International Journal of Computer Science and Network Security
SQL injection is an attack methodology that targets the data residing in a database through the firewall that shields it. This paper proposes a novel specification-based methodology for the prevention of SQL injection Attacks. The two most important advantages of the new approach against existing analogous mechanisms are that, first, it prevents all forms of SQL injection attacks; second, Current technique does not allow the user to access database directly in database server. The innovative technique \"Web Service Oriented XPATH Authentication Technique\" is to detect and prevent SQL-Injection Attacks in database the deployment of this technique is by generating functions of two filtration models that are Active Guard and Service Detector of application scripts additionally allowing seamless integration with currently-deployed systems.