The Detection and Defense Mechanism for SQL Injection Attack Based on Web Application


연구 분야: Databases



학회: 2022 IEEE 10th Joint International Information Technology and Artificial Intelligence Conference (ITAIC)


초록

In view of the risk of SQL injection attack faced by the Web system, this paper proposes a SQL injection attack detection mechanism based on triangle module operator. The method uses the analysis results of web logs and user input as fusion operators to judge whether an attack occurs. At the same time, for the defense against SQL injection attack, this paper believes that the source code vulnerability testing, penetration testing and security configuration verification should be conducted before the Web system goes online, therefore it can improve the security of the information system.


Author Profile
Li Min

North China Electric Power Research Institute Co. Ltd Beijing China

China
Author Profile
Gao Ranxin

North China Electric Power Research Institute Co. Ltd Beijing China

China
Author Profile
Si Guanlin

North China Electric Power Research Institute Co. Ltd Beijing China

China

📄 논문 정보

발행 연도 2022년
인용수 2
출판 국가 China
사이트 IEEE
좋아요 수 0

연관 논문 목록 (337건)