Research on the SQL injection filtering based on SQL syntax tree

The development of Web application make its areas become more and more widely.Followed by a security problem is becoming more and more serious,especially for the SQL injection attacks,which bring a huge challenge to the Web application security.A new SQL injection filtering method was proposed to de...

Full description

Saved in:
Bibliographic Details
Main Authors: Chen-wang HAN, Hui LIN, Chuan HUANG
Format: Article
Language:English
Published: POSTS&TELECOM PRESS Co., LTD 2016-11-01
Series:网络与信息安全学报
Subjects:
Online Access:http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2016.00113
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841530272140492800
author Chen-wang HAN
Hui LIN
Chuan HUANG
author_facet Chen-wang HAN
Hui LIN
Chuan HUANG
author_sort Chen-wang HAN
collection DOAJ
description The development of Web application make its areas become more and more widely.Followed by a security problem is becoming more and more serious,especially for the SQL injection attacks,which bring a huge challenge to the Web application security.A new SQL injection filtering method was proposed to detect SQL injection attack by introducing a security strategy based on SQL syntax tree to the design of the user input filtering.The experimental results show that the method can effectively prevent SQL injection attacks,and has higher recognition rate and lower rate of false positives.
format Article
id doaj-art-24c803a70a3b4c29a2f6782b9f7e6d44
institution Kabale University
issn 2096-109X
language English
publishDate 2016-11-01
publisher POSTS&TELECOM PRESS Co., LTD
record_format Article
series 网络与信息安全学报
spelling doaj-art-24c803a70a3b4c29a2f6782b9f7e6d442025-01-15T03:05:04ZengPOSTS&TELECOM PRESS Co., LTD网络与信息安全学报2096-109X2016-11-012707759549169Research on the SQL injection filtering based on SQL syntax treeChen-wang HANHui LINChuan HUANGThe development of Web application make its areas become more and more widely.Followed by a security problem is becoming more and more serious,especially for the SQL injection attacks,which bring a huge challenge to the Web application security.A new SQL injection filtering method was proposed to detect SQL injection attack by introducing a security strategy based on SQL syntax tree to the design of the user input filtering.The experimental results show that the method can effectively prevent SQL injection attacks,and has higher recognition rate and lower rate of false positives.http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2016.00113SQL injection attackWeb securitySQL syntax treeuser input filtering
spellingShingle Chen-wang HAN
Hui LIN
Chuan HUANG
Research on the SQL injection filtering based on SQL syntax tree
网络与信息安全学报
SQL injection attack
Web security
SQL syntax tree
user input filtering
title Research on the SQL injection filtering based on SQL syntax tree
title_full Research on the SQL injection filtering based on SQL syntax tree
title_fullStr Research on the SQL injection filtering based on SQL syntax tree
title_full_unstemmed Research on the SQL injection filtering based on SQL syntax tree
title_short Research on the SQL injection filtering based on SQL syntax tree
title_sort research on the sql injection filtering based on sql syntax tree
topic SQL injection attack
Web security
SQL syntax tree
user input filtering
url http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2016.00113
work_keys_str_mv AT chenwanghan researchonthesqlinjectionfilteringbasedonsqlsyntaxtree
AT huilin researchonthesqlinjectionfilteringbasedonsqlsyntaxtree
AT chuanhuang researchonthesqlinjectionfilteringbasedonsqlsyntaxtree