue University, West Lafayette, IN, USA","institution_ids":["https://openalex.org/I219193219"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":16.4914,"has_fulltext":false,"cited_by_count":41,"citation_normalized_percentile":{"value":0.98886834,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"25","last_page":"35"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12479","display_name":"Web Application Security Vulnerabilities","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12479","display_name":"Web Application Security Vulnerabilities","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9988999962806702,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8734991550445557},{"id":"https://openalex.org/keywords/sql","display_name":"SQL","score":0.5937877893447876},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.5603818893432617},{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.5198283791542053},{"id":"https://openalex.org/keywords/anomaly-detection","display_name":"Anomaly detection","score":0.4788103699684143},{"id":"https://openalex.org/keywords/access-control","display_name":"Access control","score":0.4590443968772888},{"id":"https://openalex.org/keywords/signature","display_name":"Signature (topology)","score":0.4523214101791382},{"id":"https://openalex.org/keywords/view","display_name":"View","score":0.4459034502506256},{"id":"https://openalex.org/keywords/database-security","display_name":"Database security","score":0.4367597699165344},{"id":"https://openalex.org/keywords/database-administrator","display_name":"Database administrator","score":0.4147213101387024},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.36770099401474},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.2170354425907135},{"id":"https://openalex.org/keywords/database-design","display_name":"Database design","score":0.1947551965713501}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8734991550445557},{"id":"https://openalex.org/C510870499","wikidata":"https://www.wikidata.org/wiki/Q47607","display_name":"SQL","level":2,"score":0.5937877893447876},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.5603818893432617},{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.5198283791542053},{"id":"https://openalex.org/C739882","wikidata":"https://www.wikidata.org/wiki/Q3560506","display_name":"Anomaly detection","level":2,"score":0.4788103699684143},{"id":"https://openalex.org/C527821871","wikidata":"https://www.wikidata.org/wiki/Q228502","display_name":"Access control","level":2,"score":0.4590443968772888},{"id":"https://openalex.org/C2779696439","wikidata":"https://www.wikidata.org/wiki/Q7512811","display_name":"Signature (topology)","level":2,"score":0.4523214101791382},{"id":"https://openalex.org/C54239708","wikidata":"https://www.wikidata.org/wiki/Q1329910","display_name":"View","level":3,"score":0.4459034502506256},{"id":"https://openalex.org/C2778553114","wikidata":"https://www.wikidata.org/wiki/Q1035293","display_name":"Database security","level":2,"score":0.4367597699165344},{"id":"https://openalex.org/C70236469","wikidata":"https://www.wikidata.org/wiki/Q1078262","display_name":"Database administrator","level":2,"score":0.4147213101387024},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.36770099401474},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.2170354425907135},{"id":"https://openalex.org/C148840519","wikidata":"https://www.wikidata.org/wiki/Q1049878","display_name":"Database design","level":2,"score":0.1947551965713501},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2699026.2699111","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2699026.2699111","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 5th ACM Conference on Data and Application Security and Privacy","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.7599999904632568,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320306110","display_name":"U.S. Department of Homeland Security","ror":"https://ror.org/00jyr0d86"},{"id":"https://openalex.org/F4320308204","display_name":"Northrop Grumman","ror":"https://ror.org/05kewds18"},{"id":"https://openalex.org/F4320332815","display_name":"Advanced Research Projects Agency","ror":"https://ror.org/02caytj08"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":20,"referenced_works":["https://openalex.org/W123548525","https://openalex.org/W319519186","https://openalex.org/W348147891","https://openalex.org/W1497959280","https://openalex.org/W1548806133","https://openalex.org/W1658853941","https://openalex.org/W1974205438","https://openalex.org/W2009489720","https://openalex.org/W2080696000","https://openalex.org/W2086658561","https://openalex.org/W2088826400","https://openalex.org/W2089052814","https://openalex.org/W2096905893","https://openalex.org/W2098129634","https://openalex.org/W2101000001","https://openalex.org/W2104993088","https://openalex.org/W2113531724","https://openalex.org/W2123886726","https://openalex.org/W2137569638","https://openalex.org/W2148488647"],"related_works":["https://openalex.org/W2175786273","https://openalex.org/W2372684655","https://openalex.org/W2360287142","https://openalex.org/W1965556797","https://openalex.org/W2077556543","https://openalex.org/W4254465967","https://openalex.org/W1482564230","https://openalex.org/W101461791","https://openalex.org/W1603211808","https://openalex.org/W2349570899"],"abstract_inverted_index":{"Database":[0],"Management":[1],"Systems":[2],"(DBMSs)":[3],"provide":[4],"access":[5,17,56],"control":[6,57],"mechanisms":[7],"that":[8,118,160,168,215,289,304],"allow":[9],"database":[10,24,50,252],"administrators":[11],"(DBA)":[12],"to":[13,19,47,67,77,83,97,166,231,244,251,295],"grant":[14],"application":[15,61,85,124,162,177,223,234],"programs":[16,62,70,86],"privileges":[18],"databases.":[20],"However,":[21],"securing":[22],"the":[23,41,55,65,69,81,123,130,145,150,157,161,172,176,181,189,193,200,233,246,283,305],"alone":[25],"is":[26,75,197,202,214,242,293],"not":[27,72],"enough,":[28],"as":[29,204,255,267],"attackers":[30],"aiming":[31],"at":[32],"stealing":[33],"data":[34,66,82,247],"can":[35,59,127],"take":[36],"advantage":[37,208],"of":[38,80,122,136,141,192,209,222,228,301],"vulnerabilities":[39,224],"in":[40,134,171],"privileged":[42],"applications":[43,46,253],"and":[44,111,155,184,261,282,297,303],"make":[45],"issue":[48],"malicious":[49,99],"queries.":[51],"Therefore,":[52],"even":[53],"though":[54],"mechanism":[58,95,213,241,273,307],"prevent":[60,78],"from":[63,102,248,263],"accessing":[64],"which":[68,84,126],"are":[71,87,186],"authorized,":[73],"it":[74],"unable":[76],"misuse":[79],"authorized":[88,104],"for":[89],"access.":[90],"Hence,":[91],"we":[92,109,216],"need":[93,217],"a":[94,120,153,179,198,237,275],"able":[96,243],"detect":[98],"behavior":[100,133],"resulting":[101],"previously":[103],"applications.":[105],"In":[106],"this":[107],"paper,":[108],"design":[110],"implement":[112],"an":[113],"anomaly":[114,211],"detection":[115,173,212,306],"mechanism,":[116],"DetAnom,":[117],"creates":[119],"profile":[121,151],"program":[125,163],"succinctly":[128],"represent":[129],"application's":[131],"normal":[132],"terms":[135],"its":[137],"interaction":[138],"(i.e.,":[139],"submission":[140],"SQL":[142,259],"queries)":[143],"with":[144,274],"database.":[146],"For":[147],"each":[148],"query,":[149,180],"keeps":[152],"signature":[154,183],"also":[156,262],"corresponding":[158,182],"constraints":[159,185],"must":[164],"satisfy":[165],"submit":[167],"query.":[169],"Later":[170],"phase,":[174],"whenever":[175],"issues":[178],"checked":[187],"against":[188],"current":[190],"context":[191],"application.":[194],"If":[195],"there":[196],"mismatch,":[199],"query":[201],"marked":[203],"anomalous.":[205],"The":[206],"main":[207],"our":[210,239,272,290],"neither":[218],"any":[219,226],"previous":[220],"knowledge":[221],"nor":[225],"example":[227],"possible":[229],"attacks":[230,249,266],"build":[232],"profiles.":[235],"As":[236],"result,":[238],"DetAnom":[240],"protect":[245],"tailored":[250],"such":[254],"code":[256],"modification":[257],"attacks,":[258],"injections,":[260],"other":[264],"data-centric":[265],"well.":[268],"We":[269],"have":[270],"implemented":[271],"software":[276],"testing":[277,281],"technique":[278,292],"called":[279],"concolic":[280],"PostgreSQL":[284],"DBMS.":[285],"Experimental":[286],"results":[287],"show":[288],"profiling":[291],"close":[294],"accurate,":[296],"requires":[298],"acceptable":[299],"amount":[300],"time,":[302],"incurs":[308],"low":[309],"run-time":[310],"overhead.":[311]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":3},{"year":2020,"cited_by_count":6},{"year":2019,"cited_by_count":6},{"year":2018,"cited_by_count":6},{"year":2017,"cited_by_count":6},{"year":2016,"cited_by_count":6},{"year":2015,"cited_by_count":2}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2016-06-24T00:00:00"}
