Research on the SQL injection filtering based on SQL syntax tree
The development of Web application make its areas become more and more widely.Followed by a security problem is becoming more and more serious,especially for the SQL injection attacks,which bring a huge challenge to the Web application security.A new SQL injection filtering method was proposed to de...
Saved in:
Main Authors: | , , |
---|---|
Format: | Article |
Language: | English |
Published: |
POSTS&TELECOM PRESS Co., LTD
2016-11-01
|
Series: | 网络与信息安全学报 |
Subjects: | |
Online Access: | http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2016.00113 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
_version_ | 1841530272140492800 |
---|---|
author | Chen-wang HAN Hui LIN Chuan HUANG |
author_facet | Chen-wang HAN Hui LIN Chuan HUANG |
author_sort | Chen-wang HAN |
collection | DOAJ |
description | The development of Web application make its areas become more and more widely.Followed by a security problem is becoming more and more serious,especially for the SQL injection attacks,which bring a huge challenge to the Web application security.A new SQL injection filtering method was proposed to detect SQL injection attack by introducing a security strategy based on SQL syntax tree to the design of the user input filtering.The experimental results show that the method can effectively prevent SQL injection attacks,and has higher recognition rate and lower rate of false positives. |
format | Article |
id | doaj-art-24c803a70a3b4c29a2f6782b9f7e6d44 |
institution | Kabale University |
issn | 2096-109X |
language | English |
publishDate | 2016-11-01 |
publisher | POSTS&TELECOM PRESS Co., LTD |
record_format | Article |
series | 网络与信息安全学报 |
spelling | doaj-art-24c803a70a3b4c29a2f6782b9f7e6d442025-01-15T03:05:04ZengPOSTS&TELECOM PRESS Co., LTD网络与信息安全学报2096-109X2016-11-012707759549169Research on the SQL injection filtering based on SQL syntax treeChen-wang HANHui LINChuan HUANGThe development of Web application make its areas become more and more widely.Followed by a security problem is becoming more and more serious,especially for the SQL injection attacks,which bring a huge challenge to the Web application security.A new SQL injection filtering method was proposed to detect SQL injection attack by introducing a security strategy based on SQL syntax tree to the design of the user input filtering.The experimental results show that the method can effectively prevent SQL injection attacks,and has higher recognition rate and lower rate of false positives.http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2016.00113SQL injection attackWeb securitySQL syntax treeuser input filtering |
spellingShingle | Chen-wang HAN Hui LIN Chuan HUANG Research on the SQL injection filtering based on SQL syntax tree 网络与信息安全学报 SQL injection attack Web security SQL syntax tree user input filtering |
title | Research on the SQL injection filtering based on SQL syntax tree |
title_full | Research on the SQL injection filtering based on SQL syntax tree |
title_fullStr | Research on the SQL injection filtering based on SQL syntax tree |
title_full_unstemmed | Research on the SQL injection filtering based on SQL syntax tree |
title_short | Research on the SQL injection filtering based on SQL syntax tree |
title_sort | research on the sql injection filtering based on sql syntax tree |
topic | SQL injection attack Web security SQL syntax tree user input filtering |
url | http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2016.00113 |
work_keys_str_mv | AT chenwanghan researchonthesqlinjectionfilteringbasedonsqlsyntaxtree AT huilin researchonthesqlinjectionfilteringbasedonsqlsyntaxtree AT chuanhuang researchonthesqlinjectionfilteringbasedonsqlsyntaxtree |