首页> 外文会议>International Conference on Security with Intelligent Computing and Big-data Services >Design and Implementation of an Automatic Scanning Tool of SQL Injection Vulnerability Based on Web Crawler
【24h】

Design and Implementation of an Automatic Scanning Tool of SQL Injection Vulnerability Based on Web Crawler

机译:基于Web履带的SQL注射漏洞自动扫描工具的设计与实现

获取原文

摘要

An automatic detection tool for SQL injection vulnerability based on web crawler is designed and implemented. By studying the characteristics of various web application vulnerabilities, the causes and detection methods of SQL injection vulnerabilities are analyzed in detail. In addition, functions such as URL (Uniform Resource Locator) optimization and similarity determination are added to each module's characteristics, so that the vulnerabilities can be scanned more accurately and quickly. The tool can automatically explore the target based on web crawler framework. After testing, it is proved that the scanning tool can effectively detect potential SQL injection security vulnerabilities in a website.
机译:设计并实施了基于Web履带器的SQL注射漏洞的自动检测工具。通过研究各种Web应用程序漏洞的特征,详细分析了SQL注射漏洞的原因和检测方法。另外,诸如URL(统一资源定位器)优化和相似性确定的功能被添加到每个模块的特征,从而可以更准确且快速地扫描漏洞。该工具可以根据Web爬网框架自动探索目标。测试后,证明扫描工具可以有效地检测网站中的潜在的SQL注入安全漏洞。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号