A Technique for Exploiting Database Vulnerabilities of Web Application Using Detection Tools
National Journal of Management and Technology, 2016
SQL injection attack is a form of attack that takes advantage of applications that generate SQL q... more SQL injection attack is a form of attack that takes advantage of applications that generate SQL queries using user-supplied data without first checking or pre-processing it to verify that it is valid. The objective is to deceive the database system into running malicious code that will reveal sensitive information or otherwise compromise the server. By modifying the expected Web application parameters, an attacker can submit SQL queries and pass commands directly to the database. Although deployment of defensive coding or OS hardening energies security but they are not enough to stop SQLIAs. So this paper focuses on some tools and methodologies which can detect or prevent these attacks.
Uploads
Papers by Kirti Kakde