{"title":"The Security Analysis of MySQL's Encryption Functions","authors":"Lijun Zhang, Jia Fan, Yu Zhou","doi":"10.1109/CSMA.2015.8","DOIUrl":null,"url":null,"abstract":"The popular database MySQL provides many cryptographic encryption functions to protect the privacy of its data storage. In this paper, we investigate the inner principle and security of encryption functions in three main categories and indicate that most of them are not secure as MySQL has claimed in the official manual document. By exploiting the vulnerability of these functions, we present some practical and effective attacks explicitly. Moreover, we also give some pieces of solution and suggestion to enhance the security of these functions in the application.","PeriodicalId":205396,"journal":{"name":"2015 International Conference on Computer Science and Mechanical Automation (CSMA)","volume":"46 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2015-10-23","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2015 International Conference on Computer Science and Mechanical Automation (CSMA)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CSMA.2015.8","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2
Abstract
The popular database MySQL provides many cryptographic encryption functions to protect the privacy of its data storage. In this paper, we investigate the inner principle and security of encryption functions in three main categories and indicate that most of them are not secure as MySQL has claimed in the official manual document. By exploiting the vulnerability of these functions, we present some practical and effective attacks explicitly. Moreover, we also give some pieces of solution and suggestion to enhance the security of these functions in the application.