Back to Search
Journal ArticleOpen Access

A hybrid framework for detecting structured query language injection attacks in web-based applications

Author Affiliations
Deloitte (United States), UNSW Sydney, Canberra (United Kingdom), UNSW Canberra, ...
Published InInternational Journal of Power Electronics and Drive Systems/International Journal of Electrical and Computer Engineering
Year2022
Citations5

Abstract

<p><span>Almost every web-based application is managed and operated through a number of websites, each of which is vulnerable to cyber-attacks that are mounted across the same networks used by the applications, with much less risk to the attacker than physical attacks. Such web-based attacks make use of a range of modern techniques-such as structured query language injection (SQLi), cross-site scripting, and data tampering-to achieve their aims. Among them, SQLi is the most popular and vulnerable attack, which can be performed in one of two ways; either by an outsider of an organization (known as the outside attacker) or by an insider with a good knowledge of the system with proper administrative rights (known as the inside attacker). An inside attacker,…
View at Publisher

BORR does not host full-text PDFs. The button above takes you to the original publisher.