کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
458117 696106 2013 12 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
InnoDB database forensics: Enhanced reconstruction of data manipulation queries from redo logs
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
InnoDB database forensics: Enhanced reconstruction of data manipulation queries from redo logs
چکیده انگلیسی

The InnoDB storage engine is one of the most widely used storage engines for MySQL. This paper discusses possibilities of utilizing the redo logs of InnoDB databases for forensic analysis, as well as the extraction of the information needed from the MySQL definition files, in order to carry out this kind of analysis. Since the redo logs are internal log files of the storage engine and thus cannot easily be changed undetected, this forensic method can be very useful against adversaries with administrator privileges, which could otherwise cover their tracks by manipulating traditional log files intended for audit and control purposes. Based on a prototype implementation, we show methods for recovering Insert, Delete and Update statements issued against a database.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Information Security Technical Report - Volume 17, Issue 4, May 2013, Pages 227–238
نویسندگان
, , , , ,