On the Method of Unauthorized Parameter to Prevent the Attack of Web Application Program

Zhou Qin-qin · Journal of Southern Vocational Education · 2014

One of the serious attacks faced by the web application program is grouping parameters processing in logic attack; it can't be recognized while the vulnerability is scanning automatically. In most cases,it needs human intervention. The paper puts forward an optimized,concentrated and efficient parameters processing method to prevent the interchange between the client-side and server based on the users' access level. The practice aims at modifying some important parameter values by the ways that the users do not usually adopt. The result of the experiment shows that this method can make the application program be more flexible,reliable and efficient to prevent parameters attacking in most cases. In addition,this method can be used both in web application program and preparatory application program.

Read the paper · More papers on PaperTik