Detection and prevention of various attacks on database in banking web application
Shekhar Sanjay Dhangar, Ayushi yadav, Shubham Kadam, Priya Mandhare · Journal of Emerging Technologies and Innovative Research · 2017
Abstract-- This is a Banking web application which provides various functionalities to User and Admin. Admin can approve or reject user application. Admin can search customers by account number or customer name. Admin can see logs of attacks. User can do online transactions like Fund Transfer, Bill Payments (electricity bill, income tax, mobile recharge).we are using unsupervised machine learning, pattern matching & honeypot system. The application is protected by detecting different attacks such as SQL injection, URL injection, Cross site Scripting attack and Brute Force attack. User will get randomly generated username, password and pin number on his SMS. After every transaction user will get notification by message. User can see his account details and mini statement. AES-128 bit encryption and decryption is used for storing user details. Index Terms— Unsupervised machine learning, Pattern matching, Honeypot system, AES 128 bit encryption and decryption technique.