A Countermeasure to SQL Injection Attack for Cloud Environment

被引:0
作者
Tsu-Yang Wu
Chien-Ming Chen
Xiuyang Sun
Shuai Liu
Jerry Chun-Wei Lin
机构
[1] Harbin Institute of Technology Shenzhen Graduate School,School of Computer Sciences and Technology
来源
Wireless Personal Communications | 2017年 / 96卷
关键词
Cloud computing; SQL injection attack; Network security;
D O I
暂无
中图分类号
学科分类号
摘要
Although cloud computing becomes a new computing model, a variety of security threats have been described. Among these threats, SQL injection attack (SQLIA) has received increasing attention recently. In the past, many researchers had proposed several methods to counter SQLIAs. However, these countermeasures of SQLIAs cannot be applied to cloud environments directly. In this paper, we propose a mechanism called CCSD (Cloud Computing SQLIA Detection) to detect SQLIAs. CCSD does not require any access to the application’s source code. Hence, it can be directly applied to existing cloud environments. The experimental results demonstrate that CCSD has high accuracy, low false positive rates and low time consumption.
引用
收藏
页码:5279 / 5293
页数:14
相关论文
共 22 条
[1]  
Armbrust M(2010)A view of cloud computing Communications of the ACM 53 50-58
[2]  
Fox A(2008)Wasp: Protecting web applications using positive tainting and syntax-aware evaluation IEEE Transactions on Software Engineering 34 65-81
[3]  
Griffith R(2009)Data security in the world of cloud computing IEEE Security & Privacy, 7 61-64
[4]  
Joseph AD(2012)A novel method for sql injection attack detection based on removing sql query attribute values Mathematical and Computer Modelling 55 58-68
[5]  
Katz R(2009)Sdriver: Location-specific signatures prevent sql injection attacks Computers & Security 28 121-129
[6]  
Konwinski A(2012)Addressing cloud computing security issues Future Generation Computer Systems 28 583-592
[7]  
Lee G(undefined)undefined undefined undefined undefined-undefined
[8]  
Patterson D(undefined)undefined undefined undefined undefined-undefined
[9]  
Rabkin A(undefined)undefined undefined undefined undefined-undefined
[10]  
Stoica I(undefined)undefined undefined undefined undefined-undefined