Survey on SQL Injection attacks and their Countermeasures

Nilesh Khochare, Satish Chalurkar, S. B. Kakade, B. B. Meshramm · 2011

SQL injection is most common methodology employed by a hacker to exploit vulnerabilities in software applications. Vulnerabilities are basically weak links in the software that exposes unauthorized data or information to a user. SQL injection occurs when the user input is incorrectly filtered for embedded SQL statements. The technique is powerful enough not only to expose the information to the user but also modify and delete the content which could prove disastrous to the company. There are many ways to prevent SQL attacks such as using dynamic SQL, using automated SQL test tools, by escaping user input.

Read the paper · More papers on PaperTik