SQL注入风险评估的实验研究

Rachid Ait daoud, Karim Abouelmehdi, Hayat Khaloufi, A. Beni-Hssane
{"title":"SQL注入风险评估的实验研究","authors":"Rachid Ait daoud, Karim Abouelmehdi, Hayat Khaloufi, A. Beni-Hssane","doi":"10.1109/ICOA51614.2021.9442630","DOIUrl":null,"url":null,"abstract":"The Web applications often handle confidential data such as Internet account passwords, credit card numbers, and so on. These sensitive data are generally transmitted over the Internet and therefore, exposed to the public. Given that, there is a very high risk of unlawfully accessing these data by hackers and others, especially since web applications are becoming notoriously vulnerable and are the target of a majority of Internet-based attacks. This paper proposes an assessment of web scanners that used for detecting web applications security flaws. In particular, we're focusing on SQL injection vulnerability in web applications.","PeriodicalId":352572,"journal":{"name":"2021 7th International Conference on Optimization and Applications (ICOA)","volume":"37 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-05-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":"{\"title\":\"Risk assessment of SQL injection: An experimental study\",\"authors\":\"Rachid Ait daoud, Karim Abouelmehdi, Hayat Khaloufi, A. Beni-Hssane\",\"doi\":\"10.1109/ICOA51614.2021.9442630\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The Web applications often handle confidential data such as Internet account passwords, credit card numbers, and so on. These sensitive data are generally transmitted over the Internet and therefore, exposed to the public. Given that, there is a very high risk of unlawfully accessing these data by hackers and others, especially since web applications are becoming notoriously vulnerable and are the target of a majority of Internet-based attacks. This paper proposes an assessment of web scanners that used for detecting web applications security flaws. In particular, we're focusing on SQL injection vulnerability in web applications.\",\"PeriodicalId\":352572,\"journal\":{\"name\":\"2021 7th International Conference on Optimization and Applications (ICOA)\",\"volume\":\"37 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2021-05-19\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"2\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2021 7th International Conference on Optimization and Applications (ICOA)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICOA51614.2021.9442630\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 7th International Conference on Optimization and Applications (ICOA)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICOA51614.2021.9442630","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2

摘要

Web应用程序通常处理机密数据,如Internet帐户密码、信用卡号码等。这些敏感数据通常通过互联网传输,因此会暴露在公众面前。鉴于此,黑客和其他人非法访问这些数据的风险非常高,特别是因为web应用程序变得非常脆弱,并且是大多数基于互联网的攻击的目标。本文提出了一种用于检测web应用程序安全漏洞的web扫描器的评估方法。我们特别关注web应用程序中的SQL注入漏洞。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Risk assessment of SQL injection: An experimental study
The Web applications often handle confidential data such as Internet account passwords, credit card numbers, and so on. These sensitive data are generally transmitted over the Internet and therefore, exposed to the public. Given that, there is a very high risk of unlawfully accessing these data by hackers and others, especially since web applications are becoming notoriously vulnerable and are the target of a majority of Internet-based attacks. This paper proposes an assessment of web scanners that used for detecting web applications security flaws. In particular, we're focusing on SQL injection vulnerability in web applications.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信