Generation of Sql-injection Free Secure Algorithm to Detect and Prevent Sql-Injection Attacks

Kanchana Natarajan, Sarala Subramani · Procedia Technology · 2012

Security and privacy of database-driven web applications are extremely multifaceted against web intruders. One of the most dangerous cyber attacks is the SQL-injection attack, which simply creates huge loss to commercial vendors. Research deliberates to provide SQL-injection free (SQL-IF) secure algorithm to detect and prevent SQL-injection attacks (SQLIAs). In this paper, we have re-addressed several detection methods to conflict against the proposed SQL-IF secure algorithm. The generated algorithm has been integrated into the runtime environment while the implementation has been done through Java. The algorithm describes the method that how we follow the procedures for preventing SQL-injection attacks. We presented the SQL-IF secure algorithm and logic of the generated code. Comparison of similar types of attack along with different features is performed. The empirical results and its evaluation prove that the algorithm works efficiently to detect the SQLIAs.

Read the paper · More papers on PaperTik