Journal ArticleOpen Access
A hybrid framework for detecting structured query language injection attacks in web-based applications
Authors
Author Affiliations
Deloitte (United States), UNSW Sydney, Canberra (United Kingdom), UNSW Canberra, ...
Published InInternational Journal of Power Electronics and Drive Systems/International Journal of Electrical and Computer Engineering
Year2022
Citations5
Abstract
<p><span>Almost every web-based application is managed and operated through a number of websites, each of which is vulnerable to cyber-attacks that are mounted across the same networks used by the applications, with much less risk to the attacker than physical attacks. Such web-based attacks make use of a range of modern techniques-such as structured query language injection (SQLi), cross-site scripting, and data tampering-to achieve their aims. Among them, SQLi is the most popular and vulnerable attack, which can be performed in one of two ways; either by an outsider of an organization (known as the outside attacker) or by an insider with a good knowledge of the system with proper administrative rights (known as the inside attacker). An inside attacker,…
View at Publisher
BORR does not host full-text PDFs. The button above takes you to the original publisher.