Randomized SQL Statement Detection Based on SQL Parser


연구 분야: Databases



학회: 2025 10th International Conference on Computer and Communication System (ICCCS)


초록

SQL injection attack (SQLIA) is one of the major security threats faced by Web applications. The SQL randomization method based on instruction set randomization can be used to detect and defend against SQL injection attacks. This paper analyzes the security issues present in traditional SQL randomization methods when detecting SQL injection attacks and proposes a randomized SQL statement detection method based on SQL parser. Experimental results demonstrate that this method effectively defends against SQL injection attacks, with the optimal implementation achieving a performance loss of only 5.73 %.


Author Profile
Jiaxin Ma

Information Engineering University Zhengzhou China

China
Author Profile
Zheng Zhang

Purple Mountain Laboratories Nanjing China

China
Author Profile
Yuan Yao

Purple Mountain Laboratories Nanjing China

China

📄 논문 정보

발행 연도 2025년
인용수 15
출판 국가 China
사이트 IEEE
좋아요 수 0

연관 논문 목록 (223건)