1. [Home]
  2. [Research achievement]
  3. [Research achievement detail]

Research achievement detail

Title On the Automatic Detection of the SQL Injection Attacks by the Feature Extraction of the Single Character (in Japanese)
Authors Michio Sonoda 、Takeshi Matsuda 、Daiki Koizumi 、Shigeichi Hirasawa
Released Year 2010
Format Conference
Category Information security
Jounal Name SIG Technical Reports, 2011-CSEC-52, Vol.49
Jounal Page vol.49, pp.1-7
Published Year 2011
Published Month 3
Abstract
(English)
In the conventional study, the parsing and the blacklist of the past attack methods are widely used in the detection of the SQL injection attack. However, the diversified camouflage technique makes detecting attacks difficult in such approaches. Then, in our study, we prepared the attack strings group and the normality strings group as samples of the input string, and we proposed high-speed algorithm, based on the ratio that occupied it to the character string where the character that characterize the attack was input, to reduce both misdetection rates, and we evaluated it.
Note
(English)
1
Manuscript
Presentation