2013Value EngineeringRequires access

Attack Analysis and Prevention of SQL Injection

He Yong

Open publisher page 0 citations

Abstract

SQL injection is a common loophole in Web system,the attacker can directly access database through the SQL statement,using this loophole,which caused seriously hidden trouble of safety.This paper analyzed the principle of SQL injection firstly,and then made exploration on SQL injection reasons and common ways of SQL injection attacks,finally,put forward the countermeasures to SQL injection attack,so as to provide guidance for SQL injection prevention in Web applications system.

About this research paper

What this paper is about

SQL injection is a common loophole in Web system,the attacker can directly access database through the SQL statement,using this loophole,which caused seriously hidden trouble of safety.This paper analyzed the principle of SQL injection firstly,and then made exploration on SQL injection reasons and common ways of SQL injection attacks,finally,put forward the countermeasures to SQL injection attack,so as to provide guidance for SQL injection prevention in Web applications system.

Why it matters

A significance statement is not available in the OpenAlex record.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

SQL injection is a common loophole in Web system,the attacker can directly access database through the SQL statement,using this loophole,which caused seriously hidden trouble of safety.This paper analyzed the principle of SQL injection firstly,and then made exploration on SQL injection reasons and common ways of SQL injection attacks,finally,put forward the countermeasures to SQL injection attack,so as to provide guidance for SQL injection prevention in Web applications system.

Key concepts: SQL injection, Autocommit, SQL/PSM, Computer science, SQL, Stored procedure, Data Transformation Services, Database

Related papers

Back to paper searchBrowse research topicsOriginal source
Attack Analysis and Prevention of SQL Injection — Research Paper | ScholarLens