2008
DOI: 10.21236/ada482932
|View full text |Cite
|
Sign up to set email alerts
|

Preventing SQL Code Injection by Combining Static and Runtime Analysis

Abstract: Public reporting burden for this collection of information is estimated to average 1 hour per response, including the time for reviewing instructions, searching data sources, gathering and maintaining the data needed, and completing and reviewing the collection of information. Send comments regarding this burden estimate or any other aspect of this collection of information, including suggestions for reducing this burden to

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1

Citation Types

0
1
0

Year Published

2018
2018
2018
2018

Publication Types

Select...
1

Relationship

0
1

Authors

Journals

citations
Cited by 1 publication
(1 citation statement)
references
References 26 publications
(13 reference statements)
0
1
0
Order By: Relevance
“…By using the context of untrusted output string fragment and intercepted API calls, syntactic content inside is either escaped or the execution is prevented. The work in [27] has similar ideas where only strings originated from external source is considered to be untrusted and syntax evaluation is applied to those strings and the query will only execute if the pattern matching has positive result. The work in [28] prevents more general injection attacks through analyzing the parse tree of query strings.…”
Section: Related Workmentioning
confidence: 99%
“…By using the context of untrusted output string fragment and intercepted API calls, syntactic content inside is either escaped or the execution is prevented. The work in [27] has similar ideas where only strings originated from external source is considered to be untrusted and syntax evaluation is applied to those strings and the query will only execute if the pattern matching has positive result. The work in [28] prevents more general injection attacks through analyzing the parse tree of query strings.…”
Section: Related Workmentioning
confidence: 99%