Masrom, Maslin and A., Tajpour and M. Z., Heydari and S., Ibrahim (2010) SQL injection detection and prevention tools assessment. In: Proceedings - 2010 3rd IEEE International Conference on Computer Science and Information Technology, ICCSIT 2010, 2010, Chengdu, China.
Official URL: http://dx.doi.org/10.1109/ICCSIT.2010.5563777
SQL Injection Attacks (SQLIAs) is one of the most serious threats to the security of database driven applications. In fact, it allows an attacker to gain control over the database of an application and consequently, an attacker may be able to alter data. Many surveys have addressed this problem. Also some researchers have proposed different approaches to detect and prevent this vulnerability but they are not successful completely. Moreover, some of these approaches have not implemented yet and users would be confused in choosing an appropriate tool. In this paper we present all SQL injection attack types and also different tools which can detect or prevent these attacks. Finally we assessed addressing all SQL injection attacks type among current tools.
|Item Type:||Conference or Workshop Item (Paper)|
|Uncontrolled Keywords:||SQL injection attacks, assessment, detection, prevention, tool|
|Subjects:||Q Science > QA Mathematics > QA76 Computer software|
|Divisions:||Razak School of Engineering and Advanced Technology|
|Deposited By:||Liza Porijo|
|Deposited On:||30 Aug 2012 04:54|
|Last Modified:||30 Aug 2012 04:55|
Repository Staff Only: item control page