1. [Home]
  2. [Research achievement]
  3. [Research achievement detail]

Research achievement detail

Title On Automatic Detection of SQL Injection Attacks by the Feature Extraction of the Single Character (in Japanese)
Authors Michio Sonoda 、Takeshi Matsuda 、Daiki Koizumi 、Shigeichi Hirasawa
Released Year 2011
Format International Conference
Category Information security
Jounal Name Proceedings of the 4th international conference on Security of information and networks (SIN2011)
Jounal Page pp.81-86, Sydney, Australia
Published Year 2011
Published Month 11
Abstract
(English)
The SQL injection attack causes very serious problem to web applications which have database including personal data. To detect the SQL injection attack, the parsing and the black list based on the existed attack have been widely used. However, a new attack method that is not included by the black list has still been developed. In this paper, we proposed the detecting method based on single character, and show the effectiveness of the proposed method experimentally using both attack and normal samples.
Note
(English)
1
Manuscript
Presentation