User and Database Level SQL Injection Prevention Techniques |
Author(s): |
| Pooja , D.C.S.A. Kurukshetra University; Monika, D.C.S.A Kurukshetra University |
Keywords: |
| Parameterized query, SQL Injection Attack, Stored Procedures, AES, Input Validation |
Abstract |
|
In today’s era, internet has become a primary source of information for users. The websites over the internet are growing exponentially larger. So the probability of occurring the attack has also increased. SQL injection is the most serious security vulnerability in web applications. The attacker gets the unrestricted access to the database by inserting a malicious query into web applications. The attacker used the SQL injection to leak confidential information from a database, by- pass authentication or insert unauthorized users’ accounts to the database. AES provides the encrypted information to enhance the authentication process. This paper focuses on prevention of stored procedures from SQL injection attack. |
Other Details |
|
Paper ID: IJSRDV4I40524 Published in: Volume : 4, Issue : 4 Publication Date: 01/07/2016 Page(s): 657-659 |
Article Preview |
|
|
|
|
