RE: IDS for DataBase Systems.

From: Kohlenberg, Toby (toby.kohlenberg@intel.com)
Date: 11/15/02


Date: Fri, 15 Nov 2002 10:31:37 -0800
From: "Kohlenberg, Toby" <toby.kohlenberg@intel.com>
To: "Galappatti, Kishantha" <Kishantha.Galappatti@gs.com>, "Hemant Ramnani" <ramnani@cs.umn.edu>, <focus-ids@securityfocus.com>

You'll likely here this from lots of people but that's a vulnerability
scanner, not an IDS. There are products that claim to do some sort of
firewalling or application-level monitoring for databases but I don't
know of any that actually offer IDS capabilities. Some of the
application-level firewalls for web servers actually do block various
database insertion attacks and such.

Please post anything you find to the list.

Thanks,
toby

> -----Original Message-----
> From: Galappatti, Kishantha [mailto:Kishantha.Galappatti@gs.com]
> Sent: Thursday, November 14, 2002 6:24 AM
> To: 'Hemant Ramnani'; focus-ids@securityfocus.com
> Cc: Hemant Ramnani
> Subject: RE: IDS for DataBase Systems.
>
>
> ISS has a product called Database Scanner
>
> -----Original Message-----
> From: Hemant Ramnani [mailto:ramnani@cs.umn.edu]
> Sent: Wednesday, November 13, 2002 12:30 PM
> To: focus-ids@securityfocus.com
> Cc: Hemant Ramnani
> Subject: IDS for DataBase Systems.
>
>
> Hello Everyone,
> I have seen a lot of papers, research work and commercial products for
> intrusion detection systems in networks. However I was
> wondering if the same
> has been done for intrusion detection in DATABASE SYSTEMS in
> particular,
> specially those dealing with using data mining techniques for
> the same.
>
> Any help would be really appreciated.
>
> Thanks,
> Hemant.R
>
> Hemant Ramnani
> Masters student, Computer Science
> University Of Minnesota, Twin Cities
> Contact no: 612 379 2807 (R)
> 612 625 6597 (O)
>



Relevant Pages

  • RE: Scanners and unpublished vulnerabilities - Full Disclosure
    ... An IDS is only really effective when you know the potential risk ... vulnerability and searches for more information on that vulnerability ... Many companies treat security breaches in a reactive manner. ... Something else to keep in mind -- a security scanner need not actively ...
    (Pen-Test)
  • ID scanner
    ... I have a wireless scanner that constantly scan for IDs like the ... on how close the wireless device come close to the scanner. ... But I do want fast detection of which ID comes up front to the ...
    (microsoft.public.vc.mfc)
  • ID scanner
    ... I have a wireless scanner that constantly scan for IDs like the ... on how close the wireless device come close to the scanner. ... But I do want fast detection of which ID comes up front to the ...
    (microsoft.public.dotnet.framework)
  • ID scanner
    ... I have a wireless scanner that constantly scan for IDs like the ... on how close the wireless device come close to the scanner. ... But I do want fast detection of which ID comes up front to the ...
    (microsoft.public.vc.language)
  • ID scanner
    ... I have a wireless scanner that constantly scan for IDs like the ... on how close the wireless device come close to the scanner. ... But I do want fast detection of which ID comes up front to the ...
    (microsoft.public.dotnet.general)

Quantcast