A Mapping-based Podel for Preventing Cross Site Scripting and SQL Injection Attacks on Web Application and its Impact Analysis

被引:0
作者
Pandurang, Rathod Mahesh [1 ]
Karia, Deepak C. [2 ]
机构
[1] SPIT, Dept Comp Engn, Bombay 400058, Maharashtra, India
[2] SPIT, Dept Elect Engn, Bombay 400058, Maharashtra, India
来源
2015 1ST INTERNATIONAL CONFERENCE ON NEXT GENERATION COMPUTING TECHNOLOGIES (NGCT) | 2015年
关键词
Intrusion Detection System (IDS); SQL Injection Attack; Cross Site Scripting (XSS) Attack; Mapping model;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Web applications provide vast category of functionalities and usefulness. As more and more sensitive data is available over the web, crackers are getting attracted in such data revealing which can root immense harm. SQL injection is one of such type of attack. This attack can be used to infiltrate the back-end of any web application that may lead to modification of database or disclosing significant information. Attacker can obfuscate the input given to the web application using Cross site scripting attack that may direct to distortion in the web page view. Three tier web applications can be categorized into static and dynamic web application for detecting and preventing these types of attacks. Mapping model in which requests are mapped on generated queries can be used productively to detect such kind of attacks and prevention logic can be applied for attack removal. The impact measurement of container based approach on the web server is measured using autobench tool, the parameters used are network throughput and response time.
引用
收藏
页码:414 / 418
页数:5
相关论文
共 9 条
  • [1] Frenz C. M., 2012, SYST APPL TECHN C LI
  • [2] Khairkar Ashwini D., 2013 INT C COMM SYST
  • [3] Le M., 2012, IEEE T DEPENDABLE SE, V9
  • [4] Ludinard R., 2012, RISK SEC INT SYST CR, P1
  • [5] Pandurang R.M., 2015, NASCENT TECHNOLOGIES, P1
  • [6] Priyadarshini R., 2011, IEEE INT C REC TREND
  • [7] Skaruz Jaroslaw, 2009, IEEE C EV COMP CEC
  • [8] Tajpour A., 2010, 2 INT C ED TECHN COM
  • [9] Wonghirunsombat E, 2013, INT JOINT CONF COMP, P183