Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

12 results about "Database security" patented technology

Database security concerns the use of a broad range of information security controls to protect databases (potentially including the data, the database applications or stored functions, the database systems, the database servers and the associated network links) against compromises of their confidentiality, integrity and availability. It involves various types or categories of controls, such as technical, procedural/administrative and physical. Database security is a specialist topic within the broader realms of computer security, information security and risk management.

A database security system and its management method

PendingCN122333455ADigital dataAttack
This invention provides a database security system and its management method, relating to the field of electronic digital data processing technology. The invention aims to address the problems of existing database security technologies, which suffer from insufficient ability to identify complex and covert attacks and a high false alarm rate due to their single monitoring dimension and lack of cross-domain correlation analysis capabilities. By introducing an innovative cross-domain anomaly collaborative analysis mechanism, this invention can achieve synchronous cross-verification of attack "intent" and attack "methods," thereby significantly improving the predictive identification capability and accuracy of advanced threats while greatly reducing security false alarms caused by normal business fluctuations or system jitter, thus enhancing the intelligence level and reliability of the entire database security system.
Owner:WEIFANG ZHONGSUO INFORMATION TECH CO LTD

Database security distributed backup method based on secret sharing

This invention discloses a secure distributed backup method for databases based on secret sharing, relating to the field of database security technology. The method includes: selecting n backup nodes, setting a recovery threshold t, extracting sensitive information from the database, and using a secret sharing algorithm to divide the sensitive information into n shares within the backup nodes; allocating each share to a corresponding backup node for storage; adding a password share to each share stored in each backup node to construct an encrypted share; creating a mapping table based on the correspondence between backup nodes and encrypted shares; receiving a recovery request, retrieving the encrypted share from several backup nodes based on the response request and the mapping table, and decoding the retrieved encrypted share to obtain the sensitive information. This invention ensures data security during the backup process by dividing and encrypting sensitive information in the database and then distributing the divided information across multiple backup nodes.
Owner:SHANGHAI YINAN TECHNOLOGY CO LTD

A row-level data encryption and desensitization protection method and system of a cloud-native database

PendingCN122346882ACiphertextDatabase security
The application relates to the technical field of database security, and discloses a row-level data encryption and desensitization protection method and system for a cloud native database, wherein the method comprises the following steps: receiving a query request, obtaining an access context, and reading a target row primary key, a sensitive field label and a policy version; constructing a row-level protection state based on a tenant identifier, the row primary key, an access purpose and the policy version; determining a row-level protection level according to preset sensitive level, permission level, copy risk level and query operation level division rules; generating field ciphertext and a blind index based on the row-level protection state; and generating stable desensitization values as constraints of the row-level protection level and a field format template. The technical scheme is based on the dynamic construction of a row-level protection state based on an access context and the generation of a homologous driving desensitization mode, achieves the technical effect of outputting consistent and stable desensitization values, and realizes the effective reservation of database bottom-layer association keys.
Owner:SHENZHEN COMEIN FINANCE TECH CO LTD

Quick backup and recovery system for user database of SAAS website building system

PendingCN122285387AImprove experienceImprove backupMessage queueData integrity
This invention relates to the field of database backup and recovery technology, and more particularly to a rapid backup and recovery system for user databases in SaaS website building systems. The system includes a message queue module for maintaining data integrity; an encryption algorithm for generating hash values ​​to verify data integrity; a real-time communication module for updating the data backup status in real time; and an anomaly detection module for detecting and troubleshooting problems in the system. By combining the message queue module with the real-time communication module, this invention effectively improves the efficiency of the user backup and recovery process, enabling real-time monitoring during backup and recovery. Furthermore, the encryption algorithm, by generating hash values, ensures database consistency, which helps prevent errors that may occur during data recovery. Additionally, the encryption algorithm enhances system security, ensuring database security and mitigating potential security risks.
Owner:SHANDONG CTRL CLOUD COMPUTING CO LTD +1

An industrial finished product warehouse full-service integrated processing method based on table value parameters

This invention presents a unified processing method for eight business processes in an industrial finished goods warehouse based on table-valued parameters, relating to the fields of industrial MES and database security technology. This method encapsulates all eight processes—normal inbound, normal outbound, other inbound, other outbound, and corresponding queries—into stored procedures, using table-valued parameters as unified input parameters and standard SQL to achieve cross-database compatibility. A fully enclosed security architecture prevents direct front-end access to data tables, eliminating SQL injection and unauthorized operations at the source. Layered business logic, strong transactions, and pre-validation ensure data consistency, achieving controllable, secure, and standardized unified management of all finished goods warehouse business processes. This invention is applicable to industrial scenarios such as metallurgy and manufacturing, and can run seamlessly in databases such as SQL Server and GaussDB, improving system security, stability, and maintainability. This invention has been fully implemented in a real industrial ERP system, can run stably in real production environments for a long time, and possesses mature engineering value and industrial promotion capabilities.
Owner:HANDAN DINGSHENG DIGITAL INTELLIGENCE TECHNOLOGY CO LTD

An industrial raw material warehouse full-service integrated processing method based on table value parameters

A kind of industrial raw material warehouse full-service big unified processing method based on table value parameter belongs to industrial MES and database security technical field.This method will raw material warehouse, modification, warehouse, move, query and dynamic warehouse position planar graph synchronization, pound house weight accounting unified encapsulation as stored procedure, with table value parameter as only entrance, with standard SQL It is realized that cross-library compatibility is realized;Through fully closed architecture, data access is fully controlled and audited;Through dynamic warehouse position engine, warehouse position is automatically updated, and through pound house linkage algorithm, weight is automatically allocated and state is closed loop;Full process strong transaction and strong check ensure that raw material roll, warehouse position, weight, batch data are accurate and consistent.The present application is suitable for hot rolling raw material warehouse management, has high security level, strong business integrity and outstanding industrial value.The present application has been applied in actual industrial ERP system, can be long-term stable operation in real production environment, has mature engineering value and industrialization popularization ability.
Owner:HANDAN DINGSHENG DIGITAL INTELLIGENCE TECHNOLOGY CO LTD

A time series database security testing method, device and equipment

The embodiment of the specification discloses a kind of time series database security test method, device and equipment, the method comprises: the target program code in the time series database to be tested is compiled and inserted into the processing, the intermediate file corresponding to the target program code after inserting into is obtained, the intermediate file after inserting into is converted into the machine instruction code file after inserting into;Generation meets the time sequence rule corresponding to the time series database Time sequence SQL statement, the time sequence SQL statement is input into the target equipment running the machine instruction code file after inserting into, by the target equipment in the process of running the machine instruction code file after inserting into execution time sequence SQL statement, capture the abnormal information that appears in the process of running the time series database;Based on the captured abnormal information, determine the test result of the time series database security.
Owner:ALIPAY (HANGZHOU) INFORMATION TECH CO LTD

Database access method, electronic device, and storage medium

PendingCN122309543AEngineeringDatabase security
A database access method, electronic device, and storage medium are disclosed. The database access method is applied to a database access architecture, which includes a data monitoring and acquisition system, a data processing module, and a data storage module. The method includes: after multiple data processing nodes in the data processing module establish connections with multiple data monitoring and acquisition modules in the data monitoring and acquisition system, each data processing node performs the following operations on the connected data monitoring and acquisition modules: obtains the deployment status of the monitored device type at each monitoring location and the tag coverage status in the monitoring scenario; based on the obtained information, obtains the status of each tag in each monitoring device of the monitored device type; for each monitoring device, obtains the status of the monitoring device based on the status of all tags, and writes the status of the monitoring device and the status of each tag therein into the database. This avoids direct access to the database by the data monitoring and acquisition system, thus ensuring database security.
Owner:SHENZHEN S F TAISEN HLDG (GRP) CO LTD

A database protection method, system and device based on user behavior fusing

PendingCN122346878AEngineeringDatabase security
The application provides a database protection method, system and equipment based on user behavior fusing, and belongs to the technical field of database security protection. The method comprises the following steps: when the current SQL query is executed and the result tuples are returned to the client batch by batch, the corresponding query traffic characteristics are collected in real time through a preset kernel callback function; a multi-dimensional user behavior portrait corresponding to the current database role is acquired; based on the statistical distribution parameters of the historical query traffic dimension in the multi-dimensional user behavior portrait and the context information of the current SQL query, the corresponding adaptive fusing threshold is determined. Based on the adaptive fusing threshold and the query traffic characteristics, the corresponding behavior deviation degree is determined, and based on the multi-dimensional user behavior portrait and the sensitivity of the target data object accessed by the current query, a comprehensive risk score is generated; and the current SQL query execution is intervened by grading fusing according to the comprehensive risk score.

A local subset verifiable anti-cropping splicing database zero watermark method

The application discloses a local subset verifiable anti-cutting splicing database zero watermark method, and belongs to the technical field of database security and data copyright protection. The application aims to solve the technical bottleneck that the existing zero watermark technology is difficult to independently verify a local subset and cannot resist cutting and splicing attacks. The method constructs a global consistency index mapping rule based on data content and a security key, and through a cryptographic Hash operation, the calculation of a watermark bit sequence index is only related to the data itself, and is not affected by the storage order or the overall size of the database. In specific implementation, a parameter optimization algorithm is used to screen target attributes, a multi-partition redundancy structure is used to generate zero watermark verification information and store the information; in the verification stage, the watermark sequence is extracted from the database to be detected according to the mapping rule and the majority voting mechanism. Without modifying the original data, the application can verify the complete database or the local database, and effectively resist cutting and splicing attacks.
Owner:EAST CHINA NORMAL UNIV

A database security situation awareness method and system based on multi-source data fusion

This disclosure presents a database security situation awareness method and system based on multi-source data fusion, comprising: acquiring multi-source heterogeneous security data, generating security data in a unified format, identifying risk data, risk events, and risk explicitness levels based on a security rule base and a security event spatiotemporal correlation analysis algorithm; constructing a risk assessment model to obtain the security situation and risk implicitness levels based on risk data and risk events; establishing a time-series-based security risk prediction model to obtain predicted risk data, predicted risk events, and predicted risk levels; and optimizing the security event spatiotemporal correlation analysis algorithm, security rule base, risk assessment model, and security risk prediction model based on the predicted risk data, predicted risk events, actual risk data, and actual risk events. This method integrates multi-source heterogeneous security data, realizes security event correlation analysis, database security risk prediction, and situation awareness, thereby improving the level of database security protection.
Owner:SHENZHEN ANTECH TECH