Database security protection method

By dynamically adjusting the access rights of the data sharing platform based on users' historical behavior and real-time monitoring, the security risks and user experience issues of access control methods in existing technologies are resolved, and more efficient risk assessment and security response are achieved.

CN120724451APending Publication Date: 2025-09-30ZHEJIANG BINGBING NETWORK TECH CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202510275508.0
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-03-10
Publication Date
2025-09-30

AI Technical Summary

Technical Problem

The access control methods of data sharing platforms in existing technologies cannot be dynamically adjusted according to users' real-time behavior or risk assessment results, resulting in security risks and poor user experience. In addition, there is a lack of effective mechanisms to monitor abnormal behavior, which may lead to data leakage.

Method used

By obtaining the user ID to determine the user type, dynamically adjust the access permission level, monitor abnormal behavior based on the user's historical behavior and real-time behavior, including access frequency, IP address changes and other dimensions, and adjust the user's access permission level in real time.

Benefits of technology

It improves the comprehensiveness and accuracy of access risk assessment, reduces misjudgment of low-risk behaviors, dynamically responds to security incidents, and enhances the security and user experience of the data sharing platform.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120724451A_ABST
    Figure CN120724451A_ABST
Patent Text Reader

Abstract

The invention relates to the technical field of database security protection, and discloses a database security protection method, which specifically comprises the following steps: if a user is a new user, calculating the ratio of the number of different IP addresses to the total number N of the IP addresses when the user accesses according to the access frequency of the user accessing the same type of data sharing platform, judging whether the access permission level of the user can be adjusted or not according to the access permission level of the user and the proportion of the number of platforms with the access permission level of the user in the N platforms; if the user is not a new user and applies for adjusting the access permission level, judging whether the user meets an adjustment requirement or not according to the access behavior of the user in an application earlier period; if the user has an abnormal behavior during access, adjusting the access permission level of the user; according to the method, effective management of the user access authority is realized through multi-dimensional user behavior analysis and a mode of dynamically adjusting the access authority level.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the technical field of database security protection, and in particular to a database security protection method. Background Art

[0002] With the development of Internet technology, data sharing platforms have become an important tool for communication and collaboration between enterprises and organizations. Data sharing platforms aim to promote the effective use of data resources, improve work efficiency and decision-making quality. However, due to the sensitivity and value of data, ensuring data security and privacy has become particularly important. Access control is one of the core components of the data sharing platform security strategy, which determines which users can access which data and what types of access operations can be performed.

[0003] Among the existing data sharing platform control methods, most access control methods set the permission level when the user registers and rarely update it in the subsequent process, which is not conducive to adapting to the ever-changing security environment.

[0004] The existing access control methods for data sharing platforms have a single user type classification. Most platforms simply divide permissions based on the user's identity or role, ignoring the user's historical behavior and risky behavior, which may lead to security vulnerabilities or unnecessary access restrictions.

[0005] In traditional data sharing platform control methods, the permission adjustment process of some platforms is too rigid and cannot be dynamically adjusted according to users' real-time behavior or risk assessment results, which affects the user experience and increases security risks.

[0006] Existing data sharing platform control methods often lack effective mechanisms to monitor and respond to abnormal user behavior, such as using multiple IP addresses to access, not accessing the platform for a long time, etc., which may lead to data leakage or other security issues. Summary of the Invention

[0007] The present invention provides a database security protection method for promoting the solution of the problems mentioned in the above background technology.

[0008] The present invention provides the following technical solution: Optionally, a database security protection method is characterized by comprising:

[0009] Get the user ID and determine the user type based on the user ID;

[0010] If the user is a new user and there is no access risk, the user's access permission level will be adjusted to level one.

[0011] The first-level access rights specifically refer to the data sharing platform having first-level access rights, second-level access rights, third-level access rights and fourth-level access rights, where the first-level access rights are the lowest level of access rights and the fourth-level access rights are the highest level of access rights;

[0012] If a user applies to adjust the access permission level, if the user is a new user, the user's access permission level will not be adjusted;

[0013] If the user is not a new user, obtain the user's access behavior in the period before the application, and determine whether the user meets the adjustment requirements based on the user's access behavior in the period before the application;

[0014] If the user's access behavior meets the adjustment requirements, the user's access permission level is adjusted;

[0015] If a user exhibits abnormal behavior during access, the user's access permission level will be adjusted;

[0016] When a user attempts to access, whether the user is allowed to access is determined based on the user's access permission level.

[0017] Optionally, obtaining a user ID and determining the user type based on the user ID is as follows:

[0018] Get the user ID and get the user's registration time T based on the user ID;

[0019] Set the time value t;

[0020] The units of T and t are days;

[0021] If T < t, the user is a new user;

[0022] If T ≥ t, the user is not a new user.

[0023] Optionally, if the user is a new user and there is no access risk, the user's access permission level is adjusted to level one, specifically:

[0024] The access risk is specifically judged as follows:

[0025] Get the number N of similar data sharing platforms accessed by users;

[0026] Calculate the frequency of users accessing similar data sharing platforms;

[0027] It is calculated as the ratio of the number of similar data sharing platforms visited by the user, N, to the user registration time, T, specifically: N ÷ T;

[0028] Set a fixed value , if the access frequency is greater than or equal to the fixed value , the user has access risk, and the access risk level is ;

[0029] If the access frequency is less than the fixed value , remember that there is no access risk for users;

[0030] Obtain the time when the user first visits N similar data sharing platforms;

[0031] According to the time of first access, N similar data sharing platforms are recorded as the first platform, the second platform, the third platform...the Nth platform;

[0032] Among them, the time when users first visit the first platform is the earliest, and the time when they first visit the Nth platform is the latest;

[0033] Obtain the user's IP address when accessing the first platform, the second platform, the third platform, and so on;

[0034] Count the number of different IP addresses among the N IP addresses obtained;

[0035] Calculate the ratio of the number of different IP addresses to the total number of IP addresses N;

[0036] Set a fixed value If the ratio of the number of different IP addresses to the total number of IP addresses N is greater than or equal to a fixed value , the user has access risk, and the access risk level is ;

[0037] If the ratio of the number of different IP addresses to the total number of IP addresses N is less than a fixed value , remember that there is no access risk for users.

[0038] Optionally, if the user is a new user and there is no access risk, adjusting the user's access permission level to level one access permission further includes:

[0039] If the user has access rights on the first platform, the second platform, the third platform, and so on, the Nth platform, the user is marked;

[0040] The existence of access rights specifically refers to the user having any one of the access rights levels of level one, level two, level three and level four;

[0041] Count the number of times a user is tagged;

[0042] Calculate the ratio of the number of times a user is tagged to the number N of similar data sharing platforms the user visits;

[0043] Set a fixed value If the ratio of the number of times a user is marked to the number of similar data sharing platforms the user visits is less than a fixed value , the user has access risk, and the access risk level is ;

[0044] If the ratio of the number of times a user is marked to the number of similar data sharing platforms the user visits is greater than or equal to a fixed value , remember that there is no access risk for users;

[0045] If the user is a new user, calculate the user's total access risk level W, which is specifically the sum of the user's access risk level values. Specifically: If the user's access risk is and , then the user's total risk level ;

[0046] in ,and ;

[0047] If the user's total access risk level W is greater than a value , record that the user has access risks;

[0048] If the user's total access risk level W is less than or equal to a value , record that the user does not have access risk, and adjust the user's access permission level to level one access permission.

[0049] Optionally, if the user is not a new user, the access behavior of the user in the period before the application is obtained, and whether the user meets the adjustment requirements is determined based on the access behavior in the period before the application is made, specifically:

[0050] The application pre-period is specifically the 7 days before the user applies to adjust the access permission level.

[0051] Get the user's access level V and the access level that the user has applied to adjust ;

[0052] Calculate the ratio of the user's access level V to the value of the previous application period 7, specifically: V ÷ 7;

[0053] Get the number R of similar data sharing platforms that users visited during the early application period;

[0054] Get the time when the user first visits R similar data sharing platforms;

[0055] According to the time of first access, R similar data sharing platforms are recorded as the first platform in the early stage, the second platform in the early stage, the third platform in the early stage, and so on, the Rth platform in the early stage;

[0056] Access privilege levels for the first platform in the early stage, the second platform in the early stage, the third platform in the early stage...the Rth platform in the early stage ;

[0057] Calculate the user's access rights level on the first platform in the early stage, the second platform in the early stage, the third platform in the early stage, and so on. The average grade of B;

[0058] ;

[0059] If a user applies to adjust the access permission level on any of the platforms including the previous first platform, the previous second platform, the previous third platform, ... the previous Rth platform, the platform will be recorded as the adjusted platform;

[0060] Count the number K of adjusted platforms among the R platforms and calculate the ratio of K to R: K÷R;

[0061] Set fixed value ;

[0062] If the ratio , the user's access rights level on the initial first platform, initial second platform, initial third platform...initial R platform Average grade , Ratio (K÷R) < fixed value And the absolute value , record the user meets the adjustment requirements;

[0063] If the ratio , or use the user's access permission level on the first platform in the early stage, the second platform in the early stage, the third platform in the early stage...the Rth platform in the early stage Average grade , or ratio , or the absolute value , record that the user does not meet the adjustment requirements;

[0064] If the user does not meet the adjustment requirements, the user's application for access permission level adjustment will be retained, and the user will be judged again 7 days after the application to determine whether the user meets the adjustment requirements.

[0065] Optionally, if the user has abnormal behavior during access, the user's access permission level is adjusted, specifically:

[0066] If a user accesses the data sharing platform using different IP addresses on the same day, and the number of different IP addresses is greater than or equal to 3;

[0067] Or if the user has not accessed the data sharing platform in the past 30 days;

[0068] Or if the user has applied to adjust the access permission level three or more times in the past seven days;

[0069] If a user has abnormal behavior when accessing the data sharing platform, the user's access permission level will be reduced.

[0070] Optionally, when the user attempts to access, determining whether the user is allowed to access is performed based on the user's access permission level, specifically:

[0071] Get the permission level of the user to access the module ;

[0072] If the user's access permission level , then the user can access;

[0073] If the user's access permission level , the user cannot access.

[0074] The present invention has the following beneficial effects:

[0075] 1. This database security protection method determines whether a user is a new user based on time, which helps provide different access control methods for different types of users. It also conducts access risk assessments on new users, including access frequency, the proportion of different IP addresses, and the proportion of platforms with access level permissions, to effectively identify potential security risks.

[0076] 2. This database security protection method prioritizes different aspects of access risks for new users, which can reduce overreaction to users' low-risk access behaviors and reduce misjudgment of users' low-risk access behaviors, improve identification efficiency, and ensure the comprehensiveness and accuracy of access risk assessment.

[0077] 3. For non-new users, this database security protection method determines whether the requirements for adjusting the access level are met by analyzing the access behavior in the period before the application, after the user applies for adjustment of the access level. This includes calculating the value of the user's access level V and the value of 7 in the period before the application, calculating the average value of the access level on each data sharing platform in the period before the application, and calculating the difference between the user's access level and the access level to which the user applies for adjustment. This method can determine whether the user's application for adjustment of the access level is reasonable, ensure that the user's access behavior matches the user's access level, and reduce access risks.

[0078] 4. This database security protection method will re-evaluate users who fail to meet the requirements for adjusting permission levels after 7 days, continuously monitoring changes in user behavior, improving judgment efficiency and enhancing user access experience.

[0079] 5. This database security protection method determines whether a user can access based on the user's access permission level, and when the customer accesses, determines whether the user has abnormal behavior based on the user's access behavior. If there is abnormal behavior, the user's access permission level is lowered. The user's access behavior is dynamically monitored, and the access permission level is adjusted according to the abnormal behavior. This can quickly respond to possible security incidents and improve the security of the data sharing platform.

[0080] 6. This database security protection method adjusts the user's access permission level according to the user's access rows and abnormal behavior, and determines the user's access permission based on the user's access permission level, rather than simply determining the user's access permission based on the user's role. This is conducive to the platform's flexible adjustment of user access permissions and reducing access risks. BRIEF DESCRIPTION OF THE DRAWINGS

[0081] Figure 1 It is a schematic diagram of the process of the present invention. DETAILED DESCRIPTION

[0082] The following will clearly and completely describe the technical solutions in the embodiments of the present invention in conjunction with the accompanying drawings. Obviously, the described embodiments are only part of the embodiments of the present invention, not all of the embodiments. Based on the embodiments of the present invention, all other embodiments obtained by ordinary technicians in this field without making creative efforts are within the scope of protection of the present invention.

[0083] Example 1, refer to Figure 1 A database security protection method, characterized by comprising:

[0084] Get the user ID and determine the user type based on the user ID;

[0085] If the user is a new user and there is no access risk, the user's access permission level is adjusted to level one. Differentiating user types based on registration time helps provide different access control methods for different types of users.

[0086] The first-level access right specifically means that the data sharing platform has first-level access right, second-level access right, third-level access right and fourth-level access right, among which the first-level access right has the lowest access right level and the fourth-level access right has the highest access right level; the user's access right level is adjusted according to the user's access rows and abnormal behavior; the user's access right is determined according to the user's access right level, rather than simply according to the user's role, which is conducive to the platform to flexibly adjust the user's access right and reduce access risks.

[0087] If a user applies to adjust the access permission level, if the user is a new user, the user's access permission level will not be adjusted;

[0088] If the user is not a new user, obtain the user's access behavior in the period before the application, and determine whether the user meets the adjustment requirements based on the user's access behavior in the period before the application;

[0089] If the user's access behavior meets the adjustment requirements, the user's access permission level is adjusted;

[0090] If a user exhibits abnormal behavior during access, the user's access permission level will be adjusted;

[0091] When a user attempts to access a platform, whether the user can access is determined based on the user's access permission level. Determining the user's access permission based on the user's access permission level, rather than simply based on the user's role, helps the platform flexibly adjust the user's access permission and reduce access risks.

[0092] The method of obtaining the user ID and determining the user type according to the user ID is as follows:

[0093] Get the user ID and get the user's registration time T based on the user ID;

[0094] Set the time value t, which is an uncertain value and can be adjusted according to different periods or different data sharing platforms;

[0095] The units of T and t are days;

[0096] If T < t, the user is a new user;

[0097] If T ≥ t, the user is not a new user.

[0098] If the user is a new user and there is no access risk, the user's access permission level is adjusted to level one, specifically:

[0099] The access risk is specifically judged as follows:

[0100] Get the number N of similar data sharing platforms accessed by users;

[0101] Calculate the frequency of users accessing similar data sharing platforms;

[0102] It is calculated as the ratio of the number of similar data sharing platforms visited by the user, N, to the user registration time, T, specifically: N ÷ T;

[0103] Set a fixed value , fixed value The function of the function is to judge whether the user visits the same data sharing platform too frequently. If the value is too large, when users access similar data sharing platforms too frequently, it will be impossible to make accurate judgments, resulting in missed judgments of risky behaviors. If the value is too small, it will lead to misjudgment of risky behaviors and reduce the user's access experience; the access frequency is greater than or equal to the fixed value. , at this time, the user accesses the same data sharing platform too frequently, and the user is recorded as having access risk, and the access risk level is ;

[0104] If the access frequency is less than the fixed value At this time, users do not access similar data sharing platforms too frequently, so there is no access risk for users;

[0105] Obtain the time when the user first visits N similar data sharing platforms, that is, the user's registration time on N platforms;

[0106] According to the time of first access, N similar data sharing platforms are recorded as the first platform, the second platform, the third platform...the Nth platform;

[0107] Among them, the time when users first visit the first platform is the earliest, and the time when they first visit the Nth platform is the latest;

[0108] Obtain the user's IP address when accessing the first platform, the second platform, the third platform, and so on;

[0109] Count the number of different IP addresses among the N IP addresses obtained;

[0110] Calculate the ratio of the number of different IP addresses to the total number of IP addresses N;

[0111] Set a fixed value , fixed value The purpose of the function is to determine whether there is a risk in the IP address of the user when accessing the same type of data sharing platform. If it is too large, when users access similar data sharing platforms, the IP address may be at risk, but an accurate judgment cannot be made, resulting in missed judgments of risky behaviors. If the value is too small, it will cause misjudgment of risky behaviors and reduce the user's access experience; if the ratio of the number of different IP addresses to the total number of IP addresses N is greater than or equal to the fixed value , that is, when the user frequently changes the IP address during access, then the IP address of the user accessing the same data sharing platform is at risk, and the user is recorded as having access risk, and the access risk level is ;

[0112] If the ratio of the number of different IP addresses to the total number of IP addresses N is less than a fixed value At this time, there is no risk in the IP address of the user when accessing the same type of data sharing platform, and the user has no access risk.

[0113] If the user is a new user and there is no access risk, the user's access permission level is adjusted to level one, further comprising:

[0114] If the user has access rights on the first platform, the second platform, the third platform, and so on, the Nth platform, the user is marked;

[0115] The existence of access rights specifically refers to the user having any one of the access rights levels of level 1 access rights, level 2 access rights, level 3 access rights, and level 4 access rights, i.e., the user has a low risk of accessing this platform and has the access rights level;

[0116] Count the number of times a user is tagged;

[0117] Calculate the ratio of the number of times a user is tagged to the number N of similar data sharing platforms the user visits;

[0118] Set a fixed value , fixed value The function of the function is to determine the proportion of platforms with access rights when users access similar data sharing platforms, and to determine the user's access risk based on this. If the value is too large, when a user has a low percentage of access privilege level platforms when accessing similar data sharing platforms, the user will still be considered risk-free, resulting in missed judgment of risky behaviors. If the value is too small, when a user has a high percentage of platforms with access rights when accessing similar data sharing platforms, the user will still be considered high-risk, resulting in misjudgment of risky behavior and reduced user access experience; if the ratio of the number of times a user is marked to the number of similar data sharing platforms the user has accessed is less than the fixed value , then the user has a low percentage of access permission level platforms when accessing similar data sharing platforms, that is, the user's risk is high, and the user is recorded as having access risk, and the access risk level is ;

[0119] If the ratio of the number of times a user is marked to the number of similar data sharing platforms the user visits is greater than or equal to a fixed value , when a user accesses a similar data sharing platform, the proportion of platforms with access level permissions is high, that is, the user's risk is low, and the user is recorded as having no access risk; judging whether the user is a new user by time helps to provide different access control methods for different types of users; assessing the access risk of new users, including access frequency, the proportion of different IP addresses, and the proportion of platforms with access level permissions, can effectively identify potential security risks;

[0120] If the user is a new user, calculate the user's total access risk level W, which is specifically the sum of the user's access risk level values. Specifically: If the user's access risk is and , then the user's total risk level ;

[0121] in ,and ,Different aspects of access risks have different priorities, which can reduce overreaction to users’ low access risk behaviors, as well as misjudgment of users’ low access risk behaviors, improve identification efficiency, and ensure the comprehensiveness and accuracy of access risk assessment;

[0122] If the user's total access risk level W is greater than a value , fixed value The function is to determine whether the user meets the adjustment requirements based on the user's total access risk level. If the user's total access risk level is too large, when the user's total access risk level determines that the user does not meet the adjustment requirements, the user's access permission level will still be adjusted, increasing the risk; if If it is too small, even if the user's total access risk level determines that the user meets the adjustment requirements, the user's access permission level will not be adjusted, which will reduce the user's access experience; the user will be recorded as having access risk;

[0123] If the user's total access risk level W is less than or equal to a value , record that the user does not have access risk, and adjust the user's access permission level to level one access permission.

[0124] If the user is not a new user, the access behavior of the user in the period before the application is obtained, and whether the user meets the adjustment requirements is determined based on the access behavior of the user in the period before the application is made, specifically:

[0125] The application pre-period is specifically the 7 days before the user applies to adjust the access permission level.

[0126] Get the user's access level V and the access level that the user has applied to adjust ;

[0127] Calculate the ratio of the user's access level V to the value of the previous application period 7, specifically: V ÷ 7;

[0128] Get the number R of similar data sharing platforms that users visited during the early application period;

[0129] Get the time when the user first visits R similar data sharing platforms;

[0130] According to the time of first access, R similar data sharing platforms are recorded as the first platform in the early stage, the second platform in the early stage, the third platform in the early stage, and so on, the Rth platform in the early stage;

[0131] Access privilege levels for the first platform in the early stage, the second platform in the early stage, the third platform in the early stage...the Rth platform in the early stage ;

[0132] Calculate the user's access rights level on the first platform in the early stage, the second platform in the early stage, the third platform in the early stage, and so on. The average grade of B;

[0133] ;

[0134] If a user applies to adjust the access permission level on any of the platforms including the previous first platform, the previous second platform, the previous third platform, ... the previous Rth platform, the platform will be recorded as the adjusted platform;

[0135] Count the number K of adjusted platforms among the R platforms and calculate the ratio of K to R: K÷R;

[0136] Set fixed value , fixed value The function is to determine whether the number of times a user applies to adjust the access permission level within 7 days is too frequent; fixed value The function of is to judge whether the user's access risk meets the adjustment requirements based on the user's access permission level on R platforms; fixed value The function is to determine whether the difference between the user's access permission level and the access permission level the user applies to adjust meets the adjustment requirements;

[0137] If the ratio , the user's access rights level on the initial first platform, initial second platform, initial third platform...initial R platform Average grade , Ratio (K÷R) < fixed value And the absolute value , record the user meets the adjustment requirements;

[0138] If the ratio , or use the user's access permission level on the first platform in the early stage, the second platform in the early stage, the third platform in the early stage...the Rth platform in the early stage Average grade , or ratio , or the absolute value , record that the user does not meet the adjustment requirements;

[0139] If the user does not meet the adjustment requirements, the user's application for access permission level adjustment will be retained, and the user will be judged again 7 days after the application to determine whether they meet the adjustment requirements. For users who fail to meet the adjustment permission level requirements, the system will evaluate again after 7 days, continuously monitoring changes in user behavior, improving judgment efficiency, and enhancing the user's access experience.

[0140] If a user has abnormal behavior during access, the user's access permission level will be adjusted, specifically:

[0141] If a user accesses the data sharing platform using different IP addresses on the same day, and the number of different IP addresses is greater than or equal to 3;

[0142] Or if the user has not accessed the data sharing platform in the past 30 days;

[0143] Or if the user has applied to adjust the access permission level three or more times in the past seven days;

[0144] If a user has abnormal behavior when accessing the data sharing platform, the user's access permission level will be lowered. When the customer accesses the platform, the user's access behavior will be used to determine whether the user has abnormal behavior. If abnormal behavior exists, the user's access permission level will be lowered. The user's access behavior will be dynamically monitored, and the access permission level will be adjusted according to the abnormal behavior. This can quickly respond to possible security incidents and improve the security of the data sharing platform.

[0145] When a user attempts to access a service, the user's access permission level is used to determine whether the user is allowed to access the service. Specifically:

[0146] Get the permission level of the user to access the module ;

[0147] If the user's access permission level , then the user can access;

[0148] If the user's access permission level , the user cannot access. The user's access rights are determined according to the user's access rights level, rather than simply according to the user's role. This is conducive to the platform to flexibly adjust the user's access rights and reduce access risks.

[0149] It should be noted that, in this document, relational terms such as first and second, etc., are used only to distinguish one entity or operation from another entity or operation, and do not necessarily require or imply any actual relationship or order between these entities or operations. Moreover, the terms "comprises," "comprising," or any other variations thereof are intended to cover non-exclusive inclusion, such that a process, method, article, or apparatus that includes a list of elements includes not only those elements but also other elements not explicitly listed, or elements inherent to such process, method, article, or apparatus.

[0150] The above is only a preferred embodiment of the present invention. It should be pointed out that for ordinary technicians in this technical field, several improvements and modifications can be made without departing from the technical principles of the present invention. These improvements and modifications should also be regarded as within the scope of protection of the present invention.

Claims

1. A database security protection method, characterized by: include: Get the user ID and determine the user type based on the user ID; If the user is a new user and there is no access risk, the user's access permission level will be adjusted to level one. The first-level access rights specifically refer to the data sharing platform having first-level access rights, second-level access rights, third-level access rights and fourth-level access rights, where the first-level access rights are the lowest level of access rights and the fourth-level access rights are the highest level of access rights; If a user applies to adjust the access permission level, if the user is a new user, the user's access permission level will not be adjusted; If the user is not a new user, obtain the user's access behavior in the period before the application, and determine whether the user meets the adjustment requirements based on the user's access behavior in the period before the application; If the user's access behavior meets the adjustment requirements, the user's access permission level is adjusted; If a user exhibits abnormal behavior during access, the user's access permission level will be adjusted; When a user attempts to access, whether the user is allowed to access is determined based on the user's access permission level.

2. A database security protection method according to claim 1, characterized in that: The method of obtaining the user ID and determining the user type according to the user ID is as follows: Get the user ID and get the user's registration time T based on the user ID; Set the time value t; The units of T and t are days; If T < t, the user is a new user; If T ≥ t, the user is not a new user.

3. A database security protection method according to claim 1, characterized in that: If the user is a new user and there is no access risk, the user's access permission level is adjusted to level one, specifically: The access risk is specifically judged as follows: Get the number N of similar data sharing platforms accessed by users; Calculate the frequency of users accessing similar data sharing platforms; It is calculated as the ratio of the number of similar data sharing platforms visited by the user, N, to the user registration time, T, specifically: N ÷ T; Set a fixed value , if the access frequency is greater than or equal to the fixed value , the user has access risk, and the access risk level is ; If the access frequency is less than the fixed value , remember that there is no access risk for users; Obtain the time when the user first visits N similar data sharing platforms; According to the time of first access, N similar data sharing platforms are recorded as the first platform, the second platform, the third platform...the Nth platform; Among them, the time when users first visit the first platform is the earliest, and the time when they first visit the Nth platform is the latest; Obtain the user's IP address when accessing the first platform, the second platform, the third platform, and so on; Count the number of different IP addresses among the N IP addresses obtained; Calculate the ratio of the number of different IP addresses to the total number of IP addresses N; Set a fixed value If the ratio of the number of different IP addresses to the total number of IP addresses N is greater than or equal to a fixed value , the user has access risk, and the access risk level is ; If the ratio of the number of different IP addresses to the total number of IP addresses N is less than a fixed value , remember that there is no access risk for users.

4. A database security protection method according to claim 1, characterized in that: If the user is a new user and there is no access risk, the user's access permission level is adjusted to level one, further comprising: If the user has access rights on the first platform, the second platform, the third platform, and so on, the Nth platform, the user is marked; The existence of access rights specifically refers to the user having any one of the access rights levels of level one, level two, level three and level four; Count the number of times a user is tagged; Calculate the ratio of the number of times a user is tagged to the number N of similar data sharing platforms the user visits; Set a fixed value If the ratio of the number of times a user is marked to the number of similar data sharing platforms the user visits is less than a fixed value , the user has access risk, and the access risk level is ; If the ratio of the number of times a user is marked to the number of similar data sharing platforms the user visits is greater than or equal to a fixed value , remember that there is no access risk for users; If the user is a new user, calculate the user's total access risk level W, which is specifically the sum of the user's access risk level values. Specifically: If the user's access risk is and , then the user's total risk level ; in ,and ; If the user's total access risk level W is greater than a value , record that the user has access risks; If the user's total access risk level W is less than or equal to a value , record that the user does not have access risk, and adjust the user's access permission level to level one access permission.

5. A database security protection method according to claim 1, characterized in that: If the user is not a new user, the access behavior of the user in the period before the application is obtained, and whether the user meets the adjustment requirements is determined based on the access behavior of the user in the period before the application is made, specifically: The application pre-period is specifically the 7 days before the user applies to adjust the access permission level. Get the user's access level V and the access level that the user has applied to adjust ; Calculate the ratio of the user's access level V to the value of the previous application period 7, specifically: V ÷ 7; Get the number R of similar data sharing platforms that users visited during the early application period; Get the time when the user first visits R similar data sharing platforms; According to the time of first access, R similar data sharing platforms are recorded as the first platform in the early stage, the second platform in the early stage, the third platform in the early stage, and so on, the Rth platform in the early stage; Access privilege levels for the first platform in the early stage, the second platform in the early stage, the third platform in the early stage...the Rth platform in the early stage ; Calculate the user's access rights level on the first platform in the early stage, the second platform in the early stage, the third platform in the early stage, and so on. The average grade of B; ; If a user applies to adjust the access permission level on any of the platforms including the previous first platform, the previous second platform, the previous third platform, ... the previous Rth platform, the platform will be recorded as the adjusted platform; Count the number K of adjusted platforms among the R platforms and calculate the ratio of K to R: K÷R; Set fixed value ; If the ratio , the user's access rights level on the initial first platform, initial second platform, initial third platform...initial R platform Average grade , Ratio (K÷R) < fixed value And the absolute value , record the user meets the adjustment requirements; If the ratio , or use the user's access permission level on the first platform in the early stage, the second platform in the early stage, the third platform in the early stage...the Rth platform in the early stage Average grade , or ratio , or the absolute value , record that the user does not meet the adjustment requirements; If the user does not meet the adjustment requirements, the user's application for access permission level adjustment will be retained, and the user will be judged again 7 days after the application to determine whether the user meets the adjustment requirements.

6. A database security protection method according to claim 1, characterized in that: If a user has abnormal behavior during access, the user's access permission level will be adjusted, specifically: If a user accesses the data sharing platform using different IP addresses on the same day, and the number of different IP addresses is greater than or equal to 3; Or if the user has not accessed the data sharing platform in the past 30 days; Or if the user has applied to adjust the access permission level three or more times in the past seven days; If a user has abnormal behavior when accessing the data sharing platform, the user's access permission level will be reduced.

7. A database security protection method according to claim 1, characterized in that: When a user attempts to access a service, the user's access permission level is used to determine whether the user is allowed to access the service. Specifically: Get the permission level of the user to access the module ; If the user's access permission level , then the user can access; If the user's access permission level , the user cannot access.