首页> 外文会议>International Conference on Computer, Communication, Control and Information Technology >Generation of SQL-injection free secure algorithm to detect and prevent SQL-injection attacks
【24h】

Generation of SQL-injection free secure algorithm to detect and prevent SQL-injection attacks

机译:生成SQL注射免费安全算法检测和防止SQL注入攻击

获取原文

摘要

Security and privacy of database-driven web applications are extremely multifaceted against web intruders. One of the most dangerous cyber attacks is the SQL-injection attack, which simply creates huge loss to commercial vendors. Research deliberates to provide SQL-injection free (SQL-IF) secure algorithm to detect and prevent SQL-injection attacks (SQLIAs). In this paper, we have re-addressed several detection methods to conflict against the proposed SQL-IF secure algorithm. The generated algorithm has been integrated into the runtime environment while the implementation has been done through Java. The algorithm describes the method that how we follow the procedures for preventing SQL-injection attacks. We presented the SQL-IF secure algorithm and logic of the generated code. Comparison of similar types of attack along with different features is performed. The empirical results and its evaluation prove that the algorithm works efficiently to detect the SQLIAs.
机译:数据库驱动的Web应用程序的安全性和隐私对Web入侵者非常多方面。最危险的网络攻击之一是SQL注入攻击,这只是为商业供应商创造了巨大的损失。研究刻意提供免费的SQL注射(SQL-IF)安全算法来检测和防止SQL注入攻击(SQLIAS)。在本文中,我们已经重新解决了若干检测方法,以与所提出的SQL-IF安全算法冲突。当通过Java完成,生成的算法已集成到运行时环境中。该算法描述了我们如何遵循防止SQL注入攻击的过程的方法。我们介绍了SQL-如果安全的算法和生成的代码的逻辑。执行类似类型的攻击以及不同特征的比较。经验结果及其评估证明了该算法有效地检测SQLIAS。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号