首页> 外文会议>International Conference on Information Technology and Management Innovation >An Improved Approach for SQL Injection Vulnerabilities Detection
【24h】

An Improved Approach for SQL Injection Vulnerabilities Detection

机译:一种改进的SQL注入漏洞检测方法

获取原文

摘要

The attack of SQL injection is a well-known threat to web applications, which leads to great damages of confidentiality and integrity of information in databases. Therefore, it is essential for each web applications to detect SQL injection vulnerabilities and eliminate the hidden danger. In this paper, an approach based on penetration testing named YUKIER is proposed to achieve higher effectiveness and preciseness on identifying security vulnerabilities. We compare YUKIER with SQLiX and Paros Proxy, and the experiment results demonstrate that our proposed approach has the higher performances with respect to the existing circumstance.
机译:SQL注入的攻击是对Web应用程序的众所周知的威胁,这导致数据库中信息的机密性和完整性的巨大损害。因此,每个Web应用程序都必须检测SQL注入漏洞并消除隐藏的危险。本文提出了一种基于名为Yukier的渗透测试的方法,以实现识别安全漏洞的更高效率和精确性。我们将Yukier与Sqlix和Paros代理进行比较,实验结果表明,我们所提出的方法对现有情况具有更高的性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号