Testing of database applications is of great importance. Although various studies have been conducted to investigate testing techniques for database design, relatively few efforts have been made to explicitly address the testing of database applications which requires a large amount of representative data available. As testing over live production databases is often infeasible in many situations due to the high risks of disclosure of confidential information or incorrect updating of real data, in this paper we investigate the problem of generating synthetic database based on a-priori knowledge about production database. Our approach is to fit general location model using various characteristics (e.g., constraints, statistics, rules) extracted from production database and then generate synthetic data using model learnt. As characteristics extracted may contain information which may be used by attacker to derive some confidential information, we present a disclosure analysis method which is based on cell suppression technique. Our method is effective and efficient to remove aggregate private information during data generation.
[1]
David E. Booth,et al.
Analysis of Incomplete Multivariate Data
,
2000,
Technometrics.
[2]
Phyllis G. Frankl,et al.
A framework for testing database applications
,
2000,
ISSTA '00.
[3]
P. Oakes.
Quest
,
2000
.
[4]
S. Fienberg,et al.
Bounds for cell entries in contingency tables induced by fixed marginal totals with applications to disclosure limitation
,
2001
.
[5]
Yongge Wang,et al.
Privacy preserving database application testing
,
2003,
WPES '03.
[6]
Meikel Pöss,et al.
MUDD: a multi-dimensional data generator
,
2004,
WOSP '04.