2012 19th Asia-Pacific Software Engineering Conference 2012
DOI: 10.1109/apsec.2012.18
|View full text |Cite
|
Sign up to set email alerts
|

Semi-Automated Verification of Defense against SQL Injection in Web Applications

Abstract: Recent reports reveal that majority of the attacks to Web applications are input manipulation attacks. Among these attacks, SQL injection attack -malicious input is submitted to manipulate the database in a way that was unintended by the applications' developers -is one such attack. This paper proposes an approach for assisting to code verification process on the defense against SQL injection. The approach extracts all such defenses implemented in code. With the use of the proposed approach, developers, tester… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...

Citation Types

0
0
0

Year Published

2014
2014
2014
2014

Publication Types

Select...
1

Relationship

0
1

Authors

Journals

citations
Cited by 1 publication
references
References 29 publications
(60 reference statements)
0
0
0
Order By: Relevance