体育赛事投注记录

体育赛事投注记录advertisement

Prevention and Detection of SQL Injection Using Query Tokenization

  • R. Archana DeviEmail author
  • C. Amritha
  • K. Sai Gokul
  • N. Ramanuja
  • L. Yaswant
Conference paper
  • 20 Downloads
Part of the Lecture Notes in Networks and Systems book series (LNNS, volume 127)

Abstract

one of the most serious security vulnerabilities in the current scenario is sql injection. it stands first in the owasp top 10 vulnerability attacks. lack of input validation is one of the main reasons for the cause of these types of attacks. data can be stolen from the database by the means of sql injection. most of the user inputs are going directly to database. an attacker can obtain the data which he does not have access to with the means of sql injection. the paper aims in developing a method that detects and prevents sql injection attacks.

Keywords

SQL injection attack Prevention Detection and tokenization 

References

  1. 1.
    Sarjitus O, El-Yakub MB (2019) Neutralizing SQL injection attack on web application using server side code modification. Int J Sci Res Comput Sci Eng Inf Technol 5(3)
  2. 2.
    Alsahafi R (2019) SQL injection attacks: detection and prevention techniques. Int J Sci Technol Res 8(1)
  3. 3.
    Mishra S (2019) SQL injection detection using machine learning. In: Master’s projects, SJSU scholar works, May 2019
  4. 4.
    Shahriar H, North S, Chen WC (2013) Early detection of SQL injection attacks. Int J Netw Secur Appl IJNSA
  5. 5.
    Raut S, Nikhare A, Punde Y, Manerao S, Choudhary S (2019) A review on methods for prevention of SQL injection attack. Int J Sci Res Sci Technol 6(2)
  6. 6.
    Qian L, Zhu Z, Hu L, Liu S (2015) Research of SQL injection attack and prevention technology. In: International conference on estimation, detection and information fusion, IEEE 2015
  7. 7.
    Prabakar MA, Kartikeyan M, Marimuthu K (2013) An Efficient technique for preventing SQL injection attack using pattern matching algorithm. IEEE international conference on emerging trends in computing, communication and nanotechnology, IEEE 2013
  8. 8.
    Ntagwabira L, Kang SL (2010) Use of query tokenization to detect and prevent SQL injection attacks. In: International conference on computer science and information technology, vol 2, IEEE 2010
  9. 9.
    Voitovych OP, Yuvkovetskyi OS (2016) SQL injection prevention system. In: International conference “Radio electronics and infocommunications” (UkrMiCo). Kiev, Ukraine IEEE, Sept 2016
  10. 10.
    Radhika N, Vanitha A (2014) Multidimensional analysis of SQL injection attacks in web applications. Int J Innov Sci Eng Technol 1(3)
  11. 11.
    Appiah B, Opoku-Mensah E, Qin Z (2017) SQL injection attack detection using fingerprints and pattern matching technique. In: 8th IEEE international conference on software engineering and service science (ICSESS), IEEE 2017
  12. 12.
    Jhala K, Shukla UD (2017) Tautology based advanced SQL injection technique a peril to web application. In: National conference on latest trends in networking and cyber security, Mar 2017
  13. 13.
    Yasin A, Zidan NA (2016) sql injection prevention using query dictionary based mechanism. Int J Comput Sci Inf Secur 14(6)

Copyright information

© The Editor(s) (if applicable) and The Author(s), under exclusive license to Springer Nature Singapore Pte Ltd. 2021

Authors and Affiliations

  • R. Archana Devi
    • 1
    Email author
  • C. Amritha
    • 1
  • K. Sai Gokul
    • 1
  • N. Ramanuja
    • 1
  • L. Yaswant
    • 1
  1. 1.Department of Computer Science and Engineering, Amrita School of EngineeringAmrita Vishwa VidyapeethamCoimbatoreIndia

Personalised recommendations