Outer Rim Archives
Archives · 2025 · 20250335614

Application (pre-grant publication)

SYSTEM AND METHOD FOR DETECTING AND PREVENTING ANOMALOUS BEHAVIOR OF NON-INTERACTIVE MACHINE TO MACHINE DATABASE ACCOUNTS

Number
20250335614
Published
2025-10-30
Filed
2024-04-24
Assignee
Disney Enterprises, Inc.
Inventors
MONTGOMERY; Jeremy et al.
CPC
G06F21/62; G06F21/121; G06F21/6218; G06F21/6227
Verdict
Set aside database account security, IT/cybersecurity
Source
Google Patents · FreePatentsOnline

Abstract

A responding computing device may receive, from a querying computing device, a database query intended for the responding computing device. The querying computing device may generate and submit database queries autonomously as part of scheduled tasks. The responding computing device may determine one or more templates of database queries associated with the querying computing device. The responding computing device may perform a validation of the database query to determine whether the querying computing device is authorized to submit the database query to the responding computing device. The validation may be performed based on the one or more templates of database queries. The responding computing device may selectively enable the database query to be executed on the responding computing device or prevent the database query from being executed on the responding computing device.

Background

BACKGROUND

Database management systems may be used to store datasets that can be extracted through a database coding language called structured query language (SQL). Some data management systems may store large datasets and may be referred to as data warehouses. The datasets may be loaded into the data warehouses using processes (or jobs) that may be referred to as extract transform load (ETL) or extract load transform (ELT). The processes may be executed autonomously by a computing device that uses a non-interactive account. SUMMARY

In some implementations, a method performed by a responding computing device includes receiving, from a querying computing device, a database query intended for the responding computing device, wherein the querying computing device generates and submits database queries autonomously as part of scheduled tasks or on behalf of an application; determining a role associated with the querying computing device and one or more templates of database queries associated with the querying computing device; performing a validation of the database query to determine whether the querying computing device is authorized to submit the database query to the responding computing device, wherein the validation is performed based on the role and the one or more templates of database queries; and selectively enabling the database query to be executed on the responding computing device or preventing the database query from being executed on the responding

Claims

1. A method performed by a responding computing device, the method comprising: receiving, from a querying computing device, a database query intended for the responding computing device, wherein the querying computing device generates and submits database queries autonomously as part of scheduled tasks; determining: a role associated with the querying computing device, or one or more templates of database queries associated with the querying computing device; performing a validation of the database query to determine whether the querying computing device is authorized to submit the database query to the responding computing device, wherein the validation is performed based on the role and the one or more templates of database queries; and selectively enabling the database query to be executed on the responding computing device or preventing the database query from being executed on the responding computing device, wherein the database query is enabled to be executed based on determining that the querying computing device is authorized to submit the database query, and wherein the database query is prevented from being executed based on determining that the querying computing device is not authorized to submit the database query. || 8. A system, comprising: a first computing device to: receive, from a second computing device, a database query intended for the first computing device, wherein the second computing device generates and submits database queries autonomously as part of scheduled tasks; determine one or more templates of database queries associated with the second computing device; perform a validation of the database query to determine whether the second computing device is authorized to submit the database query to the first computing device, wherein the validation is performed based on the one or more templates of database queries; and selectively enable the database query to be executed on the first computing device or prevent the database query from being executed on the first computing device, wherein the database query is enabled to be executed based on determining that the second computing device is authorized to submit the database query, and wherein the database query is prevented from being executed based on determining that the second computing device is not authorized to submit the database query. || 15. A device, comprising: one or more processors configured to: receive, from a second computing device, a database query intended for a first computing device, wherein the second computing device generates and submits database queries autonomously as part of scheduled tasks; determine one or more templates of database queries associated with the second computing device; perform a validation of the database query to determine whether the second computing device is unauthorized to submit a portion of the database query to the first computing device, wherein the validation is performed based on the one or more templates of database queries; and prevent the database query from being executed on the first computing device based on the second computing device being unauthorized to submit a portion of the database query to the first computing device.