Detection and Prevention of Tautology and Union Query Based SQL Injection Attacks

Web applications are pervasive and play a vital role as web applications are significant mode of communication. SQL injection is one of the most dangerous security vulnerability that is exploited in web application by attacker to get the access of databases. This paper proposes a method SQL detection and algorithm to detect and prevent the tautology and union query based attacks at run time. To demonstrate efficiency of this method dataset is taken from NIST.

