Positive Tainting and Syntax-Aware Evaluation as Effective Techniques to Prevent SQL Injection Attacks

Provided by: International Journal of Advanced Research in Computer Science & Technology (IJARCST)
Topic: Security
Format: PDF
The tremendous growth and use of wide-range of Web applications today is the very reason that they are a potential target to the different forms of attacks. Attacking the databases through these Web applications is one of the major security threats. SQL Injection Attack (SQLIA) is used by various hackers to get access to the data present in the database by taking advantage of the loopholes which are present in the server side programs. It is a flaw in Web application and not a database or Web server problem. It is a method used to pass an SQL code through some user interactive applications over the Web.

Find By Topic