International Journal of Computer Science and Mobile Computing (IJCSMC)
SQL injection is one of the topmost threats for application written for the Web. In SQL injection attacker gains an unauthorized access to the DB and some malicious codes are injected into it. This paper deals with web security as well as security techniques. To better counter these attack various techniques for detection and prevention of SQL injection attack are identified in this paper also some predefined methods of detection and prevention are discussed. Finally, the authors have come up with a new ideology i.e. OTP (One Time Password) that will further enhance the security of web application from SQL injection.