SQL injection detection and prevention techniques

SQL injection is a type of attack which the attacker adds Structured Query Language code to a web form input box to gain access or make changes to data. SQL injection vulnerability allows an attacker to flow commands directly to a web application's underlying database and destroy functionality...

Full description

Saved in:
Bibliographic Details
Main Authors: Tajpour, Atefeh, Ibrahim, Suhaimi, Masrom, Maslin
Format: Article
Published: IEEE 2011
Subjects:
Online Access:http://eprints.utm.my/id/eprint/29333/
https://www.scopus.com/record/display.uri?eid=2-s2.0-80052579658&origin=resultslist&sort=plf-f&src=s&st1
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.utm.29333
record_format eprints
spelling my.utm.293332022-01-31T08:41:12Z http://eprints.utm.my/id/eprint/29333/ SQL injection detection and prevention techniques Tajpour, Atefeh Ibrahim, Suhaimi Masrom, Maslin QA75 Electronic computers. Computer science SQL injection is a type of attack which the attacker adds Structured Query Language code to a web form input box to gain access or make changes to data. SQL injection vulnerability allows an attacker to flow commands directly to a web application's underlying database and destroy functionality or confidentiality. Researchers have proposed different tools to detect and prevent this vulnerability. In this paper we present SQL injection attack types and also current techniques which can detect or prevent these attacks. Finally we evaluate these techniques. IEEE 2011-08 Article PeerReviewed Tajpour, Atefeh and Ibrahim, Suhaimi and Masrom, Maslin (2011) SQL injection detection and prevention techniques. International Journal of Advancements in Computing Technology, 3 (7). pp. 82-91. ISSN 2005-8039 https://www.scopus.com/record/display.uri?eid=2-s2.0-80052579658&origin=resultslist&sort=plf-f&src=s&st1
institution Universiti Teknologi Malaysia
building UTM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Teknologi Malaysia
content_source UTM Institutional Repository
url_provider http://eprints.utm.my/
topic QA75 Electronic computers. Computer science
spellingShingle QA75 Electronic computers. Computer science
Tajpour, Atefeh
Ibrahim, Suhaimi
Masrom, Maslin
SQL injection detection and prevention techniques
description SQL injection is a type of attack which the attacker adds Structured Query Language code to a web form input box to gain access or make changes to data. SQL injection vulnerability allows an attacker to flow commands directly to a web application's underlying database and destroy functionality or confidentiality. Researchers have proposed different tools to detect and prevent this vulnerability. In this paper we present SQL injection attack types and also current techniques which can detect or prevent these attacks. Finally we evaluate these techniques.
format Article
author Tajpour, Atefeh
Ibrahim, Suhaimi
Masrom, Maslin
author_facet Tajpour, Atefeh
Ibrahim, Suhaimi
Masrom, Maslin
author_sort Tajpour, Atefeh
title SQL injection detection and prevention techniques
title_short SQL injection detection and prevention techniques
title_full SQL injection detection and prevention techniques
title_fullStr SQL injection detection and prevention techniques
title_full_unstemmed SQL injection detection and prevention techniques
title_sort sql injection detection and prevention techniques
publisher IEEE
publishDate 2011
url http://eprints.utm.my/id/eprint/29333/
https://www.scopus.com/record/display.uri?eid=2-s2.0-80052579658&origin=resultslist&sort=plf-f&src=s&st1
_version_ 1724073262333296640
score 13.159267