• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
搜索

Author:

Wang, Yaohui (Wang, Yaohui.) | Wang, Dan (Wang, Dan.) | Zhao, Wenbing (Zhao, Wenbing.) | Liu, Yuan (Liu, Yuan.)

Indexed by:

CPCI-S Scopus

Abstract:

Targeting at PHP program, this paper proposes an SQL vulnerability detection method based on the injection analysis technology. This method makes a detailed analysis on the one-time injection in the aspects of data flow and program behavior, on the basis of the combination of dynamic and static analysis technique. Then it implements the SQL vulnerability determination algorithm which is based on lexical feature comparison. At last, this paper combines alias analysis technology, behavior model and SQL which is based on lexical feature comparison to design and establish a prototype system for SQL vulnerability detection. The experiment shows that our system has a good strong ability of SQL vulnerability detection and very low time cost.

Keyword:

SQL vulnerabilities combination of static and dynamic technique behavior model alias analysis

Author Community:

  • [ 1 ] [Wang, Yaohui]Beijing Univ Technol, Beijing, Peoples R China
  • [ 2 ] [Wang, Dan]Beijing Univ Technol, Beijing, Peoples R China
  • [ 3 ] [Zhao, Wenbing]Beijing Univ Technol, Beijing, Peoples R China
  • [ 4 ] [Liu, Yuan]Beijing Univ Technol, Beijing, Peoples R China

Reprint Author's Address:

  • [Wang, Yaohui]Beijing Univ Technol, Beijing, Peoples R China

Show more details

Related Keywords:

Related Article:

Source :

IEEE 39TH ANNUAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE WORKSHOPS (COMPSAC 2015), VOL 3

ISSN: 0730-3157

Year: 2015

Page: 604-607

Language: English

Cited Count:

WoS CC Cited Count: 8

SCOPUS Cited Count: 13

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 1

Affiliated Colleges:

Online/Total:651/5308250
Address:BJUT Library(100 Pingleyuan,Chaoyang District,Beijing 100124, China Post Code:100124) Contact Us:010-67392185
Copyright:BJUT Library Technical Support:Beijing Aegean Software Co., Ltd.